SSL Report for baidu.com

Your SSL score:
D
Recheck SSL
Unsecure Client-side redirects, attackers can overlay malicious content
TLSv1 protocol must be disabled due to vulnerabilities
Weak ciphers suites used. Update the Ciphers Suites.
Certificate is trusted
Unsecure HTTP protocol enabled
HSTS Strict Security is Enabled
Redirect to HTTPS Secure Enabled
Vulnerable SSL protocols Enabled
Weak Cipher Suites
SSL check #1 for baidu.com  ( 39.156.70.37 )
Common Name: www.baidu.cn SAN: www.baidu.cn, baidu.cn, baidu.com, baidu.com.cn, w.baidu.com, ww.baidu.com, www.baidu.com.cn, www.baidu.com.hk, www.baidu.hk, www.baidu.net.au, www.baidu.net.ph, www.baidu.net.tw, www.baidu.net.vn, wwww.baidu.com, wwww.baidu.com.cn Server: 39.156.70.37 Expire At: 2026-03-03 Invalid Domain: No HTTP Enabled: Yes HSTS Enabled: Yes HTTPS Redirect: Yes Server Info: BWS/1.1 Signature: BWS/1.1
TLS and Compatibility
TLS 1.3: No TLS 1.2: Yes TLS 1.1: Yes TLS 1.0: Yes SSL 3: No SSL 2: No Weak Cipher Suites: Yes HSTS Max Age:0 Forward Secrecy: Yes OCSP Stapling: No Session Resumption Tickets: No Session Resumption Caching: No
SSL check #2 for www.baidu.com  ( 103.235.46.102 )
Common Name: baidu.com SAN: baidu.com, baifubao.com, www.baidu.cn, www.baidu.com.cn, mct.y.nuomi.com, apollo.auto, dwz.cn, *.baidu.com, *.baifubao.com, *.baidustatic.com, *.bdstatic.com, *.bdimg.com, *.hao123.com, *.nuomi.com, *.chuanke.com, *.trustgo.com, *.bce.baidu.com, *.eyun.baidu.com, *.map.baidu.com, *.mbd.baidu.com, *.fanyi.baidu.com, *.baidubce.com, *.mipcdn.com, *.news.baidu.com, *.baidupcs.com, *.aipage.com, *.aipage.cn, *.bcehost.com, *.safe.baidu.com, *.im.baidu.com, *.baiducontent.com, *.dlnel.com, *.dlnel.org, *.dueros.baidu.com, *.su.baidu.com, *.91.com, *.hao123.baidu.com, *.apollo.auto, *.xueshu.baidu.com, *.bj.baidubce.com, *.gz.baidubce.com, *.smartapps.cn, *.bdtjrcv.com, *.hao222.com, *.haokan.com, *.pae.baidu.com, *.vd.bdstatic.com, *.cloud.baidu.com, click.hm.baidu.com, log.hm.baidu.com, cm.pos.baidu.com, wn.pos.baidu.com, update.pan.baidu.com Server: 103.235.46.102 Expire At: 2026-08-10 Invalid Domain: No HTTP Enabled: Yes HSTS Enabled: Yes HTTPS Redirect: Yes Server Info: BWS/1.1 Signature: BWS/1.1
TLS and Compatibility
TLS 1.3: No TLS 1.2: Yes TLS 1.1: Yes TLS 1.0: Yes SSL 3: No SSL 2: No Weak Cipher Suites: Yes HSTS Max Age:0 Forward Secrecy: Yes OCSP Stapling: No Session Resumption Tickets: No Session Resumption Caching: No
  • GreenIT, Inc.
    USA, New York