Date | Publication | Section |
---|---|---|
1998 | The OAKLEY Key Determination Protocol | 2.8, Appendix E |
2018 | NIST Special Publication 800-56A Revision 3 | 5.6.2.3.2 |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Col 1 | Col 2 | |
---|---|---|
Row 1, Col 1 | Row 1, Col 2 | |
Row 2, Col 1 | Row 2, Col 2 |
Date | Publication | Section |
---|---|---|
1996 | On Diffie-Hellman Key Agreement with Short Exponents | 6 Concluding Remarks |
2001 | Security Issues in the Diffie-Hellman Key Agreement Protocol | 7.1.1 Efficiency Considerations - 3 |
2003 | RFC3526 | 8. Security Considerations |
2006 | SP 800-57 Part 1 Rev. 5 - Recommendation for Key Management: Part 1 – General | Table 2: Comparable security strengths of symmetric block cipher and asymmetric-key algorithms |
2006 | RFC4419 | 6.2. Private Exponents |
2008 | [RFC5114](https:// |
Crypto Lyzer | Qualys SSL Labs | Immuni Web | Hard enize | Moz. Obs. | testssl .sh | SSL-yze | |
---|---|---|---|---|---|---|---|
DNS CAA | ❌ | ✅ | ✅ | ✅ | ✅ | ✅ | ❌ |
MTA-STS | ❌ | ❌ | ❌ | ✅ | ❌ | ❌ | ❌ |
DANE | ❌ | ❌ | ❌ | ✅ | ❌ | ❌ | ❌ |
SPF | ❌ | ❌ | ❌ |
Crypto Lyzer | Qualys SSL Labs | Immuni Web | Hard enize | Moz. Obs. | testssl .sh | SSL-yze | |
---|---|---|---|---|---|---|---|
Client Emulation | ❌ | ✅ | ❌ | ❌ | ✅ | ✅ | ❌ |
Weakness Check | ❌ | ✅ | ✅ | ✅ | ✅ | ✅ | ❌ |
Vulnerability Check | ❌ | ✅ | ✅ | ❌ | ❌ | ✅ | ✅ |
Highlights in Output | ❌ | ✅ | ✅ | ✅ | ✅ | ✅ | ❌ |
0% | 100% | 75% | 50% | 75% | 100% | 25% |
Crypto Lyzer | Qualys SSL Labs | Immuni Web | Hard enize | Moz. Obs. | testssl .sh | SSL-yze | |
---|---|---|---|---|---|---|---|
OCSP Stapling | ✅ | ✅ | ✅ | ✅ | ✅ | ✅ | ✅ |
OCSP Must Staple | 0.8.x | ✅ | ✅ | ✅ | ❌ | ✅ | ✅ |
Certificate Transparency | 0.8.x | ✅ | ✅ | ✅ | ❌ | ✅ | ✅ |
[Multiple Trusted Root CA Stores](ht |
Crypto Lyzer | Qualys SSL Labs | Immuni Web | Hard enize | Moz. Obs. | testssl .sh | SSL-yze | |
---|---|---|---|---|---|---|---|
Content-Type | ✅ | ❌ | ❌ | ❌ | ✅ | ❌ | ❌ |
Server | ✅ | ❌ | ❌ | ❌ | ✅ | ✅ | ❌ |
Application banner | 0.9.x | ❌ | ❌ | ❌ | ❌ | ✅ | ❌ |
Age |
Crypto Lyzer | Qualys SSL Labs | Immuni Web | Hard enize | Moz. Obs. | testssl .sh | SSL-yze | |
---|---|---|---|---|---|---|---|
Content Security Policy | 0.9.x | ❌ | ❌ | ❌ | ✅ | ❌ | ❌ |
CSP Report-To | 0.9.x | ❌ | ❌ | ❌ | ❌ | ❌ | ❌ |
Expect Certificate Transparency | ✅ | ❌ | ❌ |
Crypto Lyzer | Moz. Obs. | Operous SSH Check | Rebex SSH Check | SSH Conf. Auditor | ssh-audit | ssh-scan | |
---|---|---|---|---|---|---|---|
Algorithms | ✅ | ✅ | ✅ | ✅ | ✅ | ✅ | ✅ |
Host Keys | ✅ | ❌ | ✅ | ❌ | ✅ | ✅ | ✅ |
Host Certificates | 0.9.x | ❌ | ❌ | ❌ | ❌ | ❌ | ❌ |
X.509 Certificates | 0.10.x | ❌ | ❌ | ❌ | ❌ | ❌ | ❌ |
DH Param Check | ✅ | ❌ | ❌ | ❌ | ❌ | ❌ | ❌ |
Banner Analysis | ✅ | ❌ | ✅ | ❌ | ❌ | ❌ | ✅ |
67% | 17% | 50% | 17% | 33% | 33% |
Crypto Lyzer | Qualys SSL Labs | Immuni Web | Hard enize | Moz. Obs. | testssl .sh | SSL-yze | |
---|---|---|---|---|---|---|---|
Fallback SCSV | ✅ | ✅ | ✅ | ❌ | ❌ | ✅ | ✅ |
TLS Clock Skew | ✅ | ❌ | ❌ | ❌ | ❌ | ✅ | ✅ |
Compression | ✅ | ✅ | ✅ | ❌ | ❌ | ❌ | ✅ |
Secure Renegotiation |
NewerOlder