TLS · certificates · HTTPS
TLS & Transport Security Guides
Review transport-layer findings covering certificate validity, protocol support, cipher configuration and HTTPS security posture.
Scan a domain Explore Domain Security AssessmentTransport security
Find the remediation guide for your finding
Use the check name from a SecuTest report to open the matching operational guide.
Domain Security AssessmentAssess TLS and certificate posture together with the rest of a domain's externally visible security controls. Run the related assessment →
Transport securityModern TLS protocol versionNegotiating an obsolete or unknown TLS version exposes clients to deprecated protocol behavior and weakens compliance with modern security baselines.Open remediation guide →Transport securityObsolete TLS protocolsSupport for TLS 1.0 or TLS 1.1 exposes clients to obsolete protocol behavior, weak cryptographic combinations, downgrade opportunities, and compliance failures.Open remediation guide →Transport securityTLS certificate expirationAn expired or soon-to-expire certificate can cause a production outage, train users to bypass warnings, and weaken confidence in server identity.Open remediation guide →Transport securityTLS certificate validationAn untrusted, incomplete, expired, or hostname-mismatched certificate prevents clients from authenticating the server and encourages dangerous warning bypasses.Open remediation guide →Transport securityTLS service availabilityAn unavailable or invalid TLS service prevents clients from establishing a protected connection and may push users toward insecure alternatives.Open remediation guide →Transport securityWeak TLS cipher suitesAccepted NULL, EXPORT, anonymous, RC4, DES, 3DES, or MD5-based suites can remove authentication or materially weaken confidentiality and integrity.Open remediation guide →