April 2016 scan results

Again, no analysis, just raw statistics, sorry.

SSL/TLS survey of 554044 websites from Alexa's top 1 million
Stats only from connections that did provide valid certificates
(or anonymous DH from servers that do also have valid certificate installed)


Supported Ciphers         Count     Percent
-------------------------+---------+-------
3DES                      488020    88.0833
3DES Only                 590       0.1065
3DES Preferred            1772      0.3198
3DES forced in TLS1.1+    936       0.1689
AES                       549187    99.1234
AES Only                  42441     7.6602
AES-CBC                   548762    99.0466
AES-CBC Only              8334      1.5042
AES-GCM                   448629    80.9735
AES-GCM Only              378       0.0682
CAMELLIA                  241430    43.576
CAMELLIA Only             1         0.0002
CHACHA20                  75592     13.6437
Insecure                  54139     9.7716
RC4                       160923    29.0452
RC4 Only                  183       0.033
RC4 Preferred             15628     2.8207
RC4 forced in TLS1.1+     8360      1.5089
x:FF 29 3DES Only         639       0.1153
x:FF 29 3DES Preferred    2130      0.3844
x:FF 29 RC4 Only          254       0.0458
x:FF 29 RC4 Preferred     17323     3.1266
x:FF 29 incompatible      272       0.0491
x:FF 35 3DES Only         645       0.1164
x:FF 35 3DES Preferred    2044      0.3689
x:FF 35 RC4 Only          301       0.0543
x:FF 35 RC4 Preferred     17346     3.1308
x:FF 35 incompatible      276       0.0498
x:FF 44 3DES Only         4576      0.8259
x:FF 44 3DES Preferred    8336      1.5046
x:FF 44 incompatible      577       0.1041
y:DHE-RSA-SEED-SHA        71951     12.9865
y:IDEA-CBC-SHA            67468     12.1774
y:SEED-SHA                82250     14.8454
z:ADH-AES128-GCM-SHA256   401       0.0724
z:ADH-AES128-SHA          730       0.1318
z:ADH-AES128-SHA256       275       0.0496
z:ADH-AES256-GCM-SHA384   411       0.0742
z:ADH-AES256-SHA          748       0.135
z:ADH-AES256-SHA256       274       0.0495
z:ADH-CAMELLIA128-SHA     390       0.0704
z:ADH-CAMELLIA256-SHA     400       0.0722
z:ADH-DES-CBC-SHA         321       0.0579
z:ADH-DES-CBC3-SHA        738       0.1332
z:ADH-RC4-MD5             539       0.0973
z:ADH-SEED-SHA            312       0.0563
z:AECDH-AES128-SHA        9716      1.7537
z:AECDH-AES256-SHA        9763      1.7621
z:AECDH-DES-CBC3-SHA      9685      1.7481
z:AECDH-NULL-SHA          85        0.0153
z:AECDH-RC4-SHA           9132      1.6482
z:DES-CBC-MD5             7224      1.3039
z:DES-CBC-SHA             33578     6.0605
z:DES-CBC3-MD5            17444     3.1485
z:ECDHE-RSA-NULL-SHA      95        0.0171
z:EDH-RSA-DES-CBC-SHA     28962     5.2274
z:EXP-ADH-DES-CBC-SHA     173       0.0312
z:EXP-ADH-RC4-MD5         171       0.0309
z:EXP-DES-CBC-SHA         11121     2.0072
z:EXP-EDH-RSA-DES-CBC-SHA 8776      1.584
z:EXP-RC2-CBC-MD5         13375     2.4141
z:EXP-RC4-MD5             14006     2.528
z:EXP1024-DES-CBC-SHA     3639      0.6568
z:EXP1024-RC4-SHA         3688      0.6657
z:IDEA-CBC-MD5            1523      0.2749
z:NULL-MD5                214       0.0386
z:NULL-SHA                218       0.0393
z:NULL-SHA256             32        0.0058
z:RC2-CBC-MD5             7396      1.3349
z:RC4-64-MD5              767       0.1384

Cipher ordering           Count     Percent
-------------------------+---------+-------
Client side               134999    24.3661
Server side               419045    75.6339

Supported Handshakes      Count     Percent
-------------------------+---------+-------
ADH                       885       0.1597
AECDH                     9773      1.7639
DHE                       298929    53.954
ECDH                      2         0.0004
ECDHE                     476485    86.0013
ECDHE and DHE             253657    45.7828
RSA                       475653    85.8511

Supported PFS             Count     Percent  PFS Percent
-------------------------+---------+--------+-----------
DH,1024bits               116515    21.0299  38.9775
DH,1536bits               1         0.0002   0.0003
DH,2048bits               170990    30.8622  57.2009
DH,2236bits               69        0.0125   0.0231
DH,2432bits               3         0.0005   0.001
DH,2560bits               1         0.0002   0.0003
DH,3072bits               111       0.02     0.0371
DH,3092bits               1         0.0002   0.0003
DH,4094bits               1         0.0002   0.0003
DH,4096bits               10885     1.9646   3.6413
DH,4098bits               1         0.0002   0.0003
DH,512bits                64        0.0116   0.0214
DH,6144bits               1         0.0002   0.0003
DH,768bits                377       0.068    0.1261
DH,8192bits               9         0.0016   0.003
ECDH,B-571,570bits        2314      0.4177   0.4856
ECDH,K-163,163bits        1         0.0002   0.0002
ECDH,P-192,192bits        23        0.0042   0.0048
ECDH,P-224,224bits        84        0.0152   0.0176
ECDH,P-256,256bits        456709    82.4319  95.8496
ECDH,P-384,384bits        5908      1.0663   1.2399
ECDH,P-521,521bits        13327     2.4054   2.7969
Prefer DH,1024bits        43925     7.9281   14.6941
Prefer DH,1536bits        1         0.0002   0.0003
Prefer DH,2048bits        5768      1.0411   1.9296
Prefer DH,3072bits        6         0.0011   0.002
Prefer DH,4096bits        423       0.0763   0.1415
Prefer DH,768bits         54        0.0097   0.0181
Prefer ECDH,B-571,570bits 2090      0.3772   0.4386
Prefer ECDH,K-163,163bits 1         0.0002   0.0002
Prefer ECDH,P-224,224bits 81        0.0146   0.017
Prefer ECDH,P-256,256bits 419866    75.7821  88.1174
Prefer ECDH,P-384,384bits 4218      0.7613   0.8852
Prefer ECDH,P-521,521bits 12182     2.1987   2.5566
Prefer PFS                488615    88.1906  0
Support PFS               521757    94.1725  0

Supported ECC curves      Count     Percent 
-------------------------+---------+--------
brainpoolP256r1           7632      1.3775   
brainpoolP384r1           7634      1.3779   
brainpoolP512r1           7637      1.3784   
prime192v1                1557      0.281    
prime256v1                473202    85.4087  
prime256v1 Only           404241    72.9619  
secp160k1                 1490      0.2689   
secp160r1                 1497      0.2702   
secp160r2                 1488      0.2686   
secp192k1                 1502      0.2711   
secp224k1                 1576      0.2845   
secp224r1                 4971      0.8972   
secp256k1                 10618     1.9165   
secp384r1                 70010     12.6362  
secp384r1 Only            1082      0.1953   
secp521r1                 36615     6.6087   
secp521r1 Only            140       0.0253   
sect163k1                 1492      0.2693   
sect163k1 Only            1         0.0002   
sect163r1                 1490      0.2689   
sect163r2                 1490      0.2689   
sect193r1                 1490      0.2689   
sect193r2                 1489      0.2688   
sect233k1                 1566      0.2826   
sect233r1                 1566      0.2826   
sect239k1                 1565      0.2825   
sect283k1                 9047      1.6329   
sect283k1 Only            1         0.0002   
sect283r1                 9044      1.6324   
sect409k1                 9041      1.6318   
sect409r1                 9038      1.6313   
sect571k1                 9044      1.6324   
sect571r1                 9045      1.6325   

Unsupported curve fallback     Count     Percent 
------------------------------+---------+--------
False                          46285     8.354    
True                           365389    65.9495  
order-specific                 61        0.011    
unknown                        142309    25.6855  

ECC curve ordering        Count     Percent 
-------------------------+---------+--------
client                    9132      1.6482   
inconclusive-noecc        4         0.0007   
server                    465324    83.9868  
unknown                   79584     14.3642  

TLSv1.2 PFS supported sigalgs  Count     Percent 
------------------------------+---------+--------
ECDSA-SHA1                     50518     9.118    
ECDSA-SHA1 Only                3         0.0005   
ECDSA-SHA224                   50534     9.1209   
ECDSA-SHA256                   66231     11.9541  
ECDSA-SHA384                   66277     11.9624  
ECDSA-SHA512                   66334     11.9727  
ECDSA-SHA512 Only              61        0.011    
RSA-MD5                        41528     7.4954   
RSA-SHA1                       408670    73.7613  
RSA-SHA1 Only                  36069     6.5101   
RSA-SHA224                     340011    61.369   
RSA-SHA256                     380914    68.7516  
RSA-SHA256 Only                7319      1.321    
RSA-SHA384                     345799    62.4136  
RSA-SHA384 Only                4         0.0007   
RSA-SHA512                     345776    62.4095  
RSA-SHA512 Only                118       0.0213   

TLSv1.2 PFS ordering           Count     Percent 
------------------------------+---------+--------
client                         255972    46.2007  
indeterminate                  42        0.0076   
intolerant                     5716      1.0317   
order-fallback                 9         0.0016   
server                         203222    36.6798  
unsupported                    17516     3.1615   

TLSv1.2 PFS sigalg fallback    Count     Percent 
------------------------------+---------+--------
ECDSA SHA1                     50464     9.1083   
ECDSA intolerant               381       0.0688   
ECDSA pfs-rsa-SHA512           15610     2.8175   
ECDSA soft-nopfs               2         0.0004   
RSA False                      41178     7.4323   
RSA SHA1                       336118    60.6663  
RSA intolerant                 40148     7.2464   
RSA pfs-ecdsa-SHA512           45        0.0081   
RSA soft-nopfs                 512       0.0924   

Renegotiation             Count     Percent 
-------------------------+---------+--------
False                     5199      0.9384   
insecure                  15950     2.8788   
secure                    532895    96.1828  

Compression               Count     Percent 
-------------------------+---------+--------
1 (zlib compression)      7539      1.3607   
False                     5199      0.9384   
NONE                      541306    97.7009  

TLS session ticket hint   Count     Percent 
-------------------------+---------+--------
1                         4         0.0007   
1 only                    4         0.0007   
2                         2         0.0004   
2 only                    2         0.0004   
5                         8         0.0014   
5 only                    8         0.0014   
10                        8         0.0014   
10 only                   8         0.0014   
15                        6         0.0011   
15 only                   6         0.0011   
30                        19        0.0034   
30 only                   18        0.0032   
60                        167       0.0301   
60 only                   164       0.0296   
65                        2         0.0004   
65 only                   2         0.0004   
70                        6         0.0011   
70 only                   4         0.0007   
75                        1         0.0002   
75 only                   1         0.0002   
100                       16        0.0029   
100 only                  16        0.0029   
120                       28        0.0051   
120 only                  28        0.0051   
128                       3         0.0005   
128 only                  3         0.0005   
150                       2         0.0004   
180                       66        0.0119   
180 only                  64        0.0116   
240                       11        0.002    
240 only                  11        0.002    
244                       2         0.0004   
244 only                  2         0.0004   
300                       272999    49.2739  
300 only                  269600    48.6604  
302                       3         0.0005   
302 only                  3         0.0005   
360                       3         0.0005   
360 only                  2         0.0004   
400                       5         0.0009   
400 only                  5         0.0009   
420                       122       0.022    
420 only                  105       0.019    
480                       10        0.0018   
480 only                  10        0.0018   
500                       4         0.0007   
500 only                  4         0.0007   
540                       3         0.0005   
540 only                  3         0.0005   
600                       28373     5.1211   
600 only                  28233     5.0958   
660                       1         0.0002   
660 only                  1         0.0002   
700                       3         0.0005   
700 only                  3         0.0005   
840                       2         0.0004   
840 only                  2         0.0004   
900                       1388      0.2505   
900 only                  1366      0.2466   
960                       2         0.0004   
960 only                  2         0.0004   
1000                      1         0.0002   
1000 only                 1         0.0002   
1200                      2912      0.5256   
1200 only                 2907      0.5247   
1210                      2         0.0004   
1210 only                 2         0.0004   
1320                      1         0.0002   
1320 only                 1         0.0002   
1380                      1         0.0002   
1380 only                 1         0.0002   
1440                      1         0.0002   
1440 only                 1         0.0002   
1500                      6         0.0011   
1500 only                 5         0.0009   
1800                      579       0.1045   
1800 only                 568       0.1025   
1980                      2         0.0004   
1980 only                 2         0.0004   
2100                      2         0.0004   
2100 only                 1         0.0002   
2160                      1         0.0002   
2160 only                 1         0.0002   
2400                      8         0.0014   
2400 only                 8         0.0014   
2700                      9         0.0016   
2700 only                 9         0.0016   
3000                      25        0.0045   
3000 only                 25        0.0045   
3300                      1         0.0002   
3300 only                 1         0.0002   
3600                      865       0.1561   
3600 only                 850       0.1534   
3900                      1         0.0002   
3900 only                 1         0.0002   
4200                      1         0.0002   
5160                      1         0.0002   
5160 only                 1         0.0002   
5400                      15        0.0027   
5400 only                 9         0.0016   
5940                      1         0.0002   
5940 only                 1         0.0002   
6000                      297       0.0536   
6000 only                 297       0.0536   
7200                      15195     2.7426   
7200 only                 15175     2.739    
7500                      1         0.0002   
7500 only                 1         0.0002   
10800                     4136      0.7465   
10800 only                4122      0.744    
14400                     95        0.0171   
14400 only                95        0.0171   
18000                     10        0.0018   
18000 only                10        0.0018   
21600                     4179      0.7543   
21600 only                4179      0.7543   
25200                     1         0.0002   
25200 only                1         0.0002   
28800                     3321      0.5994   
28800 only                3321      0.5994   
30000                     1         0.0002   
30000 only                1         0.0002   
36000                     1080      0.1949   
36000 only                1071      0.1933   
38854                     1         0.0002   
38866                     1         0.0002   
38879                     1         0.0002   
38893                     1         0.0002   
38908                     1         0.0002   
38925                     1         0.0002   
38940                     1         0.0002   
38953                     1         0.0002   
43200                     55        0.0099   
43200 only                55        0.0099   
60000                     2         0.0004   
60000 only                2         0.0004   
64800                     65043     11.7397  
64800 only                65041     11.7393  
72000                     9         0.0016   
72000 only                9         0.0016   
79200                     1         0.0002   
79200 only                1         0.0002   
86400                     2805      0.5063   
86400 only                2801      0.5056   
100800                    9140      1.6497   
100800 only               9137      1.6491   
108000                    1         0.0002   
108000 only               1         0.0002   
115200                    1         0.0002   
115200 only               1         0.0002   
129600                    6         0.0011   
129600 only               6         0.0011   
172800                    49        0.0088   
172800 only               49        0.0088   
216000                    4         0.0007   
216000 only               4         0.0007   
432000                    1         0.0002   
432000 only               1         0.0002   
604800                    2         0.0004   
864000                    2         0.0004   
864000 only               2         0.0004   
7776000                   2         0.0004   
7776000 only              2         0.0004   
None                      144581    26.0956  
None only                 140902    25.4316  

Certificate sig alg     Count     Percent 
-------------------------+---------+--------
None                      10359     1.8697   
ecdsa-with-SHA256         63100     11.389   
sha1WithRSAEncryption     29544     5.3324   
sha256WithRSAEncryption   477256    86.1405  
sha384WithRSAEncryption   5         0.0009   
sha512WithRSAEncryption   60        0.0108   

Certificate key size    Count     Percent 
-------------------------+---------+--------
ECDSA 256                 66442     11.9922  
ECDSA 384                 21        0.0038   
ECDSA 521                 1         0.0002   
RSA 1024                  21        0.0038   
RSA 2048                  479886    86.6151  
RSA 2049                  2         0.0004   
RSA 2056                  3         0.0005   
RSA 2058                  3         0.0005   
RSA 2084                  3         0.0005   
RSA 2086                  1         0.0002   
RSA 2096                  2         0.0004   
RSA 2432                  2         0.0004   
RSA 3072                  150       0.0271   
RSA 3073                  1         0.0002   
RSA 3076                  3         0.0005   
RSA 3096                  2         0.0004   
RSA 3248                  3         0.0005   
RSA 4048                  3         0.0005   
RSA 4056                  15        0.0027   
RSA 4069                  1         0.0002   
RSA 4086                  4         0.0007   
RSA 4092                  2         0.0004   
RSA 4094                  1         0.0002   
RSA 4095                  1         0.0002   
RSA 4096                  26364     4.7585   
RSA 4196                  1         0.0002   
RSA 8192                  9         0.0016   
RSA 8392                  1         0.0002   
RSA/ECDSA Dual Stack      18891     3.4097

OCSP stapling             Count     Percent 
-------------------------+---------+--------
Supported                 128586    23.2086  
Unsupported               425458    76.7914  

Supported Protocols       Count     Percent
-------------------------+---------+-------
SSL2                      17623     3.1808
SSL2 Only                 17        0.0031
SSL3                      98238     17.7311
SSL3 Only                 1159      0.2092
SSL3 or TLS1 Only         52628     9.4989
SSL3 or lower Only        1168      0.2108
TLS1                      543101    98.0249
TLS1 Only                 32939     5.9452
TLS1 or lower Only        68307     12.3288
TLS1.1                    473247    85.4169
TLS1.1 Only               208       0.0375
TLS1.1 or up Only         9606      1.7338
TLS1.2                    482460    87.0797
TLS1.2 Only               2594      0.4682
TLS1.2, 1.0 but not 1.1   8635      1.5585


Statistics from 589898 chains provided by 709652 hosts

Server provided chains    Count     Percent
-------------------------+---------+-------
complete                  529449    74.6068
incomplete                22333     3.147
untrusted                 157870    22.2461

Trusted chain statistics
========================

Chain length              Count     Percent
-------------------------+---------+-------
2                         8         0.0014
3                         587212    99.5447
4                         2665      0.4518
5                         13        0.0022

CA key size in chains     Count
-------------------------+---------
ECDSA 256                 63091     
ECDSA 384                 63090     
RSA 1024                  21        
RSA 2045                  2         
RSA 2048                  881842    
RSA 4096                  174433    

Chains with CA key        Count     Percent
-------------------------+---------+-------
ECDSA 256                 63091     10.6952
ECDSA 384                 63090     10.6951
RSA 1024                  19        0.0032
RSA 2045                  2         0.0003
RSA 2048                  526385    89.2332
RSA 4096                  173801    29.4629

Signature algorithm (ex. root) Count
------------------------------+---------
ecdsa-with-SHA384              63084     
sha1WithRSAEncryption          33756     
sha256WithRSAEncryption        339826    
sha384WithRSAEncryption        155860    
sha512WithRSAEncryption        55        

Eff. host cert chain LoS  Count     Percent
-------------------------+---------+-------
80                        33778     5.7261
112                       493007    83.575
128                       63113     10.699

Root CAs                                      Count     Percent
---------------------------------------------+---------+-------
(d6325660) COMODO RSA Certification Authority 138204    23.4285
(2c543cd1) GeoTrust Global CA                 95310     16.157
(eed8c118) COMODO ECC Certification Authority 63077     10.6929
(5ad8a5d6) GlobalSign Root CA                 56226     9.5315
(cbf06781) Go Daddy Root Certificate Authorit 49413     8.3765
(b204d74a) VeriSign Class 3 Public Primary Ce 30520     5.1738
(244b5494) DigiCert High Assurance EV Root CA 19387     3.2865
(2e4eed3c) thawte Primary Root CA             18858     3.1968
(653b494a) Baltimore CyberTrust Root          12557     2.1287
(2e5ac55d) DST Root CA X3                     12525     2.1232
(fc5a8f99) USERTrust RSA Certification Author 17514     2.969
(ae8153b9) StartCom Certification Authority   9654      1.6366
(3513523f) DigiCert Global Root CA            9633      1.633
(4bfab552) Starfield Root Certificate Authori 8780      1.4884


Scan performed between 18th of April and 1st of May 2016

March 2016 scan results

Haven’t had much time to process the results, at the same time, not much has changed (just continuation of established trends).

SSL/TLS survey of 551637 websites from Alexa's top 1 million
Stats only from connections that did provide valid certificates
(or anonymous DH from servers that do also have valid certificate installed)


Supported Ciphers         Count     Percent
-------------------------+---------+-------
3DES                      484308    87.7947
3DES Only                 592       0.1073
3DES Preferred            1803      0.3268
3DES forced in TLS1.1+    945       0.1713
AES                       546565    99.0806
AES Only                  43629     7.909
AES-CBC                   546039    98.9852
AES-CBC Only              8757      1.5875
AES-GCM                   442034    80.1313
AES-GCM Only              490       0.0888
CAMELLIA                  235037    42.6072
CAMELLIA Only             3         0.0005
CHACHA20                  74906     13.5789
CHACHA20 Only             1         0.0002
Insecure                  53675     9.7301
RC4                       165105    29.93
RC4 Only                  189       0.0343
RC4 Preferred             16635     3.0156
RC4 forced in TLS1.1+     8955      1.6234
x:FF 29 3DES Only         637       0.1155
x:FF 29 3DES Preferred    2172      0.3937
x:FF 29 RC4 Only          263       0.0477
x:FF 29 RC4 Preferred     18392     3.3341
x:FF 29 incompatible      389       0.0705
x:FF 35 3DES Only         644       0.1167
x:FF 35 3DES Preferred    2079      0.3769
x:FF 35 RC4 Only          313       0.0567
x:FF 35 RC4 Preferred     18423     3.3397
x:FF 35 incompatible      393       0.0712
x:FF 44 3DES Only         4780      0.8665
x:FF 44 3DES Preferred    8693      1.5759
x:FF 44 incompatible      706       0.128
y:DHE-RSA-SEED-SHA        69733     12.6411
y:IDEA-CBC-SHA            66812     12.1116
y:SEED-SHA                80215     14.5413
z:ADH-AES128-GCM-SHA256   415       0.0752
z:ADH-AES128-SHA          692       0.1254
z:ADH-AES128-SHA256       283       0.0513
z:ADH-AES256-GCM-SHA384   428       0.0776
z:ADH-AES256-SHA          704       0.1276
z:ADH-AES256-SHA256       283       0.0513
z:ADH-CAMELLIA128-SHA     365       0.0662
z:ADH-CAMELLIA256-SHA     368       0.0667
z:ADH-DES-CBC-SHA         279       0.0506
z:ADH-DES-CBC3-SHA        707       0.1282
z:ADH-RC4-MD5             522       0.0946
z:ADH-SEED-SHA            294       0.0533
z:AECDH-AES128-SHA        8357      1.5149
z:AECDH-AES256-SHA        8387      1.5204
z:AECDH-DES-CBC3-SHA      8323      1.5088
z:AECDH-NULL-SHA          56        0.0102
z:AECDH-RC4-SHA           7767      1.408
z:DES-CBC-MD5             7631      1.3833
z:DES-CBC-SHA             34001     6.1637
z:DES-CBC3-MD5            18130     3.2866
z:ECDHE-RSA-NULL-SHA      63        0.0114
z:EDH-RSA-DES-CBC-SHA     28894     5.2379
z:EXP-ADH-DES-CBC-SHA     182       0.033
z:EXP-ADH-RC4-MD5         181       0.0328
z:EXP-DES-CBC-SHA         11397     2.066
z:EXP-EDH-RSA-DES-CBC-SHA 8988      1.6293
z:EXP-RC2-CBC-MD5         13770     2.4962
z:EXP-RC4-MD5             14407     2.6117
z:EXP1024-DES-CBC-SHA     3787      0.6865
z:EXP1024-RC4-SHA         3834      0.695
z:IDEA-CBC-MD5            1577      0.2859
z:NULL-MD5                182       0.033
z:NULL-SHA                189       0.0343
z:NULL-SHA256             43        0.0078
z:RC2-CBC-MD5             7791      1.4123
z:RC4-64-MD5              776       0.1407

Cipher ordering           Count     Percent
-------------------------+---------+-------
Client side               133547    24.2092
Server side               418090    75.7908

Supported Handshakes      Count     Percent
-------------------------+---------+-------
ADH                       857       0.1554
AECDH                     8405      1.5236
DHE                       295868    53.6345
ECDH                      2         0.0004
ECDHE                     469045    85.0278
ECDHE and DHE             247197    44.8115
RSA                       474406    85.9997

Supported PFS             Count     Percent  PFS Percent
-------------------------+---------+--------+-----------
DH,1024bits               118316    21.4482  39.9895
DH,1536bits               1         0.0002   0.0003
DH,2048bits               166870    30.25    56.4002
DH,2236bits               65        0.0118   0.022
DH,2432bits               3         0.0005   0.001
DH,3072bits               115       0.0208   0.0389
DH,3092bits               1         0.0002   0.0003
DH,4046bits               1         0.0002   0.0003
DH,4094bits               1         0.0002   0.0003
DH,4096bits               10250     1.8581   3.4644
DH,512bits                57        0.0103   0.0193
DH,768bits                352       0.0638   0.119
DH,8192bits               10        0.0018   0.0034
ECDH,B-571,570bits        2139      0.3878   0.456
ECDH,K-163,163bits        1         0.0002   0.0002
ECDH,P-192,192bits        20        0.0036   0.0043
ECDH,P-224,224bits        90        0.0163   0.0192
ECDH,P-256,256bits        450911    81.7405  96.1338
ECDH,P-384,384bits        5288      0.9586   1.1274
ECDH,P-521,521bits        12472     2.2609   2.659
Prefer DH,1024bits        46513     8.4318   15.7209
Prefer DH,1536bits        1         0.0002   0.0003
Prefer DH,2048bits        5993      1.0864   2.0256
Prefer DH,3072bits        10        0.0018   0.0034
Prefer DH,4096bits        386       0.07     0.1305
Prefer DH,768bits         37        0.0067   0.0125
Prefer ECDH,B-571,570bits 1925      0.349    0.4104
Prefer ECDH,K-163,163bits 1         0.0002   0.0002
Prefer ECDH,P-224,224bits 87        0.0158   0.0185
Prefer ECDH,P-256,256bits 414883    75.2094  88.4527
Prefer ECDH,P-384,384bits 3903      0.7075   0.8321
Prefer ECDH,P-521,521bits 11412     2.0688   2.433
Prefer PFS                485151    87.9475  0
Support PFS               517716    93.8508  0

Supported ECC curves      Count     Percent 
-------------------------+---------+--------
brainpoolP256r1           7010      1.2708   
brainpoolP384r1           7016      1.2719   
brainpoolP512r1           7016      1.2719   
prime192v1                1542      0.2795   
prime192v1 Only           1         0.0002   
prime256v1                465478    84.3812  
prime256v1 Only           399795    72.4743  
secp160k1                 1479      0.2681   
secp160r1                 1485      0.2692   
secp160r2                 1478      0.2679   
secp192k1                 1492      0.2705   
secp224k1                 1571      0.2848   
secp224r1                 4963      0.8997   
secp256k1                 8958      1.6239   
secp384r1                 66416     12.0398  
secp384r1 Only            776       0.1407   
secp521r1                 33828     6.1323   
secp521r1 Only            143       0.0259   
sect163k1                 1480      0.2683   
sect163k1 Only            2         0.0004   
sect163r1                 1478      0.2679   
sect163r2                 1478      0.2679   
sect193r1                 1478      0.2679   
sect193r2                 1478      0.2679   
sect233k1                 1563      0.2833   
sect233r1                 1563      0.2833   
sect239k1                 1563      0.2833   
sect283k1                 8428      1.5278   
sect283r1                 8425      1.5273   
sect409k1                 8431      1.5284   
sect409r1                 8429      1.528    
sect571k1                 8434      1.5289   
sect571r1                 8434      1.5289   

Unsupported curve fallback     Count     Percent 
------------------------------+---------+--------
False                          48103     8.72     
True                           357854    64.8713  
order-specific                 74        0.0134   
unknown                        145606    26.3953  

ECC curve ordering        Count     Percent 
-------------------------+---------+--------
client                    8089      1.4664   
inconclusive-noecc        7         0.0013   
server                    458334    83.0862  
unknown                   85207     15.4462  

TLSv1.2 PFS supported sigalgs  Count     Percent 
------------------------------+---------+--------
ECDSA-SHA1                     48616     8.813    
ECDSA-SHA1 Only                5         0.0009   
ECDSA-SHA224                   48602     8.8105   
ECDSA-SHA256                   64365     11.668   
ECDSA-SHA384                   64360     11.6671  
ECDSA-SHA512                   64365     11.668   
ECDSA-SHA512 Only              6         0.0011   
RSA-MD5                        46119     8.3604   
RSA-SHA1                       404339    73.298   
RSA-SHA1 Only                  37023     6.7115   
RSA-SHA224                     339349    61.5167  
RSA-SHA256                     375560    68.081   
RSA-SHA256 Only                7280      1.3197   
RSA-SHA384                     341601    61.925   
RSA-SHA384 Only                3         0.0005   
RSA-SHA512                     341567    61.9188  
RSA-SHA512 Only                84        0.0152   

TLSv1.2 PFS ordering           Count     Percent 
------------------------------+---------+--------
client                         252624    45.7953  
indeterminate                  57        0.0103   
intolerant                     5553      1.0066   
order-fallback                 7         0.0013   
server                         199982    36.2525  
unsupported                    18801     3.4082   

TLSv1.2 PFS sigalg fallback    Count     Percent 
------------------------------+---------+--------
ECDSA SHA1                     48595     8.8092   
ECDSA intolerant               74        0.0134   
ECDSA pfs-rsa-SHA512           15721     2.8499   
RSA False                      45736     8.291    
RSA SHA1                       328060    59.4703  
RSA intolerant                 39590     7.1768   
RSA pfs-ecdsa-SHA512           1         0.0002   
RSA soft-nopfs                 500       0.0906   

Renegotiation             Count     Percent 
-------------------------+---------+--------
False                     5768      1.0456   
insecure                  16732     3.0332   
secure                    529137    95.9212  

Compression               Count     Percent 
-------------------------+---------+--------
1 (zlib compression)      7977      1.4461   
False                     5768      1.0456   
NONE                      537892    97.5083  

TLS session ticket hint   Count     Percent 
-------------------------+---------+--------
1                         4         0.0007   
1 only                    4         0.0007   
2                         2         0.0004   
2 only                    2         0.0004   
5                         3         0.0005   
5 only                    3         0.0005   
10                        6         0.0011   
10 only                   6         0.0011   
15                        5         0.0009   
15 only                   5         0.0009   
30                        18        0.0033   
30 only                   17        0.0031   
60                        170       0.0308   
60 only                   166       0.0301   
65                        1         0.0002   
65 only                   1         0.0002   
70                        6         0.0011   
75                        1         0.0002   
75 only                   1         0.0002   
100                       13        0.0024   
100 only                  13        0.0024   
120                       23        0.0042   
120 only                  23        0.0042   
128                       2         0.0004   
128 only                  2         0.0004   
150                       2         0.0004   
180                       72        0.0131   
180 only                  70        0.0127   
240                       14        0.0025   
240 only                  14        0.0025   
244                       1         0.0002   
244 only                  1         0.0002   
300                       268504    48.674   
300 only                  264860    48.0135  
302                       3         0.0005   
302 only                  3         0.0005   
360                       2         0.0004   
360 only                  1         0.0002   
400                       5         0.0009   
400 only                  5         0.0009   
420                       124       0.0225   
420 only                  105       0.019    
450                       1         0.0002   
450 only                  1         0.0002   
480                       10        0.0018   
480 only                  10        0.0018   
500                       4         0.0007   
500 only                  4         0.0007   
540                       3         0.0005   
540 only                  3         0.0005   
600                       27697     5.0209   
600 only                  27547     4.9937   
660                       3         0.0005   
660 only                  3         0.0005   
720                       1         0.0002   
720 only                  1         0.0002   
840                       1         0.0002   
840 only                  1         0.0002   
900                       1254      0.2273   
900 only                  1233      0.2235   
960                       2         0.0004   
960 only                  2         0.0004   
1000                      1         0.0002   
1000 only                 1         0.0002   
1200                      3011      0.5458   
1200 only                 3007      0.5451   
1210                      1         0.0002   
1210 only                 1         0.0002   
1300                      1         0.0002   
1300 only                 1         0.0002   
1320                      1         0.0002   
1320 only                 1         0.0002   
1380                      1         0.0002   
1380 only                 1         0.0002   
1500                      5         0.0009   
1500 only                 4         0.0007   
1800                      570       0.1033   
1800 only                 559       0.1013   
1980                      2         0.0004   
1980 only                 2         0.0004   
2100                      2         0.0004   
2100 only                 1         0.0002   
2400                      8         0.0015   
2400 only                 8         0.0015   
2700                      9         0.0016   
2700 only                 9         0.0016   
3000                      28        0.0051   
3000 only                 28        0.0051   
3600                      802       0.1454   
3600 only                 792       0.1436   
3900                      1         0.0002   
3900 only                 1         0.0002   
5160                      1         0.0002   
5160 only                 1         0.0002   
5400                      15        0.0027   
5400 only                 8         0.0015   
6000                      288       0.0522   
6000 only                 287       0.052    
7200                      16170     2.9313   
7200 only                 16152     2.928    
10800                     3928      0.7121   
10800 only                3918      0.7102   
14400                     85        0.0154   
14400 only                84        0.0152   
18000                     9         0.0016   
18000 only                9         0.0016   
21600                     4289      0.7775   
21600 only                4289      0.7775   
25200                     1         0.0002   
25200 only                1         0.0002   
28800                     3301      0.5984   
28800 only                3301      0.5984   
36000                     1118      0.2027   
36000 only                1107      0.2007   
43200                     46        0.0083   
43200 only                46        0.0083   
60000                     2         0.0004   
60000 only                2         0.0004   
64800                     63048     11.4293  
64800 only                63047     11.4291  
72000                     8         0.0015   
72000 only                8         0.0015   
79200                     1         0.0002   
79200 only                1         0.0002   
84000                     1         0.0002   
84000 only                1         0.0002   
86000                     51        0.0092   
86000 only                51        0.0092   
86400                     2862      0.5188   
86400 only                2858      0.5181   
100800                    10169     1.8434   
100800 only               10144     1.8389   
108000                    1         0.0002   
108000 only               1         0.0002   
115200                    1         0.0002   
115200 only               1         0.0002   
129600                    8         0.0015   
129600 only               8         0.0015   
172800                    9         0.0016   
172800 only               9         0.0016   
216000                    5         0.0009   
216000 only               5         0.0009   
259200                    2         0.0004   
259200 only               2         0.0004   
432000                    1         0.0002   
432000 only               1         0.0002   
604800                    2         0.0004   
604800 only               1         0.0002   
864000                    4         0.0007   
864000 only               4         0.0007   
7776000                   2         0.0004   
7776000 only              2         0.0004   
None                      147762    26.7861  
None only                 143812    26.07    

Certificate sig alg     Count     Percent 
-------------------------+---------+--------
None                      9012      1.6337   
ecdsa-with-SHA256         61035     11.0643  
sha1WithRSAEncryption     33972     6.1584   
sha256WithRSAEncryption   472384    85.6331  
sha384WithRSAEncryption   5         0.0009   
sha512WithRSAEncryption   59        0.0107   

Certificate key size    Count     Percent 
-------------------------+---------+--------
ECDSA 256                 64371     11.6691  
ECDSA 384                 20        0.0036   
ECDSA 521                 1         0.0002   
RSA 1024                  29        0.0053   
RSA 2048                  480108    87.0333  
RSA 2049                  2         0.0004   
RSA 2056                  2         0.0004   
RSA 2058                  3         0.0005   
RSA 2084                  4         0.0007   
RSA 2086                  1         0.0002   
RSA 2096                  2         0.0004   
RSA 2432                  2         0.0004   
RSA 3071                  1         0.0002   
RSA 3072                  141       0.0256   
RSA 3073                  1         0.0002   
RSA 3076                  6         0.0011   
RSA 3096                  2         0.0004   
RSA 3248                  4         0.0007   
RSA 4048                  4         0.0007   
RSA 4056                  15        0.0027   
RSA 4092                  2         0.0004   
RSA 4094                  2         0.0004   
RSA 4095                  1         0.0002   
RSA 4096                  25981     4.7098   
RSA 8192                  8         0.0015   
RSA 8392                  1         0.0002   
RSA/ECDSA Dual Stack      19066     3.4563

OCSP stapling             Count     Percent 
-------------------------+---------+--------
Supported                 128880    23.3632  
Unsupported               422757    76.6368  

Supported Protocols       Count     Percent
-------------------------+---------+-------
SSL2                      18283     3.3143
SSL2 Only                 14        0.0025
SSL3                      101196    18.3447
SSL3 Only                 1158      0.2099
SSL3 or TLS1 Only         54616     9.9007
SSL3 or lower Only        1168      0.2117
TLS1                      542011    98.255
TLS1 Only                 34339     6.2249
TLS1 or lower Only        70962     12.8639
TLS1.1                    467843    84.8099
TLS1.1 Only               333       0.0604
TLS1.1 or up Only         8279      1.5008
TLS1.2                    477009    86.4715
TLS1.2 Only               2566      0.4652
TLS1.2, 1.0 but not 1.1   9002      1.6319


Statistics from 587252 chains provided by 715935 hosts

Server provided chains    Count     Percent
-------------------------+---------+-------
complete                  525344    73.3787
incomplete                23228     3.2444
untrusted                 167363    23.3768

Trusted chain statistics
========================

Chain length              Count     Percent
-------------------------+---------+-------
2                         13        0.0022
3                         585030    99.6216
4                         2197      0.3741
5                         12        0.002

CA key size in chains     Count
-------------------------+---------
ECDSA 256                 61011     
ECDSA 384                 61009     
RSA 1024                  26        
RSA 2045                  2         
RSA 2048                  885900    
RSA 4096                  168764    

Chains with CA key        Count     Percent
-------------------------+---------+-------
ECDSA 256                 61011     10.3892
ECDSA 384                 61009     10.3889
RSA 1024                  24        0.0041
RSA 2045                  2         0.0003
RSA 2048                  525829    89.5406
RSA 4096                  168152    28.6337

Signature algorithm (ex. root) Count
------------------------------+---------
ecdsa-with-SHA384              61004     
sha1WithRSAEncryption          38564     
sha256WithRSAEncryption        338536    
sha384WithRSAEncryption        151286    
sha512WithRSAEncryption        70        

Eff. host cert chain LoS  Count     Percent
-------------------------+---------+-------
80                        38602     6.5733
112                       487624    83.0349
128.0                     61026     10.3918

Most popular root CAs                         Count     Percent
---------------------------------------------+---------+-------
(d6325660) COMODO RSA Certification Authority 135263    23.0332
(2c543cd1) GeoTrust Global CA                 101180    17.2294
(eed8c118) COMODO ECC Certification Authority 60996     10.3867
(5ad8a5d6) GlobalSign Root CA                 56051     9.5446
(cbf06781) Go Daddy Root Certificate Authorit 49631     8.4514
(b204d74a) VeriSign Class 3 Public Primary Ce 31013     5.281
(244b5494) DigiCert High Assurance EV Root CA 20318     3.4598
(2e4eed3c) thawte Primary Root CA             18889     3.2165
(fc5a8f99) USERTrust RSA Certification Author 15885     2.705
(653b494a) Baltimore CyberTrust Root          13245     2.2554
(4bfab552) Starfield Root Certificate Authori 10600     1.805
(3513523f) DigiCert Global Root CA            9653      1.6438
(ae8153b9) StartCom Certification Authority   8863      1.5092
(2e5ac55d) DST Root CA X3                     7351      1.2518


Test ran between 17th of March and 5th of April 2016

February 2016 scan results (incomplete)

Unfortunately during scanning the disk space on the server run out so the results are not complete.

Other than that, no interesting developments, just continuation of established trends.

SSL/TLS survey of 479178 websites from Alexa's top 1 million
Stats only from connections that did provide valid certificates
(or anonymous DH from servers that do also have valid certificate installed)


Supported Ciphers         Count     Percent
-------------------------+---------+-------
3DES                      419340    87.5124
3DES Only                 506       0.1056
3DES Preferred            1692      0.3531
3DES forced in TLS1.1+    922       0.1924
AES                       474652    99.0555
AES Only                  37306     7.7854
AES-CBC                   474138    98.9482
AES-CBC Only              7523      1.57
AES-GCM                   380917    79.4938
AES-GCM Only              466       0.0972
CAMELLIA                  201933    42.1415
CAMELLIA Only             3         0.0006
CHACHA20                  66326     13.8416
CHACHA20 Only             1         0.0002
Insecure                  48383     10.0971
RC4                       149250    31.1471
RC4 Only                  177       0.0369
RC4 Preferred             15506     3.236
RC4 forced in TLS1.1+     8442      1.7618
x:FF 29 3DES Only         550       0.1148
x:FF 29 3DES Preferred    2012      0.4199
x:FF 29 RC4 Only          265       0.0553
x:FF 29 RC4 Preferred     17097     3.568
x:FF 29 incompatible      321       0.067
x:FF 35 3DES Only         559       0.1167
x:FF 35 3DES Preferred    1924      0.4015
x:FF 35 RC4 Only          311       0.0649
x:FF 35 RC4 Preferred     17124     3.5736
x:FF 35 incompatible      325       0.0678
y:DHE-RSA-SEED-SHA        60590     12.6446
y:IDEA-CBC-SHA            58075     12.1197
y:SEED-SHA                70022     14.6129
z:ADH-AES128-GCM-SHA256   354       0.0739
z:ADH-AES128-SHA          605       0.1263
z:ADH-AES128-SHA256       246       0.0513
z:ADH-AES256-GCM-SHA384   367       0.0766
z:ADH-AES256-SHA          618       0.129
z:ADH-AES256-SHA256       245       0.0511
z:ADH-CAMELLIA128-SHA     316       0.0659
z:ADH-CAMELLIA256-SHA     321       0.067
z:ADH-DES-CBC-SHA         243       0.0507
z:ADH-DES-CBC3-SHA        620       0.1294
z:ADH-RC4-MD5             455       0.095
z:ADH-SEED-SHA            254       0.053
z:AECDH-AES128-SHA        7521      1.5696
z:AECDH-AES256-SHA        7556      1.5769
z:AECDH-DES-CBC3-SHA      7499      1.565
z:AECDH-NULL-SHA          45        0.0094
z:AECDH-RC4-SHA           7010      1.4629
z:DES-CBC-MD5             7605      1.5871
z:DES-CBC-SHA             30728     6.4126
z:DES-CBC3-MD5            17199     3.5893
z:ECDHE-RSA-NULL-SHA      53        0.0111
z:EDH-RSA-DES-CBC-SHA     25945     5.4145
z:EXP-ADH-DES-CBC-SHA     148       0.0309
z:EXP-ADH-RC4-MD5         145       0.0303
z:EXP-DES-CBC-SHA         10647     2.2219
z:EXP-EDH-RSA-DES-CBC-SHA 8346      1.7417
z:EXP-RC2-CBC-MD5         12795     2.6702
z:EXP-RC4-MD5             13391     2.7946
z:EXP1024-DES-CBC-SHA     3415      0.7127
z:EXP1024-RC4-SHA         3465      0.7231
z:IDEA-CBC-MD5            1613      0.3366
z:NULL-MD5                162       0.0338
z:NULL-SHA                169       0.0353
z:NULL-SHA256             38        0.0079
z:RC2-CBC-MD5             7754      1.6182
z:RC4-64-MD5              712       0.1486

Cipher ordering           Count     Percent
-------------------------+---------+-------
Client side               116701    24.3544
Server side               362477    75.6456

Supported Handshakes      Count     Percent
-------------------------+---------+-------
ADH                       753       0.1571
AECDH                     7568      1.5794
DHE                       255330    53.285
ECDH                      2         0.0004
ECDHE                     404645    84.4457
ECDHE and DHE             212045    44.2518
RSA                       411697    85.9173

Supported PFS             Count     Percent  PFS Percent
-------------------------+---------+--------+-----------
DH,1024bits               107150    22.3612  41.9653
DH,1338bits               1         0.0002   0.0004
DH,1536bits               1         0.0002   0.0004
DH,2048bits               139444    29.1007  54.6132
DH,2236bits               57        0.0119   0.0223
DH,2432bits               3         0.0006   0.0012
DH,3072bits               93        0.0194   0.0364
DH,3092bits               1         0.0002   0.0004
DH,4096bits               8367      1.7461   3.2769
DH,512bits                52        0.0109   0.0204
DH,768bits                313       0.0653   0.1226
DH,8192bits               7         0.0015   0.0027
ECDH,B-571,570bits        1786      0.3727   0.4414
ECDH,K-163,163bits        1         0.0002   0.0002
ECDH,P-192,192bits        15        0.0031   0.0037
ECDH,P-224,224bits        84        0.0175   0.0208
ECDH,P-256,256bits        389954    81.3798  96.3694
ECDH,P-384,384bits        4297      0.8967   1.0619
ECDH,P-521,521bits        10105     2.1088   2.4973
Prefer DH,1024bits        41750     8.7128   16.3514
Prefer DH,1536bits        1         0.0002   0.0004
Prefer DH,2048bits        4670      0.9746   1.829
Prefer DH,3072bits        7         0.0015   0.0027
Prefer DH,4096bits        333       0.0695   0.1304
Prefer DH,768bits         37        0.0077   0.0145
Prefer ECDH,B-571,570bits 1575      0.3287   0.3892
Prefer ECDH,K-163,163bits 1         0.0002   0.0002
Prefer ECDH,P-224,224bits 81        0.0169   0.02
Prefer ECDH,P-256,256bits 357787    74.6668  88.42
Prefer ECDH,P-384,384bits 3158      0.659    0.7804
Prefer ECDH,P-521,521bits 9166      1.9129   2.2652
Prefer PFS                418566    87.3508  0
Support PFS               447930    93.4788  0

Supported ECC curves      Count     Percent 
-------------------------+---------+--------
brainpoolP256r1           5523      1.1526   
brainpoolP384r1           5524      1.1528   
brainpoolP512r1           5525      1.153    
prime192v1                1353      0.2824   
prime256v1                401476    83.7843  
prime256v1 Only           345957    72.198   
secp160k1                 1299      0.2711   
secp160r1                 1304      0.2721   
secp160r2                 1299      0.2711   
secp192k1                 1314      0.2742   
secp224k1                 1392      0.2905   
secp224r1                 4371      0.9122   
secp256k1                 7238      1.5105   
secp384r1                 56063     11.6998  
secp384r1 Only            584       0.1219   
secp521r1                 28028     5.8492   
secp521r1 Only            125       0.0261   
sect163k1                 1310      0.2734   
sect163k1 Only            3         0.0006   
sect163r1                 1306      0.2726   
sect163r2                 1307      0.2728   
sect193r1                 1306      0.2726   
sect193r2                 1304      0.2721   
sect233k1                 1387      0.2895   
sect233r1                 1386      0.2892   
sect239k1                 1383      0.2886   
sect283k1                 6795      1.4181   
sect283k1 Only            1         0.0002   
sect283r1                 6792      1.4174   
sect409k1                 6793      1.4176   
sect409r1                 6793      1.4176   
sect571k1                 6797      1.4185   
sect571r1                 6797      1.4185   

Unsupported curve fallback     Count     Percent 
------------------------------+---------+--------
False                          43974     9.177    
True                           304974    63.6452  
order-specific                 61        0.0127   
unknown                        130169    27.1651  

ECC curve ordering        Count     Percent 
-------------------------+---------+--------
client                    6487      1.3538   
inconclusive-noecc        8         0.0017   
server                    395730    82.5852  
unknown                   76953     16.0594  

TLSv1.2 PFS supported sigalgs  Count     Percent 
------------------------------+---------+--------
ECDSA-SHA1                     40044     8.3568   
ECDSA-SHA1 Only                3         0.0006   
ECDSA-SHA224                   40035     8.3549   
ECDSA-SHA256                   54403     11.3534  
ECDSA-SHA384                   54398     11.3524  
ECDSA-SHA512                   54399     11.3526  
ECDSA-SHA512 Only              1         0.0002   
RSA-MD5                        47971     10.0111  
RSA-SHA1                       347530    72.5263  
RSA-SHA1 Only                  36263     7.5678   
RSA-SHA224                     288147    60.1336  
RSA-SHA256                     318675    66.5045  
RSA-SHA256 Only                6467      1.3496   
RSA-SHA384                     290085    60.538   
RSA-SHA384 Only                2         0.0004   
RSA-SHA512                     290093    60.5397  
RSA-SHA512 Only                126       0.0263   

TLSv1.2 PFS ordering           Count     Percent 
------------------------------+---------+--------
client                         215610    44.9958  
indeterminate                  32        0.0067   
intolerant                     4623      0.9648   
order-fallback                 3         0.0006   
server                         175045    36.5303  
unsupported                    17219     3.5934   

TLSv1.2 PFS sigalg fallback    Count     Percent 
------------------------------+---------+--------
ECDSA SHA1                     40031     8.3541   
ECDSA intolerant               47        0.0098   
ECDSA pfs-rsa-SHA512           14337     2.992    
ECDSA soft-nopfs               1         0.0002   
RSA False                      47573     9.928    
RSA SHA1                       274148    57.2121  
RSA intolerant                 34088     7.1138   
RSA pfs-ecdsa-SHA512           4         0.0008   
RSA soft-nopfs                 498       0.1039   

Renegotiation             Count     Percent 
-------------------------+---------+--------
False                     5212      1.0877   
insecure                  15480     3.2305   
secure                    458486    95.6818  

Compression               Count     Percent 
-------------------------+---------+--------
1 (zlib compression)      7370      1.5381   
False                     5212      1.0877   
NONE                      466596    97.3743  

TLS session ticket hint   Count     Percent 
-------------------------+---------+--------
1                         4         0.0008   
1 only                    4         0.0008   
2                         1         0.0002   
2 only                    1         0.0002   
10                        6         0.0013   
10 only                   6         0.0013   
15                        5         0.001    
15 only                   5         0.001    
30                        18        0.0038   
30 only                   17        0.0035   
60                        142       0.0296   
60 only                   138       0.0288   
65                        1         0.0002   
65 only                   1         0.0002   
70                        6         0.0013   
100                       15        0.0031   
100 only                  15        0.0031   
120                       24        0.005    
120 only                  24        0.005    
128                       3         0.0006   
128 only                  3         0.0006   
150                       1         0.0002   
180                       58        0.0121   
180 only                  55        0.0115   
240                       7         0.0015   
240 only                  7         0.0015   
244                       1         0.0002   
244 only                  1         0.0002   
300                       230415    48.0855  
300 only                  226909    47.3538  
302                       2         0.0004   
302 only                  2         0.0004   
360                       3         0.0006   
360 only                  1         0.0002   
400                       7         0.0015   
400 only                  7         0.0015   
420                       116       0.0242   
420 only                  93        0.0194   
480                       10        0.0021   
480 only                  10        0.0021   
500                       4         0.0008   
500 only                  4         0.0008   
540                       2         0.0004   
540 only                  2         0.0004   
600                       23920     4.9919   
600 only                  23758     4.9581   
660                       1         0.0002   
660 only                  1         0.0002   
840                       1         0.0002   
840 only                  1         0.0002   
900                       983       0.2051   
900 only                  962       0.2008   
960                       3         0.0006   
960 only                  3         0.0006   
1000                      1         0.0002   
1000 only                 1         0.0002   
1200                      2630      0.5489   
1200 only                 2627      0.5482   
1320                      1         0.0002   
1320 only                 1         0.0002   
1500                      2         0.0004   
1500 only                 1         0.0002   
1800                      500       0.1043   
1800 only                 491       0.1025   
1980                      2         0.0004   
1980 only                 2         0.0004   
2100                      2         0.0004   
2100 only                 1         0.0002   
2400                      7         0.0015   
2400 only                 7         0.0015   
2700                      10        0.0021   
2700 only                 10        0.0021   
3000                      26        0.0054   
3000 only                 26        0.0054   
3600                      664       0.1386   
3600 only                 655       0.1367   
3900                      1         0.0002   
3900 only                 1         0.0002   
5160                      1         0.0002   
5160 only                 1         0.0002   
5400                      15        0.0031   
5400 only                 8         0.0017   
6000                      214       0.0447   
6000 only                 214       0.0447   
7200                      14927     3.1151   
7200 only                 14908     3.1112   
10800                     3286      0.6858   
10800 only                3277      0.6839   
14400                     93        0.0194   
14400 only                91        0.019    
18000                     9         0.0019   
18000 only                9         0.0019   
21600                     3668      0.7655   
21600 only                3668      0.7655   
25200                     1         0.0002   
25200 only                1         0.0002   
28800                     1854      0.3869   
28800 only                1853      0.3867   
36000                     954       0.1991   
36000 only                945       0.1972   
43200                     39        0.0081   
43200 only                39        0.0081   
60000                     1         0.0002   
60000 only                1         0.0002   
64800                     56248     11.7384  
64800 only                56243     11.7374  
72000                     21        0.0044   
72000 only                21        0.0044   
79200                     1         0.0002   
79200 only                1         0.0002   
86000                     44        0.0092   
86000 only                44        0.0092   
86400                     2743      0.5724   
86400 only                2734      0.5706   
100800                    8629      1.8008   
100800 only               8618      1.7985   
115200                    1         0.0002   
115200 only               1         0.0002   
129600                    7         0.0015   
129600 only               7         0.0015   
172800                    9         0.0019   
172800 only               9         0.0019   
216000                    2         0.0004   
216000 only               2         0.0004   
259200                    2         0.0004   
259200 only               2         0.0004   
432000                    1         0.0002   
432000 only               1         0.0002   
604800                    2         0.0004   
864000                    3         0.0006   
864000 only               3         0.0006   
7776000                   2         0.0004   
7776000 only              2         0.0004   
None                      130619    27.259   
None only                 126799    26.4618  

Certificate sig alg     Count     Percent 
-------------------------+---------+--------
None                      8093      1.6889   
ecdsa-with-SHA256         54346     11.3415  
sha1WithRSAEncryption     32309     6.7426   
sha256WithRSAEncryption   406902    84.9167  
sha384WithRSAEncryption   3         0.0006   
sha512WithRSAEncryption   52        0.0109   

Certificate key size    Count     Percent 
-------------------------+---------+--------
ECDSA 256                 54398     11.3524  
ECDSA 384                 18        0.0038   
ECDSA 521                 1         0.0002   
RSA 1024                  28        0.0058   
RSA 2048                  416954    87.0144  
RSA 2049                  3         0.0006   
RSA 2056                  2         0.0004   
RSA 2058                  2         0.0004   
RSA 2084                  4         0.0008   
RSA 2086                  1         0.0002   
RSA 2096                  2         0.0004   
RSA 2432                  1         0.0002   
RSA 3071                  1         0.0002   
RSA 3072                  118       0.0246   
RSA 3073                  1         0.0002   
RSA 3076                  2         0.0004   
RSA 3096                  2         0.0004   
RSA 3248                  2         0.0004   
RSA 4048                  1         0.0002   
RSA 4056                  17        0.0035   
RSA 4092                  7         0.0015   
RSA 4094                  1         0.0002   
RSA 4096                  22025     4.5964   
RSA 4098                  1         0.0002   
RSA 8192                  4         0.0008   
RSA 8392                  1         0.0002   
RSA/ECDSA Dual Stack      14407     3.0066

OCSP stapling             Count     Percent 
-------------------------+---------+--------
Supported                 112039    23.3815  
Unsupported               367139    76.6185  

Supported Protocols       Count     Percent
-------------------------+---------+-------
SSL2                      17376     3.6262
SSL2 Only                 10        0.0021
SSL3                      93563     19.5257
SSL3 Only                 980       0.2045
SSL3 or TLS1 Only         47829     9.9815
SSL3 or lower Only        992       0.207
TLS1                      472039    98.5102
TLS1 Only                 29199     6.0936
TLS1 or lower Only        63377     13.2262
TLS1.1                    404578    84.4317
TLS1.1 Only               297       0.062
TLS1.1 or up Only         5984      1.2488
TLS1.2                    412518    86.0887
TLS1.2 Only               2158      0.4504
TLS1.2, 1.0 but not 1.1   7981      1.6656



Statistics from 487333 chains provided by 621854 hosts

Server provided chains    Count     Percent
-------------------------+---------+-------
complete                  436283    70.1584
incomplete                20784     3.3423
untrusted                 164787    26.4993

Trusted chain statistics
========================

Chain length              Count     Percent
-------------------------+---------+-------
2                         12        0.0025
3                         485364    99.596
4                         1945      0.3991
5                         12        0.0025

CA key size in chains     Count
-------------------------+---------
ECDSA 256                 42987     
ECDSA 384                 42988     
RSA 1024                  28        
RSA 2045                  2         
RSA 2048                  746942    
RSA 4096                  143676    

Chains with CA key        Count     Percent
-------------------------+---------+-------
ECDSA 256                 42987     8.8209
ECDSA 384                 42988     8.8211
RSA 1024                  26        0.0053
RSA 2045                  2         0.0004
RSA 2048                  443976    91.1032
RSA 4096                  143127    29.3694

Signature algorithm (ex. root) Count
------------------------------+---------
ecdsa-with-SHA384              42983     
sha1WithRSAEncryption          37695     
sha256WithRSAEncryption        279113    
sha384WithRSAEncryption        129437    
sha512WithRSAEncryption        62        

Eff. host cert chain LoS  Count     Percent
-------------------------+---------+-------
80                        37722     7.7405
112                       406613    83.4364
128.0                     42998     8.8231

Root CAs                                      Count     Percent
---------------------------------------------+---------+-------
(d6325660) COMODO RSA Certification Authority 115692    23.7398
(2c543cd1) GeoTrust Global CA                 85975     17.6419
(cbf06781) Go Daddy Root Certificate Authorit 43560     8.9384
(eed8c118) COMODO ECC Certification Authority 42977     8.8188
(5ad8a5d6) GlobalSign Root CA                 41299     8.4745
(b204d74a) VeriSign Class 3 Public Primary Ce 28043     5.7544
(244b5494) DigiCert High Assurance EV Root CA 18414     3.7785
(2e4eed3c) thawte Primary Root CA             17524     3.5959
(fc5a8f99) USERTrust RSA Certification Author 13626     2.796
(653b494a) Baltimore CyberTrust Root          10432     2.1406
(3513523f) DigiCert Global Root CA            8525      1.7493
(ae8153b9) StartCom Certification Authority   7668      1.5735
(4bfab552) Starfield Root Certificate Authori 7663      1.5724
(480720ec) GeoTrust Primary Certification Aut 4978      1.0215

Scan performed between 22nd of February and 16th of March 2016

January 2016 scan results

Another month, no exciting changes.

SSL/TLS survey of 541489 websites from Alexa's top 1 million
Stats only from connections that did provide valid certificates
(or anonymous DH from servers that do also have valid certificate installed)


Supported Ciphers         Count     Percent
-------------------------+---------+-------
3DES                      477135    88.1154
3DES Only                 523       0.0966
3DES Preferred            1744      0.3221
3DES forced in TLS1.1+    945       0.1745
AES                       535585    98.9097
AES Only                  34994     6.4626
AES-CBC                   534935    98.7896
AES-CBC Only              9110      1.6824
AES-GCM                   422759    78.0734
AES-GCM Only              589       0.1088
CAMELLIA                  228296    42.1608
CAMELLIA Only             2         0.0004
CHACHA20                  72561     13.4003
CHACHA20 Only             1         0.0002
Insecure                  56630     10.4582
RC4                       178913    33.0409
RC4 Only                  577       0.1066
RC4 Preferred             18219     3.3646
RC4 forced in TLS1.1+     9446      1.7444
x:FF 29 3DES Only         574       0.106
x:FF 29 3DES Preferred    2103      0.3884
x:FF 29 RC4 Only          771       0.1424
x:FF 29 RC4 Preferred     20172     3.7253
x:FF 29 incompatible      395       0.0729
x:FF 35 3DES Only         582       0.1075
x:FF 35 3DES Preferred    2009      0.371
x:FF 35 RC4 Only          937       0.173
x:FF 35 RC4 Preferred     20230     3.736
x:FF 35 incompatible      398       0.0735
y:DHE-RSA-SEED-SHA        66504     12.2817
y:IDEA-CBC-SHA            63061     11.6459
y:SEED-SHA                78410     14.4804
z:ADH-AES128-GCM-SHA256   397       0.0733
z:ADH-AES128-SHA          714       0.1319
z:ADH-AES128-SHA256       269       0.0497
z:ADH-AES256-GCM-SHA384   413       0.0763
z:ADH-AES256-SHA          723       0.1335
z:ADH-AES256-SHA256       271       0.05
z:ADH-CAMELLIA128-SHA     358       0.0661
z:ADH-CAMELLIA256-SHA     366       0.0676
z:ADH-DES-CBC-SHA         298       0.055
z:ADH-DES-CBC3-SHA        722       0.1333
z:ADH-RC4-MD5             560       0.1034
z:ADH-SEED-SHA            286       0.0528
z:AECDH-AES128-SHA        9282      1.7142
z:AECDH-AES256-SHA        9332      1.7234
z:AECDH-DES-CBC3-SHA      9248      1.7079
z:AECDH-NULL-SHA          61        0.0113
z:AECDH-RC4-SHA           8710      1.6085
z:DES-CBC-MD5             10050     1.856
z:DES-CBC-SHA             35379     6.5337
z:DES-CBC3-MD5            21189     3.9131
z:ECDHE-RSA-NULL-SHA      67        0.0124
z:EDH-RSA-DES-CBC-SHA     30295     5.5948
z:EXP-ADH-DES-CBC-SHA     192       0.0355
z:EXP-ADH-RC4-MD5         189       0.0349
z:EXP-DES-CBC-SHA         13046     2.4093
z:EXP-EDH-RSA-DES-CBC-SHA 10364     1.914
z:EXP-RC2-CBC-MD5         15781     2.9144
z:EXP-RC4-MD5             16506     3.0483
z:EXP1024-DES-CBC-SHA     4104      0.7579
z:EXP1024-RC4-SHA         4194      0.7745
z:IDEA-CBC-MD5            2095      0.3869
z:NULL-MD5                211       0.039
z:NULL-SHA                210       0.0388
z:NULL-SHA256             30        0.0055
z:RC2-CBC-MD5             10224     1.8881
z:RC4-64-MD5              892       0.1647

Cipher ordering           Count     Percent
-------------------------+---------+-------
Client side               133145    24.5887
Server side               408344    75.4113

Supported Handshakes      Count     Percent
-------------------------+---------+-------
ADH                       874       0.1614
AECDH                     9353      1.7273
DHE                       292291    53.9791
ECDH                      2         0.0004
ECDHE                     448914    82.9036
ECDHE and DHE             235557    43.5017
RSA                       475602    87.8323

Supported PFS             Count     Percent  PFS Percent
-------------------------+---------+--------+-----------
DH,1024bits               152465    28.1566  52.1621
DH,1338bits               1         0.0002   0.0003
DH,1536bits               1         0.0002   0.0003
DH,2048bits               131006    24.1937  44.8204
DH,2236bits               13        0.0024   0.0044
DH,2432bits               2         0.0004   0.0007
DH,2560bits               1         0.0002   0.0003
DH,3072bits               93        0.0172   0.0318
DH,3092bits               1         0.0002   0.0003
DH,4096bits               8605      1.5891   2.944
DH,4098bits               1         0.0002   0.0003
DH,512bits                50        0.0092   0.0171
DH,768bits                395       0.0729   0.1351
DH,8192bits               2         0.0004   0.0007
ECDH,B-571,570bits        1771      0.3271   0.3945
ECDH,K-163,163bits        1         0.0002   0.0002
ECDH,P-192,192bits        15        0.0028   0.0033
ECDH,P-224,224bits        84        0.0155   0.0187
ECDH,P-256,256bits        433613    80.0779  96.5916
ECDH,P-384,384bits        4499      0.8309   1.0022
ECDH,P-521,521bits        10705     1.977    2.3846
Prefer DH,1024bits        53883     9.9509   18.4347
Prefer DH,1536bits        1         0.0002   0.0003
Prefer DH,2048bits        6107      1.1278   2.0894
Prefer DH,3072bits        9         0.0017   0.0031
Prefer DH,4096bits        375       0.0693   0.1283
Prefer DH,768bits         52        0.0096   0.0178
Prefer ECDH,B-571,570bits 1556      0.2874   0.3466
Prefer ECDH,K-163,163bits 1         0.0002   0.0002
Prefer ECDH,P-224,224bits 81        0.015    0.018
Prefer ECDH,P-256,256bits 396887    73.2955  88.4105
Prefer ECDH,P-384,384bits 3290      0.6076   0.7329
Prefer ECDH,P-521,521bits 9642      1.7806   2.1479
Prefer PFS                471884    87.1456  0
Support PFS               505648    93.381   0

Supported ECC curves      Count     Percent 
-------------------------+---------+--------
brainpoolP256r1           2578      0.4761   
brainpoolP384r1           2579      0.4763   
brainpoolP512r1           2580      0.4765   
prime192v1                1446      0.267    
prime256v1                445477    82.2689  
prime256v1 Only           388604    71.7658  
secp160k1                 1397      0.258    
secp160r1                 1402      0.2589   
secp160r2                 1396      0.2578   
secp192k1                 1410      0.2604   
secp224k1                 1487      0.2746   
secp224r1                 4270      0.7886   
secp224r1 Only            1         0.0002   
secp256k1                 4033      0.7448   
secp384r1                 57392     10.5989  
secp384r1 Only            554       0.1023   
secp521r1                 26343     4.8649   
secp521r1 Only            142       0.0262   
sect163k1                 1402      0.2589   
sect163k1 Only            2         0.0004   
sect163r1                 1400      0.2585   
sect163r2                 1400      0.2585   
sect193r1                 1399      0.2584   
sect193r2                 1399      0.2584   
sect233k1                 1480      0.2733   
sect233r1                 1480      0.2733   
sect239k1                 1480      0.2733   
sect283k1                 3926      0.725    
sect283k1 Only            1         0.0002   
sect283r1                 3925      0.7249   
sect409k1                 3924      0.7247   
sect409r1                 3923      0.7245   
sect571k1                 3928      0.7254   
sect571r1                 3929      0.7256   

Unsupported curve fallback     Count     Percent 
------------------------------+---------+--------
False                          55946     10.3319  
True                           332237    61.3562  
order-specific                 60        0.0111   
unknown                        153246    28.3009  

ECC curve ordering        Count     Percent 
-------------------------+---------+--------
client                    6546      1.2089   
inconclusive-noecc        10        0.0018   
server                    439646    81.192   
unknown                   95287     17.5972  

TLSv1.2 PFS supported sigalgs  Count     Percent 
------------------------------+---------+--------
ECDSA-SHA1                     43763     8.082    
ECDSA-SHA1 Only                3         0.0006   
ECDSA-SHA224                   43755     8.0805   
ECDSA-SHA256                   58463     10.7967  
ECDSA-SHA384                   58458     10.7958  
ECDSA-SHA512                   58458     10.7958  
RSA-MD5                        93307     17.2316  
RSA-SHA1                       386583    71.3926  
RSA-SHA1 Only                  41287     7.6247   
RSA-SHA224                     320766    59.2378  
RSA-SHA256                     353383    65.2613  
RSA-SHA256 Only                6919      1.2778   
RSA-SHA384                     322845    59.6217  
RSA-SHA384 Only                1         0.0002   
RSA-SHA512                     322938    59.6389  
RSA-SHA512 Only                199       0.0368   

TLSv1.2 PFS ordering           Count     Percent 
------------------------------+---------+--------
client                         245811    45.3954  
indeterminate                  42        0.0078   
intolerant                     5114      0.9444   
order-fallback                 9         0.0017   
server                         187931    34.7063  
unsupported                    19787     3.6542   

TLSv1.2 PFS sigalg fallback    Count     Percent 
------------------------------+---------+--------
ECDSA SHA1                     43750     8.0796   
ECDSA intolerant               30        0.0055   
ECDSA pfs-rsa-SHA512           14685     2.712    
ECDSA soft-nopfs               1         0.0002   
RSA False                      92525     17.0871  
RSA SHA1                       265644    49.0581  
RSA intolerant                 37307     6.8897   
RSA pfs-ecdsa-SHA512           1         0.0002   
RSA soft-nopfs                 863       0.1594   

Renegotiation             Count     Percent 
-------------------------+---------+--------
False                     6052      1.1177   
insecure                  17380     3.2097   
secure                    518057    95.6727  

Compression               Count     Percent 
-------------------------+---------+--------
1 (zlib compression)      8694      1.6056   
False                     6052      1.1177   
NONE                      526743    97.2768  

TLS session ticket hint   Count     Percent 
-------------------------+---------+--------
1                         5         0.0009   
1 only                    5         0.0009   
2                         1         0.0002   
2 only                    1         0.0002   
5                         1         0.0002   
5 only                    1         0.0002   
10                        11        0.002    
10 only                   11        0.002    
15                        9         0.0017   
15 only                   9         0.0017   
30                        14        0.0026   
30 only                   12        0.0022   
60                        158       0.0292   
60 only                   152       0.0281   
65                        1         0.0002   
65 only                   1         0.0002   
70                        7         0.0013   
75                        1         0.0002   
75 only                   1         0.0002   
100                       13        0.0024   
100 only                  13        0.0024   
120                       25        0.0046   
120 only                  25        0.0046   
128                       3         0.0006   
128 only                  3         0.0006   
150                       2         0.0004   
180                       59        0.0109   
180 only                  56        0.0103   
240                       6         0.0011   
240 only                  6         0.0011   
244                       1         0.0002   
244 only                  1         0.0002   
300                       257671    47.5856  
300 only                  253451    46.8063  
302                       3         0.0006   
302 only                  3         0.0006   
360                       2         0.0004   
360 only                  1         0.0002   
400                       6         0.0011   
400 only                  6         0.0011   
420                       114       0.0211   
420 only                  91        0.0168   
450                       1         0.0002   
450 only                  1         0.0002   
480                       13        0.0024   
480 only                  13        0.0024   
500                       4         0.0007   
500 only                  4         0.0007   
540                       1         0.0002   
540 only                  1         0.0002   
600                       27406     5.0612   
600 only                  27252     5.0328   
720                       2         0.0004   
720 only                  2         0.0004   
840                       2         0.0004   
840 only                  2         0.0004   
900                       989       0.1826   
900 only                  972       0.1795   
960                       3         0.0006   
960 only                  3         0.0006   
1200                      2741      0.5062   
1200 only                 2735      0.5051   
1500                      6         0.0011   
1500 only                 5         0.0009   
1800                      555       0.1025   
1800 only                 545       0.1006   
1980                      2         0.0004   
1980 only                 2         0.0004   
2100                      2         0.0004   
2100 only                 1         0.0002   
2400                      9         0.0017   
2400 only                 9         0.0017   
2700                      11        0.002    
2700 only                 11        0.002    
3000                      29        0.0054   
3000 only                 29        0.0054   
3300                      1         0.0002   
3300 only                 1         0.0002   
3600                      688       0.1271   
3600 only                 679       0.1254   
3900                      1         0.0002   
3900 only                 1         0.0002   
5160                      1         0.0002   
5160 only                 1         0.0002   
5400                      13        0.0024   
5400 only                 7         0.0013   
6000                      235       0.0434   
6000 only                 235       0.0434   
7200                      15880     2.9327   
7200 only                 15854     2.9279   
10800                     3309      0.6111   
10800 only                3300      0.6094   
14400                     100       0.0185   
14400 only                100       0.0185   
18000                     8         0.0015   
18000 only                8         0.0015   
21600                     4676      0.8635   
21600 only                4676      0.8635   
25200                     1         0.0002   
25200 only                1         0.0002   
28800                     2453      0.453    
28800 only                2450      0.4525   
36000                     1094      0.202    
36000 only                1083      0.2      
43200                     41        0.0076   
43200 only                41        0.0076   
60000                     2         0.0004   
60000 only                2         0.0004   
64800                     4295      0.7932   
64800 only                4295      0.7932   
72000                     28        0.0052   
72000 only                28        0.0052   
79200                     1         0.0002   
79200 only                1         0.0002   
86000                     48        0.0089   
86000 only                48        0.0089   
86400                     3671      0.6779   
86400 only                3666      0.677    
100800                    10910     2.0148   
100800 only               10897     2.0124   
115200                    1         0.0002   
115200 only               1         0.0002   
129600                    8         0.0015   
129600 only               8         0.0015   
172800                    10        0.0018   
172800 only               10        0.0018   
216000                    2         0.0004   
216000 only               2         0.0004   
259200                    2         0.0004   
259200 only               2         0.0004   
432000                    1         0.0002   
432000 only               1         0.0002   
604800                    1         0.0002   
864000                    3         0.0006   
864000 only               3         0.0006   
None                      208648    38.5323  
None only                 204120    37.6961  

Certificate sig alg     Count     Percent 
-------------------------+---------+--------
None                      9968      1.8408   
ecdsa-with-SHA256         58398     10.7847  
sha1WithRSAEncryption     51637     9.5361   
sha256WithRSAEncryption   446192    82.4009  
sha384WithRSAEncryption   5         0.0009   
sha512WithRSAEncryption   43        0.0079   

Certificate key size    Count     Percent 
-------------------------+---------+--------
ECDSA 256                 58449     10.7941  
ECDSA 384                 17        0.0031   
ECDSA 521                 1         0.0002   
RSA 1024                  20        0.0037   
RSA 2047                  1         0.0002   
RSA 2048                  473537    87.4509  
RSA 2049                  2         0.0004   
RSA 2056                  1         0.0002   
RSA 2058                  2         0.0004   
RSA 2064                  2         0.0004   
RSA 2084                  5         0.0009   
RSA 2096                  2         0.0004   
RSA 2408                  1         0.0002   
RSA 2432                  1         0.0002   
RSA 2480                  1         0.0002   
RSA 3071                  1         0.0002   
RSA 3072                  119       0.022    
RSA 3073                  1         0.0002   
RSA 3096                  2         0.0004   
RSA 3248                  2         0.0004   
RSA 4048                  1         0.0002   
RSA 4056                  18        0.0033   
RSA 4092                  6         0.0011   
RSA 4094                  1         0.0002   
RSA 4095                  1         0.0002   
RSA 4096                  24063     4.4439   
RSA 4098                  1         0.0002   
RSA 8192                  3         0.0006   
RSA/ECDSA Dual Stack      14756     2.7251

OCSP stapling             Count     Percent 
-------------------------+---------+--------
Supported                 125414    23.161   
Unsupported               416075    76.839   

Supported Protocols       Count     Percent
-------------------------+---------+-------
SSL2                      21373     3.9471
SSL2 Only                 15        0.0028
SSL3                      111129    20.5229
SSL3 Only                 1140      0.2105
SSL3 or TLS1 Only         59881     11.0586
SSL3 or lower Only        1155      0.2133
TLS1                      534137    98.6423
TLS1 Only                 37819     6.9843
TLS1 or lower Only        79028     14.5946
TLS1.1                    449426    82.9982
TLS1.1 Only               331       0.0611
TLS1.1 or up Only         5997      1.1075
TLS1.2                    458682    84.7075
TLS1.2 Only               2265      0.4183
TLS1.2, 1.0 but not 1.1   9518      1.7577

Statistics from 575515 chains provided by 712157 hosts

Server provided chains    Count     Percent
-------------------------+---------+-------
complete                  510961    71.7484
incomplete                28667     4.0254
untrusted                 172529    24.2263

Trusted chain statistics
========================

Chain length              Count     Percent
-------------------------+---------+-------
2                         26        0.0045
3                         573525    99.6542
4                         1952      0.3392
5                         12        0.0021

CA key size in chains     Count
-------------------------+---------
ECDSA 256                 58397     
ECDSA 384                 58400     
RSA 1024                  25        
RSA 2045                  2         
RSA 2048                  878262    
RSA 4096                  157894    

Chains with CA key        Count     Percent
-------------------------+---------+-------
ECDSA 256                 58397     10.1469
ECDSA 384                 58400     10.1474
RSA 1024                  23        0.004
RSA 2045                  2         0.0003
RSA 2048                  516745    89.7883
RSA 4096                  157333    27.3378

Signature algorithm (ex. root) Count
------------------------------+---------
ecdsa-with-SHA384              58394     
sha1WithRSAEncryption          58209     
sha256WithRSAEncryption        319412    
sha384WithRSAEncryption        141372    
sha512WithRSAEncryption        78        

Eff. host cert chain LoS  Count     Percent
-------------------------+---------+-------
80                        58271     10.125
112                       458828    79.7248
128.0                     58416     10.1502

Most Popular Root CAs                         Count     Percent
---------------------------------------------+---------+-------
(d6325660) COMODO RSA Certification Authority 126106    21.9119
(2c543cd1) GeoTrust Global CA                 102943    17.8871
(eed8c118) COMODO ECC Certification Authority 58387     10.1452
(5ad8a5d6) GlobalSign Root CA                 50714     8.8119
(cbf06781) Go Daddy Root Certificate Authorit 50524     8.7789
(b204d74a) VeriSign Class 3 Public Primary Ce 32049     5.5688
(244b5494) DigiCert High Assurance EV Root CA 21377     3.7144
(2e4eed3c) thawte Primary Root CA             20668     3.5912
(fc5a8f99) USERTrust RSA Certification Author 15152     2.6328
(157753a5) AddTrust External CA Root          14593     2.5356
(653b494a) Baltimore CyberTrust Root          11373     1.9761
(ae8153b9) StartCom Certification Authority   9025      1.5682
(3513523f) DigiCert Global Root CA            8982      1.5607
(4bfab552) Starfield Root Certificate Authori 8553      1.4861


Scan performed between 18th of January and 3rd of February 2016

December 2015 scan results

Past few months were a bit eventful so I wasn’t able to dedicate as much time to cipherscan as I’d like.

So not to make the results bitrot any more, I’m posting them without the detailed analysis.

There were no interesting changes compared to November anyway – just continuation of established trends.

SSL/TLS survey of 536563 websites from Alexa's top 1 million
Stats only from connections that did provide valid certificates
(or anonymous DH from servers that do also have valid certificate installed)


Supported Ciphers         Count     Percent
-------------------------+---------+-------
3DES                      459320    85.6041
AES                       530014    98.7795
AES Only                  45794     8.5347
AES-CBC                   529364    98.6583
AES-CBC Only              10074     1.8775
AES-GCM                   412370    76.854
AES-GCM Only              538       0.1003
CAMELLIA                  222494    41.4665
CAMELLIA Only             3         0.0006
CHACHA20                  69686     12.9875
CHACHA20 Only             6         0.0011
Insecure                  57699     10.7534
RC4                       183979    34.2884
RC4 Only                  864       0.161
RC4 Preferred             19979     3.7235
RC4 forced in TLS1.1+     10502     1.9573
x:FF 29 RC4 Only          1093      0.2037
x:FF 29 RC4 Preferred     22208     4.1389
x:FF 29 incompatible      391       0.0729
x:FF 35 RC4 Only          1327      0.2473
x:FF 35 RC4 Preferred     22286     4.1535
x:FF 35 incompatible      395       0.0736
y:DHE-RSA-SEED-SHA        66508     12.3952
y:IDEA-CBC-SHA            61454     11.4533
y:SEED-SHA                77575     14.4578
z:ADH-AES128-GCM-SHA256   397       0.074
z:ADH-AES128-SHA          727       0.1355
z:ADH-AES128-SHA256       282       0.0526
z:ADH-AES256-GCM-SHA384   407       0.0759
z:ADH-AES256-SHA          745       0.1388
z:ADH-AES256-SHA256       282       0.0526
z:ADH-CAMELLIA128-SHA     367       0.0684
z:ADH-CAMELLIA256-SHA     379       0.0706
z:ADH-DES-CBC-SHA         309       0.0576
z:ADH-DES-CBC3-SHA        744       0.1387
z:ADH-RC4-MD5             597       0.1113
z:ADH-SEED-SHA            296       0.0552
z:AECDH-AES128-SHA        9967      1.8576
z:AECDH-AES256-SHA        10016     1.8667
z:AECDH-DES-CBC3-SHA      9935      1.8516
z:AECDH-NULL-SHA          60        0.0112
z:AECDH-RC4-SHA           9381      1.7484
z:DES-CBC-MD5             10532     1.9629
z:DES-CBC-SHA             35384     6.5946
z:DES-CBC3-MD5            21789     4.0608
z:ECDHE-RSA-NULL-SHA      64        0.0119
z:EDH-RSA-DES-CBC-SHA     30143     5.6178
z:EXP-ADH-DES-CBC-SHA     206       0.0384
z:EXP-ADH-RC4-MD5         201       0.0375
z:EXP-DES-CBC-SHA         13685     2.5505
z:EXP-EDH-RSA-DES-CBC-SHA 10941     2.0391
z:EXP-RC2-CBC-MD5         16617     3.0969
z:EXP-RC4-MD5             17371     3.2375
z:EXP1024-DES-CBC-SHA     4273      0.7964
z:EXP1024-RC4-SHA         4354      0.8115
z:IDEA-CBC-MD5            2139      0.3986
z:NULL-MD5                227       0.0423
z:NULL-SHA                227       0.0423
z:NULL-SHA256             28        0.0052
z:RC2-CBC-MD5             10751     2.0037
z:RC4-64-MD5              880       0.164

Cipher ordering           Count     Percent
-------------------------+---------+-------
Client side               132599    24.7127
Server side               403964    75.2873

Supported Handshakes      Count     Percent
-------------------------+---------+-------
ADH                       892       0.1662
AECDH                     10038     1.8708
DHE                       290879    54.2115
ECDH                      3         0.0006
ECDHE                     438449    81.7144
ECDHE and DHE             230817    43.0177
RSA                       462690    86.2322

Supported PFS             Count     Percent  PFS Percent
-------------------------+---------+--------+-----------
DH,1024bits               156486    29.1645  53.7976
DH,1338bits               1         0.0002   0.0003
DH,1536bits               1         0.0002   0.0003
DH,2048bits               125695    23.426   43.2121
DH,2236bits               13        0.0024   0.0045
DH,2432bits               2         0.0004   0.0007
DH,2560bits               1         0.0002   0.0003
DH,3072bits               96        0.0179   0.033
DH,3092bits               1         0.0002   0.0003
DH,4094bits               1         0.0002   0.0003
DH,4096bits               8225      1.5329   2.8276
DH,4098bits               1         0.0002   0.0003
DH,512bits                39        0.0073   0.0134
DH,6144bits               2         0.0004   0.0007
DH,768bits                413       0.077    0.142
DH,8192bits               2         0.0004   0.0007
ECDH,B-571,570bits        1680      0.3131   0.3832
ECDH,K-163,163bits        1         0.0002   0.0002
ECDH,P-192,192bits        13        0.0024   0.003
ECDH,P-224,224bits        85        0.0158   0.0194
ECDH,P-256,256bits        424488    79.1124  96.8158
ECDH,P-384,384bits        3868      0.7209   0.8822
ECDH,P-521,521bits        9879      1.8412   2.2532
Prefer DH,1024bits        55460     10.3362  19.0663
Prefer DH,1536bits        1         0.0002   0.0003
Prefer DH,2048bits        7764      1.447    2.6692
Prefer DH,3072bits        10        0.0019   0.0034
Prefer DH,4096bits        364       0.0678   0.1251
Prefer DH,768bits         48        0.0089   0.0165
Prefer ECDH,B-571,570bits 1483      0.2764   0.3382
Prefer ECDH,K-163,163bits 1         0.0002   0.0002
Prefer ECDH,P-224,224bits 82        0.0153   0.0187
Prefer ECDH,P-256,256bits 386031    71.9451  88.0447
Prefer ECDH,P-384,384bits 2985      0.5563   0.6808
Prefer ECDH,P-521,521bits 8928      1.6639   2.0363
Prefer PFS                463157    86.3192  0
Support PFS               498511    92.9082  0

Supported ECC curves      Count     Percent 
-------------------------+---------+--------
brainpoolP256r1           2250      0.4193   
brainpoolP384r1           2253      0.4199   
brainpoolP512r1           2257      0.4206   
prime192v1                1426      0.2658   
prime256v1                435505    81.1657  
prime256v1 Only           381299    71.0632  
secp160k1                 1377      0.2566   
secp160r1                 1382      0.2576   
secp160r2                 1376      0.2564   
secp192k1                 1394      0.2598   
secp224k1                 1465      0.273    
secp224r1                 4037      0.7524   
secp224r1 Only            1         0.0002   
secp256k1                 3628      0.6762   
secp384r1                 54625     10.1805  
secp384r1 Only            479       0.0893   
secp521r1                 24462     4.559    
secp521r1 Only            129       0.024    
sect163k1                 1388      0.2587   
sect163k1 Only            1         0.0002   
sect163r1                 1387      0.2585   
sect163r2                 1387      0.2585   
sect193r1                 1385      0.2581   
sect193r2                 1384      0.2579   
sect233k1                 1466      0.2732   
sect233r1                 1464      0.2728   
sect239k1                 1461      0.2723   
sect283k1                 3583      0.6678   
sect283r1                 3581      0.6674   
sect409k1                 3584      0.668    
sect409r1                 3584      0.668    
sect571k1                 3594      0.6698   
sect571r1                 3596      0.6702   

Unsupported curve fallback     Count     Percent 
------------------------------+---------+--------
False                          67862     12.6475  
True                           312481    58.2375  
order-specific                 96        0.0179   
unknown                        156124    29.097   

ECC curve ordering        Count     Percent 
-------------------------+---------+--------
client                    5459      1.0174   
inconclusive-noecc        12        0.0022   
server                    430685    80.2674  
unknown                   100407    18.713   

TLSv1.2 PFS supported sigalgs  Count     Percent 
------------------------------+---------+--------
ECDSA-SHA1                     41280     7.6934   
ECDSA-SHA1 Only                2         0.0004   
ECDSA-SHA224                   41274     7.6923   
ECDSA-SHA256                   55318     10.3097  
ECDSA-SHA384                   55314     10.3089  
ECDSA-SHA512                   55315     10.3091  
ECDSA-SHA512 Only              1         0.0002   
RSA-MD5                        156847    29.2318  
RSA-SHA1                       379786    70.7813  
RSA-SHA1 Only                  42067     7.8401   
RSA-SHA224                     314857    58.6803  
RSA-SHA256                     345177    64.3311  
RSA-SHA256 Only                6253      1.1654   
RSA-SHA384                     316545    58.9949  
RSA-SHA384 Only                1         0.0002   
RSA-SHA512                     316760    59.035   
RSA-SHA512 Only                293       0.0546   

TLSv1.2 PFS ordering           Count     Percent 
------------------------------+---------+--------
client                         241325    44.9761  
indeterminate                  115       0.0214   
intolerant                     4940      0.9207   
order-fallback                 4         0.0007   
server                         182715    34.0529  
unsupported                    21177     3.9468   

TLSv1.2 PFS sigalg fallback    Count     Percent 
------------------------------+---------+--------
ECDSA SHA1                     41260     7.6897   
ECDSA intolerant               48        0.0089   
ECDSA pfs-rsa-SHA512           14029     2.6146   
ECDSA soft-nopfs               2         0.0004   
RSA False                      155749    29.0272  
RSA SHA1                       196182    36.5627  
RSA intolerant                 36096     6.7273   
RSA pfs-ecdsa-SHA512           8         0.0015   
RSA soft-nopfs                 1168      0.2177   

Renegotiation             Count     Percent 
-------------------------+---------+--------
False                     6429      1.1982   
insecure                  17943     3.3441   
secure                    512191    95.4578  

Compression               Count     Percent 
-------------------------+---------+--------
1 (zlib compression)      9264      1.7265   
False                     6429      1.1982   
NONE                      520870    97.0753  

TLS session ticket hint   Count     Percent 
-------------------------+---------+--------
1                         5         0.0009   
1 only                    5         0.0009   
2                         2         0.0004   
2 only                    2         0.0004   
5                         1         0.0002   
5 only                    1         0.0002   
10                        12        0.0022   
10 only                   12        0.0022   
15                        8         0.0015   
15 only                   8         0.0015   
30                        17        0.0032   
30 only                   15        0.0028   
60                        98        0.0183   
60 only                   93        0.0173   
65                        2         0.0004   
65 only                   2         0.0004   
70                        6         0.0011   
100                       16        0.003    
100 only                  16        0.003    
120                       29        0.0054   
120 only                  29        0.0054   
128                       3         0.0006   
128 only                  3         0.0006   
150                       2         0.0004   
180                       48        0.0089   
180 only                  45        0.0084   
240                       8         0.0015   
240 only                  8         0.0015   
300                       254800    47.4874  
300 only                  250537    46.6929  
302                       3         0.0006   
302 only                  3         0.0006   
360                       2         0.0004   
360 only                  1         0.0002   
400                       6         0.0011   
400 only                  6         0.0011   
420                       133       0.0248   
420 only                  105       0.0196   
480                       15        0.0028   
480 only                  15        0.0028   
500                       4         0.0007   
500 only                  4         0.0007   
540                       1         0.0002   
540 only                  1         0.0002   
600                       27913     5.2022   
600 only                  27746     5.1711   
700                       1         0.0002   
700 only                  1         0.0002   
840                       1         0.0002   
840 only                  1         0.0002   
900                       923       0.172    
900 only                  896       0.167    
960                       1         0.0002   
960 only                  1         0.0002   
1200                      2345      0.437    
1200 only                 2339      0.4359   
1320                      1         0.0002   
1320 only                 1         0.0002   
1500                      11        0.0021   
1500 only                 10        0.0019   
1800                      536       0.0999   
1800 only                 528       0.0984   
1980                      1         0.0002   
1980 only                 1         0.0002   
2100                      1         0.0002   
2100 only                 1         0.0002   
2400                      8         0.0015   
2400 only                 8         0.0015   
2700                      10        0.0019   
2700 only                 10        0.0019   
3000                      26        0.0048   
3000 only                 26        0.0048   
3300                      1         0.0002   
3300 only                 1         0.0002   
3600                      614       0.1144   
3600 only                 602       0.1122   
3900                      1         0.0002   
3900 only                 1         0.0002   
4100                      1         0.0002   
4100 only                 1         0.0002   
5160                      1         0.0002   
5160 only                 1         0.0002   
5400                      14        0.0026   
5400 only                 7         0.0013   
6000                      200       0.0373   
6000 only                 200       0.0373   
7200                      15561     2.9001   
7200 only                 15539     2.896    
10800                     3493      0.651    
10800 only                3481      0.6488   
14400                     98        0.0183   
14400 only                98        0.0183   
18000                     8         0.0015   
18000 only                8         0.0015   
21600                     4783      0.8914   
21600 only                4783      0.8914   
25200                     1         0.0002   
25200 only                1         0.0002   
28800                     2385      0.4445   
28800 only                2380      0.4436   
36000                     1170      0.2181   
36000 only                1163      0.2167   
43200                     39        0.0073   
43200 only                39        0.0073   
60000                     1         0.0002   
60000 only                1         0.0002   
64800                     4661      0.8687   
64800 only                4660      0.8685   
72000                     31        0.0058   
72000 only                31        0.0058   
79200                     1         0.0002   
79200 only                1         0.0002   
86000                     46        0.0086   
86000 only                46        0.0086   
86400                     3553      0.6622   
86400 only                3545      0.6607   
100800                    10783     2.0096   
100800 only               10771     2.0074   
115200                    1         0.0002   
115200 only               1         0.0002   
129600                    8         0.0015   
129600 only               8         0.0015   
172800                    9         0.0017   
172800 only               9         0.0017   
216000                    1         0.0002   
216000 only               1         0.0002   
432000                    2         0.0004   
432000 only               2         0.0004   
604800                    2         0.0004   
604800 only               1         0.0002   
None                      206697    38.5224  
None only                 202099    37.6655  

Certificate sig alg     Count     Percent 
-------------------------+---------+--------
None                      10673     1.9891   
ecdsa-with-SHA256         55263     10.2994  
sha1WithRSAEncryption     66180     12.3341  
sha256WithRSAEncryption   429902    80.1214  
sha384WithRSAEncryption   5         0.0009   
sha512WithRSAEncryption   37        0.0069   

Certificate key size    Count     Percent 
-------------------------+---------+--------
ECDSA 256                 55328     10.3116  
ECDSA 384                 15        0.0028   
RSA 1024                  33        0.0062   
RSA 2048                  474602    88.4522  
RSA 2049                  2         0.0004   
RSA 2058                  3         0.0006   
RSA 2064                  1         0.0002   
RSA 2084                  4         0.0007   
RSA 2096                  2         0.0004   
RSA 2408                  1         0.0002   
RSA 2480                  1         0.0002   
RSA 3071                  1         0.0002   
RSA 3072                  127       0.0237   
RSA 3096                  2         0.0004   
RSA 3248                  3         0.0006   
RSA 4042                  1         0.0002   
RSA 4048                  1         0.0002   
RSA 4056                  24        0.0045   
RSA 4069                  1         0.0002   
RSA 4092                  6         0.0011   
RSA 4094                  2         0.0004   
RSA 4095                  1         0.0002   
RSA 4096                  20517     3.8238   
RSA 4098                  1         0.0002   
RSA 4196                  2         0.0004   
RSA 8192                  6         0.0011   
RSA/ECDSA Dual Stack      14112     2.6301

OCSP stapling             Count     Percent 
-------------------------+---------+--------
Supported                 122156    22.7664  
Unsupported               414407    77.2336  

Supported Protocols       Count     Percent
-------------------------+---------+-------
SSL2                      22019     4.1037
SSL2 Only                 16        0.003
SSL3                      114551    21.349
SSL3 Only                 451       0.0841
SSL3 or TLS1 Only         62546     11.6568
SSL3 or lower Only        465       0.0867
TLS1                      530535    98.8766
TLS1 Only                 38783     7.228
TLS1 or lower Only        83051     15.4783
TLS1.1                    440269    82.0536
TLS1.1 Only               341       0.0636
TLS1.1 or up Only         5269      0.982
TLS1.2                    450259    83.9154
TLS1.2 Only               2150      0.4007
TLS1.2, 1.0 but not 1.1   10510     1.9588


Statistics from 571668 chains provided by 706831 hosts

Server provided chains    Count     Percent
-------------------------+---------+-------
complete                  509502    72.0826
incomplete                25925     3.6678
untrusted                 171404    24.2496

Trusted chain statistics
========================

Chain length              Count     Percent
-------------------------+---------+-------
2                         33        0.0058
3                         569492    99.6194
4                         2129      0.3724
5                         14        0.0024

CA key size in chains     Count
-------------------------+---------
ECDSA 256                 55261     
ECDSA 384                 55264     
RSA 1024                  33        
RSA 2045                  3         
RSA 2048                  886633    
RSA 4096                  148266    

Chains with CA key        Count     Percent
-------------------------+---------+-------
ECDSA 256                 55261     9.6666
ECDSA 384                 55264     9.6671
RSA 1024                  31        0.0054
RSA 2045                  3         0.0005
RSA 2048                  516046    90.2702
RSA 4096                  147728    25.8416

Signature algorithm (ex. root) Count
------------------------------+---------
ecdsa-with-SHA384              55257     
sha1WithRSAEncryption          74114     
sha256WithRSAEncryption        311465    
sha384WithRSAEncryption        132882    
sha512WithRSAEncryption        74        

Eff. host cert chain LoS  Count     Percent
-------------------------+---------+-------
80                        74154     12.9715
112                       442237    77.3591
128                       55277     9.6694

Most common root CAs                          Count     Percent
---------------------------------------------+---------+-------
(157753a5) AddTrust External CA Root          21173     3.7037
(244b5494) DigiCert High Assurance EV Root CA 22796     3.9876
(2c543cd1) GeoTrust Global CA                 103983    18.1894
(2e4eed3c) thawte Primary Root CA             22155     3.8755
(3513523f) DigiCert Global Root CA            8921      1.5605
(4bfab552) Starfield Root Certificate Authori 7786      1.362
(5ad8a5d6) GlobalSign Root CA                 49934     8.7348
(653b494a) Baltimore CyberTrust Root          11652     2.0382
(ae8153b9) StartCom Certification Authority   9075      1.5875
(b204d74a) VeriSign Class 3 Public Primary Ce 33097     5.7895
(cbf06781) Go Daddy Root Certificate Authorit 50135     8.77
(d6325660) COMODO RSA Certification Authority 118944    20.8065
(eed8c118) COMODO ECC Certification Authority 55250     9.6647
(fc5a8f99) USERTrust RSA Certification Author 13826     2.4185


Scan performed between 15th of December and 26 of December 2015.

Testing for SLOTH

Researchers at INRIA have published a new attack against TLS they called SLOTH. More details about it can be found at http://sloth-attack.org.

The problematic part, is that many frameworks (that is GnuTLS, OpenSSL, NSS) even if they don’t advertise support for MD5 hashes, would in fact accept messages signed with this obsolete and insecure hash.

Thus, to test properly if a server is vulnerable against this attack, we need a client that is misbehaving.

For easy writing of such test cases I have been working on the tlsfuzzer. Just released version of it was extended to be able test servers for vulnerability against the SLOTH attack (to be more precise, just the client impersonation attack – the most severe of the described ones).

Client impersonation attack

To test vulnerability of server to client impersonation attack, you will need the TLS server, set of a client certificate and key trusted by server and Python (any version since 2.6 or 3.2 will do). The full procedure for testing a server is as follows.

Certificates:

For testing we will need a set of certificates trusted by the server, in this case we will cheat a little and tell the server to trust a certificate directly.

Client certificate:

openssl req -x509 -newkey rsa -keyout localuser.key \
-out localuser.crt -nodes -batch -subj /CN=Local\ User

Server certificate:

openssl req -x509 -newkey rsa -keyout localhost.key -out localhost.crt -nodes -batch -subj /CN=localhost

Server setup

The test client expects an HTTP server on localhost, on port 4433 that requests client certificates:

openssl s_server -key localhost.key -cert localhost.crt -verify 1 -www -tls1_2 -CAfile localuser.crt

Reproducer setup

The reproducer has a bit of dependencies on the system.

First thing, you will need python pip command. In case your distribution doesn’t provide it, download it from https://bootstrap.pypa.io/get-pip.py and run using python:

python get-pip.py

After that, install dependencies of tlsfuzzer:

pip install --pre tlslite-ng

Note: Installation may print an error: “error: invalid command ‘bdist_wheel'”, it can be ignored, it doesn’t break installation of package. In case you want to fix it anyway, upgrade setuptools package installed on your system by running:

pip install --upgrade setuptools

Finally download the reproducer itself:

git clone https://github.com/tomato42/tlsfuzzer.git

Running reproducer

Once we have all pieces in place, we can run the reproducer as follows:

cd tlsfuzzer
PYTHONPATH=. python scripts/test-certificate-verify.py -k /tmp/localuser.key -c /tmp/localuser.crt

(if you generated user certificates in /tmp directory)

Results

If the execution finished with

MD5 CertificateVerify test version 4                              
MD5 forced...
OK
Sanity check...
OK
Test end
successful: 2
failed: 0

That means that the server is not vulnerable.

In case the “MD5 forced” failed, but “Sanity check” resulted in “OK”, it means that the server is vulnerable.

Example failure may look like this:

MD5 CertificateVerify (CVE-2015-7575 aka SLOTH) test version 4
MD5 forced...
Error encountered while processing node <tlsfuzzer.expect.ExpectClose object at 0xe3a410> with last message being: <tlslite.messages.Message object at 0xe3a8d0>
Error while processing
Traceback (most recent call last):
  File "scripts/test-certificate-verify.py", line 140, in main
    runner.run()
  File "/root/tlsfuzzer/tlsfuzzer/runner.py", line 139, in run
    msg.write()))
AssertionError: Unexpected message from peer: ChangeCipherSpec()

Sanity check...
OK
Test end
successful: 1
failed: 1

(if the error was caused by Unexpected message from peer: ChangeCipherSpec, as shown above, it means that the server is definitely vulnerable)

In case the Sanity check failed, that may mean one of few things:

  • the server is not listening on localhost on port 4433
  • the server does not support TLS v1.2 protocol, in that case it is not vulnerable (note: this is NOT a good workaround)
  • the server does not support TLS_RSA_WITH_AES_128_CBC_SHA cipher (AES128-SHA in OpenSSL naming system)
  • the server did not ask for certificate on first connection attempt

November 2015 scan results

Number of servers which support TLS has grown by 1.3% since last month.

Cipher suites

Surprisingly, 3.2% more servers support just AES cipher suites now. At the same time we lost 3.7% market share of Camellia.

The good news is that RC4 support has dropped by 4.7%. Unfortunately, the amount of servers which default to RC4 is still rather high, at a 4% mark level.

Ciphersuites which are completely insecure have lost just 0.5%.

Essentially no change in server side vs client side cipher ordering, with just a small increase in the former.

Key exchange

Ciphersuites which provide forward secrecy are still growing, with ECDHE gaining 0.7% and support for ECDHE and DHE at the same time gaining 0.3%.

As usual, most of the gains are caused by the P-256 curve, with it increasing by 0.65%.

We’re now at 85% mark for servers which prefer forward secure ciphersuites, an increase of 1.11% since last month.

Hash and signature algorithms

Support for the obsolete RSA-MD5 signature algorithm continues to drop, but rather slowly, loosing just 1.1% since previous survey.

Fortunately, servers which are limited to just RSA-SHA1 signatures are also dropping, showing 0.3% fewer servers which do force this mechanism on clients. Support for stronger algorithms like SHA256 is still rather slow on the up tick, gaining just 0.7%.

Vulnerabilities

Little changes here, still 3.5% of servers vulnerable to insecure renegotiation attacks and just under 2% vulnerable to CRIME attack.

Certificates

Use of SHA-256 signatures in certificates continues its rise as de facto the signature standard, gaining 1.5% since last month.

This is also the first time when signatures with ECDSA certificates broke double digits, through an increase of 0.6%. We are less than 5% away from two most popular signature methods both using SHA-256.

Only minimal changes in the key sizes department, just that the ECDSA 256 bit keys have also increased by 0.6%, gaining a double digit market share.

At the same time, 2.6% of servers use configuration in which they support both of those public key standards.

Protocols

Little to no changes here. SSLv2 and SSLv3 are loosing, TLSv1.0 more or less stable, TLSv1.1 and TLSv1.2 gaining. All changes below 0.5% mark.

Results

SSL/TLS survey of 530912 websites from Alexa's top 1 million
Stats only from connections that did provide valid certificates
(or anonymous DH from servers that do also have valid certificate installed)


Supported Ciphers         Count     Percent
-------------------------+---------+-------
3DES                      457179    86.112
3DES Only                 577       0.1087
AES                       523844    98.6687
AES Only                  40463     7.6214
AES-CBC                   523220    98.5512
AES-CBC Only              10280     1.9363
AES-GCM                   398334    75.0283
AES-GCM Only              481       0.0906
CAMELLIA                  217685    41.0021
CAMELLIA Only             1         0.0002
CHACHA20                  67665     12.7451
CHACHA20 Only             2         0.0004
Insecure                  60479     11.3915
RC4                       191727    36.1128
RC4 Only                  977       0.184
RC4 Preferred             21462     4.0425
RC4 forced in TLS1.1+     11194     2.1084
x:FF 29 RC4 Only          1213      0.2285
x:FF 29 RC4 Preferred     23754     4.4742
x:FF 29 incompatible      400       0.0753
x:FF 35 RC4 Only          1476      0.278
x:FF 35 RC4 Preferred     23839     4.4902
x:FF 35 incompatible      402       0.0757
y:DHE-RSA-SEED-SHA        65003     12.2436
y:IDEA-CBC-SHA            59414     11.1909
y:SEED-SHA                76068     14.3278
z:ADH-AES128-GCM-SHA256   396       0.0746
z:ADH-AES128-SHA          744       0.1401
z:ADH-AES128-SHA256       292       0.055
z:ADH-AES256-GCM-SHA384   408       0.0768
z:ADH-AES256-SHA          756       0.1424
z:ADH-AES256-SHA256       293       0.0552
z:ADH-CAMELLIA128-SHA     374       0.0704
z:ADH-CAMELLIA256-SHA     382       0.072
z:ADH-DES-CBC-SHA         303       0.0571
z:ADH-DES-CBC3-SHA        756       0.1424
z:ADH-RC4-MD5             616       0.116
z:ADH-SEED-SHA            305       0.0574
z:AECDH-AES128-SHA        10719     2.019
z:AECDH-AES256-SHA        10755     2.0258
z:AECDH-DES-CBC3-SHA      10685     2.0126
z:AECDH-NULL-SHA          63        0.0119
z:AECDH-RC4-SHA           10125     1.9071
z:DES-CBC-MD5             11270     2.1228
z:DES-CBC-SHA             36559     6.8861
z:DES-CBC3-MD5            23236     4.3766
z:ECDHE-RSA-NULL-SHA      68        0.0128
z:EDH-RSA-DES-CBC-SHA     31274     5.8906
z:EXP-ADH-DES-CBC-SHA     203       0.0382
z:EXP-ADH-RC4-MD5         199       0.0375
z:EXP-DES-CBC-SHA         14643     2.7581
z:EXP-EDH-RSA-DES-CBC-SHA 11812     2.2249
z:EXP-RC2-CBC-MD5         17779     3.3488
z:EXP-RC4-MD5             18577     3.4991
z:EXP1024-DES-CBC-SHA     4531      0.8534
z:EXP1024-RC4-SHA         4613      0.8689
z:IDEA-CBC-MD5            2255      0.4247
z:NULL-MD5                237       0.0446
z:NULL-SHA                236       0.0445
z:NULL-SHA256             32        0.006
z:RC2-CBC-MD5             11512     2.1683
z:RC4-64-MD5              922       0.1737

Cipher ordering           Count     Percent
-------------------------+---------+-------
Client side               134022    25.2437
Server side               396890    74.7563

Supported Handshakes      Count     Percent
-------------------------+---------+-------
ADH                       896       0.1688
AECDH                     10782     2.0308
DHE                       289298    54.4908
ECDH                      3         0.0006
ECDHE                     425231    80.0944
ECDHE and DHE             223210    42.0427
RSA                       458647    86.3885

Supported PFS             Count     Percent  PFS Percent
-------------------------+---------+--------+-----------
DH,1024bits               159457    30.0345  55.1186
DH,1536bits               1         0.0002   0.0003
DH,2048bits               121879    22.9565  42.1292
DH,2236bits               14        0.0026   0.0048
DH,3072bits               108       0.0203   0.0373
DH,3092bits               1         0.0002   0.0003
DH,4096bits               7458      1.4048   2.578
DH,512bits                40        0.0075   0.0138
DH,6144bits               1         0.0002   0.0003
DH,768bits                439       0.0827   0.1517
DH,8192bits               2         0.0004   0.0007
ECDH,B-571,570bits        1680      0.3164   0.3951
ECDH,K-571,570bits        1         0.0002   0.0002
ECDH,P-192,192bits        11        0.0021   0.0026
ECDH,P-224,224bits        81        0.0153   0.019
ECDH,P-256,256bits        411892    77.582   96.8631
ECDH,P-384,384bits        3589      0.676    0.844
ECDH,P-521,521bits        9333      1.7579   2.1948
Prefer DH,1024bits        58262     10.9739  20.1391
Prefer DH,1536bits        1         0.0002   0.0003
Prefer DH,2048bits        10378     1.9547   3.5873
Prefer DH,2236bits        1         0.0002   0.0003
Prefer DH,3072bits        13        0.0024   0.0045
Prefer DH,4096bits        392       0.0738   0.1355
Prefer DH,768bits         66        0.0124   0.0228
Prefer ECDH,B-571,570bits 1478      0.2784   0.3476
Prefer ECDH,K-571,570bits 1         0.0002   0.0002
Prefer ECDH,P-224,224bits 78        0.0147   0.0183
Prefer ECDH,P-256,256bits 370937    69.8679  87.2319
Prefer ECDH,P-384,384bits 3291      0.6199   0.7739
Prefer ECDH,P-521,521bits 8426      1.5871   1.9815
Prefer PFS                453324    85.3859  0
Support PFS               491319    92.5425  0

Supported ECC curves      Count     Percent 
-------------------------+---------+--------
brainpoolP256r1           2073      0.3905   
brainpoolP384r1           2074      0.3906   
brainpoolP512r1           2074      0.3906   
prime192v1                1449      0.2729   
prime256v1                422425    79.5659  
prime256v1 Only           368568    69.4217  
secp160k1                 1406      0.2648   
secp160r1                 1411      0.2658   
secp160r2                 1406      0.2648   
secp192k1                 1423      0.268    
secp224k1                 1491      0.2808   
secp224r1                 4011      0.7555   
secp256k1                 3482      0.6559   
secp384r1                 54256     10.2194  
secp384r1 Only            444       0.0836   
secp521r1                 23612     4.4474   
secp521r1 Only            128       0.0241   
sect163k1                 1415      0.2665   
sect163k1 Only            2         0.0004   
sect163r1                 1413      0.2661   
sect163r2                 1409      0.2654   
sect193r1                 1409      0.2654   
sect193r2                 1407      0.265    
sect233k1                 1486      0.2799   
sect233r1                 1486      0.2799   
sect239k1                 1486      0.2799   
sect283k1                 3447      0.6493   
sect283k1 Only            2         0.0004   
sect283r1                 3442      0.6483   
sect409k1                 3444      0.6487   
sect409r1                 3443      0.6485   
sect571k1                 3454      0.6506   
sect571r1                 3454      0.6506   

Unsupported curve fallback     Count     Percent 
------------------------------+---------+--------
False                          69315     13.0558  
True                           299493    56.411   
order-specific                 82        0.0154   
unknown                        162022    30.5177  

ECC curve ordering        Count     Percent 
-------------------------+---------+--------
client                    5116      0.9636   
inconclusive-noecc        8         0.0015   
server                    417915    78.7164  
unknown                   107873    20.3184  

TLSv1.2 PFS supported sigalgs  Count     Percent 
------------------------------+---------+--------
ECDSA-SHA1                     39752     7.4875   
ECDSA-SHA1 Only                2         0.0004   
ECDSA-SHA224                   39755     7.4881   
ECDSA-SHA256                   53701     10.1149  
ECDSA-SHA384                   53712     10.1169  
ECDSA-SHA512                   53734     10.1211  
ECDSA-SHA512 Only              22        0.0041   
RSA-MD5                        164964    31.0718  
RSA-SHA1                       368019    69.3183  
RSA-SHA1 Only                  42674     8.0379   
RSA-SHA224                     303273    57.123   
RSA-SHA256                     332849    62.6938  
RSA-SHA256 Only                6204      1.1686   
RSA-SHA384                     304966    57.4419  
RSA-SHA384 Only                1         0.0002   
RSA-SHA512                     305210    57.4879  
RSA-SHA512 Only                277       0.0522   

TLSv1.2 PFS ordering           Count     Percent 
------------------------------+---------+--------
client                         233407    43.9634  
indeterminate                  45        0.0085   
intolerant                     4576      0.8619   
order-fallback                 8         0.0015   
server                         177923    33.5127  
unsupported                    21601     4.0687   

TLSv1.2 PFS sigalg fallback    Count     Percent 
------------------------------+---------+--------
ECDSA SHA1                     39724     7.4822   
ECDSA intolerant               116       0.0218   
ECDSA pfs-rsa-SHA512           13917     2.6213   
ECDSA soft-nopfs               3         0.0006   
RSA False                      163706    30.8349  
RSA SHA1                       176523    33.249   
RSA intolerant                 35829     6.7486   
RSA pfs-ecdsa-SHA512           27        0.0051   
RSA soft-nopfs                 1308      0.2464   

Renegotiation             Count     Percent 
-------------------------+---------+--------
False                     6621      1.2471   
insecure                  18673     3.5172   
secure                    505618    95.2357  

Compression               Count     Percent 
-------------------------+---------+--------
1 (zlib compression)      9772      1.8406   
False                     6621      1.2471   
NONE                      514519    96.9123  

TLS session ticket hint   Count     Percent 
-------------------------+---------+--------
1                         4         0.0008   
1 only                    4         0.0008   
2                         2         0.0004   
2 only                    2         0.0004   
10                        11        0.0021   
10 only                   11        0.0021   
15                        10        0.0019   
15 only                   10        0.0019   
30                        10        0.0019   
30 only                   9         0.0017   
60                        97        0.0183   
60 only                   90        0.017    
65                        2         0.0004   
65 only                   2         0.0004   
70                        6         0.0011   
100                       15        0.0028   
100 only                  15        0.0028   
120                       27        0.0051   
120 only                  27        0.0051   
128                       2         0.0004   
128 only                  2         0.0004   
150                       2         0.0004   
180                       41        0.0077   
180 only                  38        0.0072   
240                       5         0.0009   
240 only                  5         0.0009   
300                       244735    46.0971  
300 only                  240267    45.2555  
302                       3         0.0006   
302 only                  3         0.0006   
360                       2         0.0004   
360 only                  1         0.0002   
400                       8         0.0015   
400 only                  8         0.0015   
420                       124       0.0234   
420 only                  97        0.0183   
450                       1         0.0002   
450 only                  1         0.0002   
480                       13        0.0024   
480 only                  13        0.0024   
500                       3         0.0006   
500 only                  3         0.0006   
540                       1         0.0002   
540 only                  1         0.0002   
600                       26475     4.9867   
600 only                  26305     4.9547   
700                       1         0.0002   
700 only                  1         0.0002   
720                       1         0.0002   
720 only                  1         0.0002   
840                       1         0.0002   
840 only                  1         0.0002   
900                       878       0.1654   
900 only                  861       0.1622   
960                       2         0.0004   
960 only                  2         0.0004   
1200                      2334      0.4396   
1200 only                 2330      0.4389   
1320                      1         0.0002   
1320 only                 1         0.0002   
1500                      9         0.0017   
1500 only                 8         0.0015   
1800                      499       0.094    
1800 only                 490       0.0923   
1980                      1         0.0002   
1980 only                 1         0.0002   
2100                      1         0.0002   
2100 only                 1         0.0002   
2400                      8         0.0015   
2400 only                 8         0.0015   
2700                      10        0.0019   
2700 only                 10        0.0019   
3000                      26        0.0049   
3000 only                 26        0.0049   
3600                      573       0.1079   
3600 only                 560       0.1055   
3900                      3         0.0006   
3900 only                 3         0.0006   
4200                      1         0.0002   
5160                      1         0.0002   
5160 only                 1         0.0002   
5400                      13        0.0024   
5400 only                 6         0.0011   
6000                      179       0.0337   
6000 only                 179       0.0337   
7200                      15645     2.9468   
7200 only                 15623     2.9427   
10800                     3114      0.5865   
10800 only                3110      0.5858   
14400                     99        0.0186   
14400 only                99        0.0186   
18000                     8         0.0015   
18000 only                8         0.0015   
21600                     4849      0.9133   
21600 only                4637      0.8734   
25200                     1         0.0002   
25200 only                1         0.0002   
28800                     3555      0.6696   
28800 only                3543      0.6673   
36000                     1157      0.2179   
36000 only                1150      0.2166   
43200                     40        0.0075   
43200 only                40        0.0075   
60000                     1         0.0002   
60000 only                1         0.0002   
64800                     51789     9.7547   
64800 only                51762     9.7496   
72000                     29        0.0055   
72000 only                29        0.0055   
84600                     1         0.0002   
84600 only                1         0.0002   
86000                     39        0.0073   
86000 only                39        0.0073   
86400                     3482      0.6559   
86400 only                3471      0.6538   
100800                    10699     2.0152   
100800 only               10688     2.0131   
129600                    10        0.0019   
129600 only               10        0.0019   
172800                    9         0.0017   
172800 only               9         0.0017   
216000                    2         0.0004   
216000 only               2         0.0004   
432000                    2         0.0004   
432000 only               2         0.0004   
604800                    5         0.0009   
604800 only               3         0.0006   
864000                    3         0.0006   
864000 only               3         0.0006   
None                      165273    31.13    
None only                 160236    30.1813  

Certificate sig alg     Count     Percent 
-------------------------+---------+--------
None                      11419     2.1508   
ecdsa-with-SHA256         53709     10.1164  
sha1WithRSAEncryption     79229     14.9232  
sha256WithRSAEncryption   413158    77.8204  
sha384WithRSAEncryption   6         0.0011   
sha512WithRSAEncryption   33        0.0062   

Certificate key size    Count     Percent 
-------------------------+---------+--------
ECDSA 256                 53748     10.1237  
ECDSA 384                 12        0.0023   
ECDSA 521                 1         0.0002   
RSA 1024                  38        0.0072   
RSA 10240                 8         0.0015   
RSA 2048                  470388    88.6     
RSA 2049                  4         0.0008   
RSA 2056                  1         0.0002   
RSA 2058                  2         0.0004   
RSA 2064                  1         0.0002   
RSA 2084                  3         0.0006   
RSA 2096                  1         0.0002   
RSA 2408                  2         0.0004   
RSA 2432                  2         0.0004   
RSA 2480                  1         0.0002   
RSA 3071                  1         0.0002   
RSA 3072                  144       0.0271   
RSA 3096                  2         0.0004   
RSA 3120                  2         0.0004   
RSA 3248                  2         0.0004   
RSA 4042                  1         0.0002   
RSA 4048                  1         0.0002   
RSA 4056                  22        0.0041   
RSA 4069                  1         0.0002   
RSA 4086                  1         0.0002   
RSA 4092                  6         0.0011   
RSA 4094                  1         0.0002   
RSA 4096                  20509     3.863    
RSA 4098                  1         0.0002   
RSA 4196                  1         0.0002   
RSA 8192                  3         0.0006   
RSA/ECDSA Dual Stack      13986     2.6343

OCSP stapling             Count     Percent 
-------------------------+---------+--------
Supported                 115313    21.7198  
Unsupported               415599    78.2802  

Supported Protocols       Count     Percent
-------------------------+---------+-------
SSL2                      23492     4.4248
SSL2 Only                 19        0.0036
SSL3                      121502    22.8855
SSL3 Only                 470       0.0885
SSL3 or TLS1 Only         68017     12.8114
SSL3 or lower Only        487       0.0917
TLS1                      525297    98.9424
TLS1 Only                 40462     7.6212
TLS1 or lower Only        89960     16.9444
TLS1.1                    427273    80.4791
TLS1.1 Only               312       0.0588
TLS1.1 or up Only         4757      0.896
TLS1.2                    437543    82.4135
TLS1.2 Only               2067      0.3893
TLS1.2, 1.0 but not 1.1   11005     2.0728



Statistics from 566530 chains provided by 702674 hosts

Server provided chains    Count     Percent
-------------------------+---------+-------
complete                  500948    71.2917
incomplete                27324     3.8886
untrusted                 174402    24.8198

Trusted chain statistics
========================

Chain length              Count     Percent
-------------------------+---------+-------
2                         40        0.0071
3                         564250    99.5975
4                         2220      0.3919
5                         20        0.0035

CA key size in chains     Count
-------------------------+---------
ECDSA 256                 53700     
ECDSA 384                 53703     
RSA 1024                  38        
RSA 2045                  3         
RSA 2048                  886848    
RSA 4096                  140988    

Chains with CA key        Count     Percent
-------------------------+---------+-------
ECDSA 256                 53700     9.4788
ECDSA 384                 53703     9.4793
RSA 1024                  36        0.0064
RSA 2045                  3         0.0005
RSA 2048                  512489    90.4611
RSA 4096                  140488    24.798

Signature algorithm (ex. root) Count
------------------------------+---------
ecdsa-with-SHA384              53695     
sha1WithRSAEncryption          87476     
sha256WithRSAEncryption        301918    
sha384WithRSAEncryption        125587    
sha512WithRSAEncryption        74        

Eff. host cert chain LoS  Count     Percent
-------------------------+---------+-------
80                        87515     15.4475
112                       425304    75.0718
128                       53711     9.4807

Root CAs                                      Count     Percent
---------------------------------------------+---------+-------
(d6325660) COMODO RSA Certification Authority 116038    20.4822
(2c543cd1) GeoTrust Global CA                 109648    19.3543
(eed8c118) COMODO ECC Certification Authority 53687     9.4765
(cbf06781) Go Daddy Root Certificate Authorit 48182     8.5048
(5ad8a5d6) GlobalSign Root CA                 44132     7.7899
(b204d74a) VeriSign Class 3 Public Primary Ce 32386     5.7166
(244b5494) DigiCert High Assurance EV Root CA 26649     4.7039
(2e4eed3c) thawte Primary Root CA             22839     4.0314
(157753a5) AddTrust External CA Root          21671     3.8252
(653b494a) Baltimore CyberTrust Root          12055     2.1279
(fc5a8f99) USERTrust RSA Certification Author 9450      1.668
(ae8153b9) StartCom Certification Authority   9327      1.6463
(4bfab552) Starfield Root Certificate Authori 9162      1.6172
(3513523f) DigiCert Global Root CA            8636      1.5244

Scan performed between 22nd November and 3rd of December 2015

October 2015 scan results

Because the previous two months were published with a much longer delay than usual (sorry about that, will explain myself in future post) the following analysis compares this month’s results to July, not September.

Number of servers supporting TLS has grown by over 4% during those 3 months. The most profound change during that time was decommissioning of over 10% of SHA-1 using certificates. Rest of changes is just continuation of established trends.

Cipher suites

3DES continues the somewhat surprising increase in support, gaining another 1.6%. AES in general and AES in CBC mode in particular have shown little change, gaining less than half a percent in use. AES-GCM has grown by over 5% at the same time. Similarly to AES, Camellia and ChaCha20 support is relatively stable, both gaining about 0.2% each.

Use of insecure ciphers has decreased somewhat, loosing nearly 3% since last publication of results. RC4 has lost a staggering 10% of market share, for the first time since scans began falling below Camellia levels.

Unfortunately, there are still over 1100 servers which require use of RC4 for a successful connection, or over 1600 if you’re using Firefox 35.

Use of server side cipher ordering also plateaued, with just 0.2% more servers opting to ignore client presented order of ciphers for negotiation.

Key exchange

Support for the modern ECDHE key exchange has grown by nearly 5% during that time, reaching over 79% of servers.

The older and slower DHE key exchange has lost 1.6% of support among the servers.

The insecure ADH and AECDH key exchanges have also fallen, the former to a level of below 1000 servers, the latter by 1.5% to just over 2.1%.

Most of the increases in the ECDHE support are due to P-256 NIST curve, gaining nearly 4.5%.

We also see very good changes in DHE support, use of 1024 bit prime has fallen by 9% while use of 2048 bit prime has risen by 8%. For ciphersuites effectively negotiated, the changes are a bit less pronounced, with just 4.1% less servers picking a DHE ciphersuite with 1024 bit prime, making connections to 11.4% of servers a bit less secure. While preference for 2048 bit DH risen by just 1.12%.

Overall, 1.6% more servers support ciphersuites that provide Forward Secrecy while a very nice 4.4% more actually prefer them.

As usual, the support for ECDHE is mostly driven by P-256 (a.k.a. prime256v1), with it gaining 4.8% more market share. One other curve has finally risen to the double digit level (though just barely), with an increase of 0.2% – P-384, a.k.a. secp384r1.

Hash and signature algorithms

Support for SHA256 with RSA certificates has grown by nearly 5%, stronger hashes have seen smaller changes with SHA384 and SHA512 gaining only 3.8%.

Support for the insecure MD5 is also increasing, thankfully at a slower rate, with it gaining only 0.7%. Number of servers that support only the rather weak SHA1 is decreasing though, over those 3 months it has fallen by 1.2%.

Vulnerabilities

Support for secure renegotiation is still missing in 3.6% of servers, loosing just over half a percent. Similarly, 1.2% of servers are vulnerable to the CRIME attack, a change of only 0.2%.

Certificates

Certificates used by servers have seen comparatively the biggest change. SHA-1 use has fallen by nearly 13%! The switch was shared by SHA-256 with RSA (increase by just over 12%) and SHA-256 with ECDSA (increase by 2.6%).

We’ve also finally reached a “less than 100 servers with 1024 bit RSA keys” milestone. Use of 2048 bit RSA has fallen by just one percent, at the same time use of 256 bit ECDSA has grown by 2.67%.

The list of CA’s with more than 1% of servers have also shrunk by 2 positions.

Protocols

Still over half a thousand of servers support only the insecure SSLv2 and SSLv3 protocols.

At the same time, more than 4 in 5 servers support the newest and most secure TLS v1.2 protocol.

Results

SSL/TLS survey of 523658 websites from Alexa's top 1 million
Stats only from connections that did provide valid certificates
(or anonymous DH from servers that do also have valid certificate installed)


Supported Ciphers         Count     Percent
-------------------------+---------+-------
3DES                      450366    86.0038
3DES Only                 598       0.1142
AES                       516026    98.5426
AES Only                  22924     4.3777
AES-CBC                   515568    98.4551
AES-CBC Only              10087     1.9263
AES-GCM                   388464    74.1828
AES-GCM Only              378       0.0722
CAMELLIA                  234209    44.7256
CAMELLIA Only             3         0.0006
CHACHA20                  64701     12.3556
CHACHA20 Only             1         0.0002
Insecure                  61963     11.8327
RC4                       213861    40.8398
RC4 Only                  1101      0.2103
RC4 Preferred             22873     4.3679
RC4 forced in TLS1.1+     11792     2.2519
x:FF 29 RC4 Only          1377      0.263
x:FF 29 RC4 Preferred     26049     4.9744
x:FF 29 incompatible      312       0.0596
x:FF 35 RC4 Only          1656      0.3162
x:FF 35 RC4 Preferred     26149     4.9935
x:FF 35 incompatible      315       0.0602
y:DHE-RSA-SEED-SHA        84215     16.0821
y:IDEA-CBC-SHA            78851     15.0577
y:SEED-SHA                95873     18.3083
z:ADH-AES128-GCM-SHA256   395       0.0754
z:ADH-AES128-SHA          756       0.1444
z:ADH-AES128-SHA256       295       0.0563
z:ADH-AES256-GCM-SHA384   403       0.077
z:ADH-AES256-SHA          764       0.1459
z:ADH-AES256-SHA256       297       0.0567
z:ADH-CAMELLIA128-SHA     380       0.0726
z:ADH-CAMELLIA256-SHA     388       0.0741
z:ADH-DES-CBC-SHA         305       0.0582
z:ADH-DES-CBC3-SHA        775       0.148
z:ADH-RC4-MD5             638       0.1218
z:ADH-SEED-SHA            313       0.0598
z:AECDH-AES128-SHA        11266     2.1514
z:AECDH-AES256-SHA        11290     2.156
z:AECDH-DES-CBC3-SHA      11231     2.1447
z:AECDH-NULL-SHA          59        0.0113
z:AECDH-RC4-SHA           10599     2.024
z:DES-CBC-MD5             11791     2.2517
z:DES-CBC-SHA             36853     7.0376
z:DES-CBC3-MD5            24006     4.5843
z:ECDHE-RSA-NULL-SHA      63        0.012
z:EDH-RSA-DES-CBC-SHA     31633     6.0408
z:EXP-ADH-DES-CBC-SHA     208       0.0397
z:EXP-ADH-RC4-MD5         205       0.0391
z:EXP-DES-CBC-SHA         15360     2.9332
z:EXP-EDH-RSA-DES-CBC-SHA 12356     2.3596
z:EXP-RC2-CBC-MD5         18735     3.5777
z:EXP-RC4-MD5             19564     3.736
z:EXP1024-DES-CBC-SHA     4870      0.93
z:EXP1024-RC4-SHA         4967      0.9485
z:IDEA-CBC-MD5            2349      0.4486
z:NULL-MD5                227       0.0433
z:NULL-SHA                232       0.0443
z:NULL-SHA256             29        0.0055
z:RC2-CBC-MD5             12033     2.2979
z:RC4-64-MD5              968       0.1849

Cipher ordering           Count     Percent
-------------------------+---------+-------
Client side               134694    25.7217
Server side               388964    74.2783

Supported Handshakes      Count     Percent
-------------------------+---------+-------
ADH                       903       0.1724
AECDH                     11321     2.1619
DHE                       286818    54.772
ECDH                      3         0.0006
ECDHE                     415495    79.3447
ECDHE and DHE             219028    41.8265
RSA                       471189    89.9803

Supported PFS             Count     Percent  PFS Percent
-------------------------+---------+--------+-----------
DH,1024bits               162798    31.0886  56.76
DH,1536bits               1         0.0002   0.0003
DH,2048bits               116370    22.2225  40.5728
DH,2236bits               11        0.0021   0.0038
DH,2432bits               1         0.0002   0.0003
DH,3072bits               109       0.0208   0.038
DH,3092bits               1         0.0002   0.0003
DH,4094bits               1         0.0002   0.0003
DH,4096bits               7102      1.3562   2.4761
DH,512bits                43        0.0082   0.015
DH,768bits                450       0.0859   0.1569
DH,8192bits               2         0.0004   0.0007
ECDH,B-571,570bits        1628      0.3109   0.3918
ECDH,K-163,163bits        1         0.0002   0.0002
ECDH,K-571,570bits        1         0.0002   0.0002
ECDH,P-192,192bits        8         0.0015   0.0019
ECDH,P-224,224bits        71        0.0136   0.0171
ECDH,P-256,256bits        402982    76.9552  96.9884
ECDH,P-384,384bits        2860      0.5462   0.6883
ECDH,P-521,521bits        8826      1.6855   2.1242
Prefer DH,1024bits        59986     11.4552  20.9143
Prefer DH,1536bits        1         0.0002   0.0003
Prefer DH,2048bits        9957      1.9014   3.4715
Prefer DH,3072bits        13        0.0025   0.0045
Prefer DH,4096bits        345       0.0659   0.1203
Prefer DH,768bits         65        0.0124   0.0227
Prefer ECDH,B-571,570bits 1429      0.2729   0.3439
Prefer ECDH,K-163,163bits 1         0.0002   0.0002
Prefer ECDH,K-571,570bits 1         0.0002   0.0002
Prefer ECDH,P-224,224bits 55        0.0105   0.0132
Prefer ECDH,P-256,256bits 358890    68.5352  86.3765
Prefer ECDH,P-384,384bits 2659      0.5078   0.64
Prefer ECDH,P-521,521bits 7931      1.5145   1.9088
Prefer PFS                441333    84.2789  0
Support PFS               483285    92.2902  0

Supported ECC curves      Count     Percent 
-------------------------+---------+--------
brainpoolP256r1           1825      0.3485   
brainpoolP384r1           1827      0.3489   
brainpoolP512r1           1828      0.3491   
prime192v1                1461      0.279    
prime256v1                413390    78.9427  
prime256v1 Only           360620    68.8656  
secp160k1                 1415      0.2702   
secp160r1                 1422      0.2716   
secp160r2                 1414      0.27     
secp192k1                 1433      0.2737   
secp224k1                 1489      0.2843   
secp224r1                 3846      0.7344   
secp256k1                 3218      0.6145   
secp384r1                 53089     10.1381  
secp384r1 Only            364       0.0695   
secp521r1                 22417     4.2808   
secp521r1 Only            125       0.0239   
sect163k1                 1415      0.2702   
sect163k1 Only            1         0.0002   
sect163r1                 1414      0.27     
sect163r2                 1414      0.27     
sect193r1                 1412      0.2696   
sect193r2                 1412      0.2696   
sect233k1                 1482      0.283    
sect233r1                 1481      0.2828   
sect239k1                 1481      0.2828   
sect283k1                 3187      0.6086   
sect283r1                 3187      0.6086   
sect409k1                 3189      0.609    
sect409r1                 3189      0.609    
sect571k1                 3201      0.6113   
sect571r1                 3201      0.6113   

Unsupported curve fallback     Count     Percent 
------------------------------+---------+--------
False                          70006     13.3686  
True                           291129    55.5953  
order-specific                 72        0.0137   
unknown                        162451    31.0223  

ECC curve ordering        Count     Percent 
-------------------------+---------+--------
client                    4674      0.8926   
inconclusive-noecc        10        0.0019   
server                    409225    78.1474  
unknown                   109749    20.9581  

TLSv1.2 PFS supported sigalgs  Count     Percent 
------------------------------+---------+--------
ECDSA-SHA1                     38366     7.3265   
ECDSA-SHA1 Only                3         0.0006   
ECDSA-SHA224                   38357     7.3248   
ECDSA-SHA256                   49346     9.4233   
ECDSA-SHA384                   49344     9.4229   
ECDSA-SHA512                   49347     9.4235   
ECDSA-SHA512 Only              3         0.0006   
RSA-MD5                        168481    32.1739  
RSA-SHA1                       361209    68.978   
RSA-SHA1 Only                  43815     8.3671   
RSA-SHA224                     296284    56.5797  
RSA-SHA256                     324294    61.9286  
RSA-SHA256 Only                5869      1.1208   
RSA-SHA384                     297506    56.813   
RSA-SHA384 Only                1         0.0002   
RSA-SHA512                     297620    56.8348  
RSA-SHA512 Only                137       0.0262   

TLSv1.2 PFS ordering           Count     Percent 
------------------------------+---------+--------
client                         238653    45.5742  
indeterminate                  202       0.0386   
intolerant                     4295      0.8202   
order-fallback                 10        0.0019   
server                         163641    31.2496  
unsupported                    21408     4.0882   

TLSv1.2 PFS sigalg fallback    Count     Percent 
------------------------------+---------+--------
ECDSA SHA1                     38349     7.3233   
ECDSA intolerant               24        0.0046   
ECDSA pfs-rsa-SHA512           10983     2.0974   
ECDSA soft-nopfs               1         0.0002   
RSA False                      167225    31.934   
RSA SHA1                       166732    31.8399  
RSA intolerant                 34038     6.5      
RSA pfs-ecdsa-SHA512           5         0.001    
RSA soft-nopfs                 1316      0.2513   

Renegotiation             Count     Percent 
-------------------------+---------+--------
False                     6661      1.272    
insecure                  19263     3.6785   
secure                    497734    95.0494  

Compression               Count     Percent 
-------------------------+---------+--------
1 (zlib compression)      9887      1.8881   
False                     6661      1.272    
NONE                      507110    96.8399  

TLS session ticket hint   Count     Percent 
-------------------------+---------+--------
1                         2         0.0004   
1 only                    2         0.0004   
2                         2         0.0004   
2 only                    2         0.0004   
5                         2         0.0004   
5 only                    2         0.0004   
10                        8         0.0015   
10 only                   8         0.0015   
15                        9         0.0017   
15 only                   9         0.0017   
30                        10        0.0019   
30 only                   9         0.0017   
60                        96        0.0183   
60 only                   89        0.017    
65                        1         0.0002   
65 only                   1         0.0002   
70                        7         0.0013   
75                        1         0.0002   
75 only                   1         0.0002   
100                       18        0.0034   
100 only                  18        0.0034   
120                       26        0.005    
120 only                  26        0.005    
128                       3         0.0006   
128 only                  3         0.0006   
150                       2         0.0004   
180                       42        0.008    
180 only                  39        0.0074   
200                       1         0.0002   
200 only                  1         0.0002   
240                       12        0.0023   
240 only                  12        0.0023   
300                       242606    46.3291  
300 only                  238057    45.4604  
302                       3         0.0006   
302 only                  3         0.0006   
360                       2         0.0004   
360 only                  1         0.0002   
400                       8         0.0015   
400 only                  8         0.0015   
420                       119       0.0227   
420 only                  88        0.0168   
480                       12        0.0023   
480 only                  12        0.0023   
500                       5         0.001    
500 only                  5         0.001    
540                       1         0.0002   
540 only                  1         0.0002   
600                       25719     4.9114   
600 only                  25574     4.8837   
700                       1         0.0002   
700 only                  1         0.0002   
720                       2         0.0004   
720 only                  2         0.0004   
840                       1         0.0002   
840 only                  1         0.0002   
900                       781       0.1491   
900 only                  766       0.1463   
960                       2         0.0004   
960 only                  2         0.0004   
1200                      2230      0.4259   
1200 only                 2222      0.4243   
1320                      1         0.0002   
1320 only                 1         0.0002   
1500                      10        0.0019   
1500 only                 9         0.0017   
1800                      490       0.0936   
1800 only                 476       0.0909   
2100                      1         0.0002   
2100 only                 1         0.0002   
2400                      8         0.0015   
2400 only                 8         0.0015   
2700                      8         0.0015   
2700 only                 8         0.0015   
3000                      23        0.0044   
3000 only                 23        0.0044   
3600                      575       0.1098   
3600 only                 566       0.1081   
3900                      1         0.0002   
3900 only                 1         0.0002   
4100                      1         0.0002   
4100 only                 1         0.0002   
4200                      1         0.0002   
5160                      1         0.0002   
5160 only                 1         0.0002   
5400                      20        0.0038   
5400 only                 8         0.0015   
6000                      66        0.0126   
6000 only                 66        0.0126   
7200                      14981     2.8608   
7200 only                 14963     2.8574   
10800                     2576      0.4919   
10800 only                2570      0.4908   
14400                     102       0.0195   
14400 only                102       0.0195   
18000                     7         0.0013   
18000 only                7         0.0013   
21600                     4999      0.9546   
21600 only                4999      0.9546   
25200                     1         0.0002   
25200 only                1         0.0002   
28800                     2018      0.3854   
28800 only                1601      0.3057   
36000                     1153      0.2202   
36000 only                1144      0.2185   
43200                     34        0.0065   
43200 only                34        0.0065   
60000                     1         0.0002   
60000 only                1         0.0002   
64800                     53897     10.2924  
64800 only                53896     10.2922  
72000                     16        0.0031   
72000 only                16        0.0031   
84600                     1         0.0002   
84600 only                1         0.0002   
86000                     39        0.0074   
86000 only                39        0.0074   
86400                     3516      0.6714   
86400 only                3512      0.6707   
100800                    10300     1.9669   
100800 only               10290     1.965    
129600                    9         0.0017   
129600 only               9         0.0017   
172800                    6         0.0011   
172800 only               6         0.0011   
216000                    1         0.0002   
216000 only               1         0.0002   
432000                    2         0.0004   
432000 only               2         0.0004   
604800                    1         0.0002   
864000                    4         0.0008   
864000 only               4         0.0008   
None                      162322    30.9977  
None only                 157058    29.9925  

Certificate sig alg     Count     Percent 
-------------------------+---------+--------
None                      11981     2.2879   
ecdsa-with-SHA256         49307     9.4159   
sha1WithRSAEncryption     86227     16.4663  
sha256WithRSAEncryption   399420    76.275   
sha384WithRSAEncryption   6         0.0011   
sha512WithRSAEncryption   28        0.0053   

Certificate key size    Count     Percent 
-------------------------+---------+--------
ECDSA 256                 49343     9.4228   
ECDSA 384                 15        0.0029   
RSA 1024                  56        0.0107   
RSA 10240                 8         0.0015   
RSA 2047                  1         0.0002   
RSA 2048                  464934    88.7858  
RSA 2049                  4         0.0008   
RSA 2056                  4         0.0008   
RSA 2058                  2         0.0004   
RSA 2064                  2         0.0004   
RSA 2084                  4         0.0008   
RSA 2096                  2         0.0004   
RSA 2408                  2         0.0004   
RSA 2432                  1         0.0002   
RSA 2480                  1         0.0002   
RSA 3071                  1         0.0002   
RSA 3072                  127       0.0243   
RSA 3096                  2         0.0004   
RSA 3248                  2         0.0004   
RSA 4042                  1         0.0002   
RSA 4048                  1         0.0002   
RSA 4056                  25        0.0048   
RSA 4069                  3         0.0006   
RSA 4086                  2         0.0004   
RSA 4092                  6         0.0011   
RSA 4094                  1         0.0002   
RSA 4096                  20149     3.8477   
RSA 4098                  1         0.0002   
RSA 8192                  4         0.0008   
RSA/ECDSA Dual Stack      11039     2.1081

OCSP stapling             Count     Percent 
-------------------------+---------+--------
Supported                 113302    21.6366  
Unsupported               410356    78.3634  

Supported Protocols       Count     Percent
-------------------------+---------+-------
SSL2                      24244     4.6297
SSL2 Only                 19        0.0036
SSL3                      122263    23.3479
SSL3 Only                 484       0.0924
SSL3 or TLS1 Only         69496     13.2713
SSL3 or lower Only        503       0.0961
TLS1                      518406    98.9971
TLS1 Only                 41584     7.9411
TLS1 or lower Only        92178     17.6027
TLS1.1                    418156    79.8529
TLS1.1 Only               267       0.051
TLS1.1 or up Only         4492      0.8578
TLS1.2                    428200    81.7709
TLS1.2 Only               1845      0.3523
TLS1.2, 1.0 but not 1.1   10863     2.0744



Statistics from 549280 chains provided by 697275 hosts

Server provided chains    Count     Percent
-------------------------+---------+-------
complete                  487661    69.9381
incomplete                27391     3.9283
untrusted                 182223    26.1336

Trusted chain statistics
========================

Chain length              Count     Percent
-------------------------+---------+-------
2                         114       0.0208
3                         547038    99.5918
4                         2101      0.3825
5                         27        0.0049

CA key size in chains     Count
-------------------------+---------
ECDSA 256                 48991     
ECDSA 384                 48992     
RSA 1024                  101       
RSA 2045                  3         
RSA 2048                  865095    
RSA 4096                  137419    

Chains with CA key        Count     Percent
-------------------------+---------+-------
ECDSA 256                 48991     8.9191
ECDSA 384                 48992     8.9193
RSA 1024                  99        0.018
RSA 2045                  3         0.0005
RSA 2048                  499889    91.008
RSA 4096                  136911    24.9255

Signature algorithm (ex. root) Count
------------------------------+---------
ecdsa-with-SHA384              48986     
sha1WithRSAEncryption          92825     
sha256WithRSAEncryption        287083    
sha384WithRSAEncryption        122355    
sha512WithRSAEncryption        72        

Eff. host cert chain LoS  Count     Percent
-------------------------+---------+-------
80                        92922     16.9171
112                       407358    74.1622
128                       49000     8.9208

Root CAs                                      Count     Percent
---------------------------------------------+---------+-------
(d6325660) COMODO RSA Certification Authority 113492    20.662
(2c543cd1) GeoTrust Global CA                 107601    19.5895
(eed8c118) COMODO ECC Certification Authority 48977     8.9166
(cbf06781) Go Daddy Root Certificate Authorit 47939     8.7276
(5ad8a5d6) GlobalSign Root CA                 44123     8.0329
(b204d74a) VeriSign Class 3 Public Primary Ce 29359     5.345
(244b5494) DigiCert High Assurance EV Root CA 25999     4.7333
(2e4eed3c) thawte Primary Root CA             23372     4.255
(157753a5) AddTrust External CA Root          20188     3.6754
(653b494a) Baltimore CyberTrust Root          12053     2.1943
(ae8153b9) StartCom Certification Authority   9139      1.6638
(fc5a8f99) USERTrust RSA Certification Author 8775      1.5975
(3513523f) DigiCert Global Root CA            8281      1.5076
(4bfab552) Starfield Root Certificate Authori 8226      1.4976
(480720ec) GeoTrust Primary Certification Aut 5570      1.0141


Scan performed between 19th of October and 9th of November 2015

September 2015 scan results

(I have declared “analysis bankruptcy”, only raw results available for this month. Sorry! 🙇)

SSL/TLS survey of 514491 websites from Alexa's top 1 million
Stats only from connections that did provide valid certificates
(or anonymous DH from servers that do also have valid certificate installed)


Supported Ciphers         Count     Percent
-------------------------+---------+-------
3DES                      441032    85.722
3DES Only                 662       0.1287
AES                       506240    98.3963
AES Only                  20155     3.9175
AES-CBC                   506132    98.3753
AES-CBC Only              9532      1.8527
AES-GCM                   372880    72.4755
AES-GCM Only              53        0.0103
CAMELLIA                  228600    44.4323
CAMELLIA Only             1         0.0002
CHACHA20                  63632     12.368
CHACHA20 Only             1         0.0002
Insecure                  64742     12.5837
RC4                       231507    44.9973
RC4 Only                  1252      0.2433
RC4 Preferred             27685     5.381
RC4 forced in TLS1.1+     15710     3.0535
x:FF 29 RC4 Only          1532      0.2978
x:FF 29 RC4 Preferred     31430     6.109
x:FF 29 incompatible      137       0.0266
x:FF 35 RC4 Only          1845      0.3586
x:FF 35 RC4 Preferred     31550     6.1323
x:FF 35 incompatible      138       0.0268
y:DHE-RSA-SEED-SHA        86011     16.7177
y:IDEA-CBC-SHA            78923     15.34
y:SEED-SHA                96111     18.6808
z:ADH-AES128-GCM-SHA256   333       0.0647
z:ADH-AES128-SHA          745       0.1448
z:ADH-AES128-SHA256       236       0.0459
z:ADH-AES256-GCM-SHA384   343       0.0667
z:ADH-AES256-SHA          749       0.1456
z:ADH-AES256-SHA256       236       0.0459
z:ADH-CAMELLIA128-SHA     344       0.0669
z:ADH-CAMELLIA256-SHA     350       0.068
z:ADH-DES-CBC-SHA         321       0.0624
z:ADH-DES-CBC3-SHA        759       0.1475
z:ADH-RC4-MD5             621       0.1207
z:ADH-SEED-SHA            272       0.0529
z:AECDH-AES128-SHA        12374     2.4051
z:AECDH-AES256-SHA        12403     2.4107
z:AECDH-DES-CBC3-SHA      12331     2.3967
z:AECDH-NULL-SHA          55        0.0107
z:AECDH-RC4-SHA           11656     2.2655
z:DES-CBC-MD5             12201     2.3715
z:DES-CBC-SHA             37676     7.323
z:DES-CBC3-MD5            24906     4.8409
z:ECDHE-RSA-NULL-SHA      59        0.0115
z:EDH-RSA-DES-CBC-SHA     32341     6.286
z:EXP-ADH-DES-CBC-SHA     225       0.0437
z:EXP-ADH-RC4-MD5         222       0.0431
z:EXP-DES-CBC-SHA         16253     3.159
z:EXP-EDH-RSA-DES-CBC-SHA 13136     2.5532
z:EXP-RC2-CBC-MD5         19785     3.8455
z:EXP-RC4-MD5             20799     4.0426
z:EXP1024-DES-CBC-SHA     5124      0.9959
z:EXP1024-RC4-SHA         5211      1.0128
z:IDEA-CBC-MD5            2368      0.4603
z:NULL-MD5                228       0.0443
z:NULL-SHA                231       0.0449
z:NULL-SHA256             22        0.0043
z:RC2-CBC-MD5             12471     2.4239
z:RC4-64-MD5              1000      0.1944

Cipher ordering           Count     Percent
-------------------------+---------+-------
Client side               131154    25.492
Server side               383337    74.508

Supported Handshakes      Count     Percent
-------------------------+---------+-------
ADH                       872       0.1695
AECDH                     12430     2.416
DHE                       282349    54.8793
ECDH                      3         0.0006
ECDHE                     400761    77.8947
ECDHE and DHE             210872    40.9865
RSA                       466026    90.58

Supported PFS             Count     Percent  PFS Percent
-------------------------+---------+--------+-----------
DH,1024bits               176947    34.3926  62.6696
DH,1536bits               1         0.0002   0.0004
DH,2048bits               97579     18.9661  34.5597
DH,2236bits               10        0.0019   0.0035
DH,2560bits               1         0.0002   0.0004
DH,3072bits               1027      0.1996   0.3637
DH,3092bits               1         0.0002   0.0004
DH,4096bits               6303      1.2251   2.2323
DH,512bits                53        0.0103   0.0188
DH,768bits                502       0.0976   0.1778
DH,8192bits               1         0.0002   0.0004
ECDH,B-163,163bits        1         0.0002   0.0002
ECDH,B-571,570bits        1514      0.2943   0.3778
ECDH,K-163,163bits        1         0.0002   0.0002
ECDH,K-571,570bits        1         0.0002   0.0002
ECDH,P-192,192bits        2         0.0004   0.0005
ECDH,P-224,224bits        89        0.0173   0.0222
ECDH,P-256,256bits        389270    75.6612  97.1327
ECDH,P-384,384bits        2668      0.5186   0.6657
ECDH,P-521,521bits        8073      1.5691   2.0144
Prefer DH,1024bits        63712     12.3835  22.565
Prefer DH,1536bits        1         0.0002   0.0004
Prefer DH,2048bits        9342      1.8158   3.3087
Prefer DH,2236bits        1         0.0002   0.0004
Prefer DH,3072bits        14        0.0027   0.005
Prefer DH,4096bits        342       0.0665   0.1211
Prefer DH,768bits         102       0.0198   0.0361
Prefer ECDH,B-163,163bits 1         0.0002   0.0002
Prefer ECDH,B-571,570bits 1305      0.2536   0.3256
Prefer ECDH,K-163,163bits 1         0.0002   0.0002
Prefer ECDH,K-571,570bits 1         0.0002   0.0002
Prefer ECDH,P-224,224bits 55        0.0107   0.0137
Prefer ECDH,P-256,256bits 337269    65.5539  84.1571
Prefer ECDH,P-384,384bits 2525      0.4908   0.6301
Prefer ECDH,P-521,521bits 7266      1.4123   1.8131
Prefer PFS                421937    82.0106  0
Support PFS               472238    91.7874  0

Supported ECC curves      Count     Percent 
-------------------------+---------+--------
brainpoolP256r1           1285      0.2498   
brainpoolP384r1           1285      0.2498   
brainpoolP512r1           1285      0.2498   
prime192v1                1409      0.2739   
prime256v1                399379    77.626   
prime256v1 Only           346484    67.345   
secp160k1                 1372      0.2667   
secp160r1                 1376      0.2674   
secp160r2                 1372      0.2667   
secp192k1                 1393      0.2708   
secp224k1                 1466      0.2849   
secp224r1                 3478      0.676    
secp224r1 Only            2         0.0004   
secp256k1                 2664      0.5178   
secp384r1                 53002     10.3018  
secp384r1 Only            342       0.0665   
secp521r1                 22491     4.3715   
secp521r1 Only            118       0.0229   
sect163k1                 1376      0.2674   
sect163k1 Only            2         0.0004   
sect163r1                 1374      0.2671   
sect163r2                 1375      0.2673   
sect163r2 Only            1         0.0002   
sect193r1                 1374      0.2671   
sect193r2                 1374      0.2671   
sect233k1                 1460      0.2838   
sect233r1                 1458      0.2834   
sect239k1                 1458      0.2834   
sect283k1                 2637      0.5125   
sect283r1                 2637      0.5125   
sect409k1                 2637      0.5125   
sect409r1                 2637      0.5125   
sect571k1                 2650      0.5151   
sect571r1                 2650      0.5151   

Unsupported curve fallback     Count     Percent 
------------------------------+---------+--------
False                          69342     13.4778  
True                           279091    54.246   
order-specific                 247       0.048    
unknown                        165811    32.2282  

ECC curve ordering        Count     Percent 
-------------------------+---------+--------
client                    4128      0.8023   
inconclusive-noecc        10        0.0019   
server                    395723    76.9154  
unknown                   114630    22.2803  

TLSv1.2 PFS supported sigalgs  Count     Percent 
------------------------------+---------+--------
ECDSA-SHA1                     36846     7.1616   
ECDSA-SHA1 Only                3         0.0006   
ECDSA-SHA224                   36847     7.1618   
ECDSA-SHA256                   36861     7.1646   
ECDSA-SHA384                   36862     7.1648   
ECDSA-SHA512                   36877     7.1677   
ECDSA-SHA512 Only              15        0.0029   
RSA-MD5                        169404    32.9265  
RSA-SHA1                       349277    67.8879  
RSA-SHA1 Only                  46373     9.0134   
RSA-SHA224                     283789    55.1592  
RSA-SHA256                     309288    60.1153  
RSA-SHA256 Only                5302      1.0305   
RSA-SHA384                     284974    55.3895  
RSA-SHA384 Only                1         0.0002   
RSA-SHA512                     285175    55.4286  
RSA-SHA512 Only                218       0.0424   

TLSv1.2 PFS ordering           Count     Percent 
------------------------------+---------+--------
client                         247485    48.1029  
indeterminate                  113       0.022    
intolerant                     3917      0.7613   
order-fallback                 6         0.0012   
server                         141461    27.4953  
unsupported                    22160     4.3072   

TLSv1.2 PFS sigalg fallback    Count     Percent 
------------------------------+---------+--------
ECDSA SHA1                     36832     7.1589   
ECDSA intolerant               63        0.0122   
ECDSA pfs-rsa-SHA512           1         0.0002   
RSA False                      168019    32.6573  
RSA SHA1                       154614    30.0518  
RSA intolerant                 32671     6.3502   
RSA pfs-ecdsa-SHA512           1         0.0002   
RSA soft-nopfs                 1437      0.2793   

Renegotiation             Count     Percent 
-------------------------+---------+--------
False                     6340      1.2323   
insecure                  19961     3.8798   
secure                    488190    94.888   

Compression               Count     Percent 
-------------------------+---------+--------
1 (zlib compression)      10392     2.0199   
False                     6340      1.2323   
NONE                      497759    96.7479  

TLS session ticket hint   Count     Percent 
-------------------------+---------+--------
1                         4         0.0008   
1 only                    4         0.0008   
2                         2         0.0004   
2 only                    2         0.0004   
5                         1         0.0002   
5 only                    1         0.0002   
10                        7         0.0014   
10 only                   7         0.0014   
15                        8         0.0016   
15 only                   8         0.0016   
30                        11        0.0021   
30 only                   10        0.0019   
60                        93        0.0181   
60 only                   87        0.0169   
65                        1         0.0002   
65 only                   1         0.0002   
70                        7         0.0014   
100                       14        0.0027   
100 only                  14        0.0027   
120                       30        0.0058   
120 only                  30        0.0058   
128                       2         0.0004   
128 only                  2         0.0004   
150                       2         0.0004   
180                       39        0.0076   
180 only                  37        0.0072   
240                       14        0.0027   
240 only                  14        0.0027   
300                       232702    45.2296  
300 only                  227970    44.3098  
302                       2         0.0004   
302 only                  2         0.0004   
360                       2         0.0004   
360 only                  1         0.0002   
400                       7         0.0014   
400 only                  7         0.0014   
420                       113       0.022    
420 only                  87        0.0169   
480                       11        0.0021   
480 only                  11        0.0021   
500                       4         0.0008   
500 only                  4         0.0008   
540                       1         0.0002   
540 only                  1         0.0002   
600                       24187     4.7012   
600 only                  24031     4.6708   
720                       2         0.0004   
720 only                  2         0.0004   
840                       2         0.0004   
840 only                  2         0.0004   
900                       718       0.1396   
900 only                  702       0.1364   
960                       3         0.0006   
960 only                  3         0.0006   
1200                      2085      0.4053   
1200 only                 2080      0.4043   
1320                      1         0.0002   
1320 only                 1         0.0002   
1500                      11        0.0021   
1500 only                 10        0.0019   
1800                      473       0.0919   
1800 only                 468       0.091    
2100                      1         0.0002   
2100 only                 1         0.0002   
2400                      6         0.0012   
2400 only                 6         0.0012   
2700                      7         0.0014   
2700 only                 7         0.0014   
3000                      19        0.0037   
3000 only                 19        0.0037   
3600                      512       0.0995   
3600 only                 498       0.0968   
3900                      1         0.0002   
3900 only                 1         0.0002   
4200                      1         0.0002   
5160                      1         0.0002   
5160 only                 1         0.0002   
5400                      14        0.0027   
5400 only                 6         0.0012   
6000                      3         0.0006   
6000 only                 3         0.0006   
7200                      16177     3.1443   
7200 only                 16154     3.1398   
10800                     2416      0.4696   
10800 only                2411      0.4686   
14400                     70        0.0136   
14400 only                70        0.0136   
18000                     7         0.0014   
18000 only                7         0.0014   
21600                     4966      0.9652   
21600 only                4963      0.9646   
28800                     2049      0.3983   
28800 only                637       0.1238   
36000                     1187      0.2307   
36000 only                1176      0.2286   
43200                     35        0.0068   
43200 only                35        0.0068   
60000                     1         0.0002   
60000 only                1         0.0002   
64800                     51944     10.0962  
64800 only                51911     10.0898  
72000                     13        0.0025   
72000 only                13        0.0025   
86000                     31        0.006    
86000 only                31        0.006    
86400                     3546      0.6892   
86400 only                3543      0.6886   
100800                    11273     2.1911   
100800 only               11263     2.1892   
129600                    9         0.0017   
129600 only               9         0.0017   
172800                    7         0.0014   
172800 only               7         0.0014   
216000                    1         0.0002   
216000 only               1         0.0002   
432000                    2         0.0004   
432000 only               2         0.0004   
604800                    1         0.0002   
604800 only               1         0.0002   
864000                    3         0.0006   
864000 only               3         0.0006   
2592000                   1         0.0002   
2592000 only              1         0.0002   
None                      166108    32.2859  
None only                 159631    31.027   

Certificate sig alg     Count     Percent 
-------------------------+---------+--------
None                      13099     2.546    
ecdsa-with-SHA256         36858     7.164    
sha1WithRSAEncryption     100797    19.5916  
sha256WithRSAEncryption   377291    73.3329  
sha384WithRSAEncryption   6         0.0012   
sha512WithRSAEncryption   26        0.0051   

Certificate key size    Count     Percent 
-------------------------+---------+--------
ECDSA 256                 36891     7.1704   
ECDSA 384                 8         0.0016   
RSA 1024                  68        0.0132   
RSA 10240                 5         0.001    
RSA 2048                  459006    89.2156  
RSA 2049                  3         0.0006   
RSA 2056                  2         0.0004   
RSA 2058                  2         0.0004   
RSA 2064                  1         0.0002   
RSA 2078                  1         0.0002   
RSA 2080                  2         0.0004   
RSA 2084                  6         0.0012   
RSA 2096                  2         0.0004   
RSA 2408                  1         0.0002   
RSA 2432                  2         0.0004   
RSA 2480                  1         0.0002   
RSA 2890                  1         0.0002   
RSA 3024                  1         0.0002   
RSA 3071                  1         0.0002   
RSA 3072                  119       0.0231   
RSA 3248                  3         0.0006   
RSA 4042                  1         0.0002   
RSA 4048                  1         0.0002   
RSA 4056                  26        0.0051   
RSA 4069                  2         0.0004   
RSA 4092                  6         0.0012   
RSA 4094                  1         0.0002   
RSA 4096                  18374     3.5713   
RSA 8192                  5         0.001    
RSA/ECDSA Dual Stack      44        0.0086

OCSP stapling             Count     Percent 
-------------------------+---------+--------
Supported                 110108    21.4013  
Unsupported               404383    78.5987  

Supported Protocols       Count     Percent
-------------------------+---------+-------
SSL2                      25202     4.8984
SSL2 Only                 15        0.0029
SSL3                      126817    24.649
SSL3 Only                 549       0.1067
SSL3 or TLS1 Only         72846     14.1588
SSL3 or lower Only        571       0.111
TLS1                      510753    99.2735
TLS1 Only                 43061     8.3696
TLS1 or lower Only        96394     18.7358
TLS1.1                    405071    78.7324
TLS1.1 Only               30        0.0058
TLS1.1 or up Only         2939      0.5712
TLS1.2                    415131    80.6877
TLS1.2 Only               1267      0.2463
TLS1.2, 1.0 but not 1.1   11078     2.1532

Statistics from 481615 chains provided by 696385 hosts

Server provided chains    Count     Percent
-------------------------+---------+-------
complete                  438491    62.9667
incomplete                20877     2.9979
untrusted                 237017    34.0353

Trusted chain statistics
========================

Chain length              Count     Percent
-------------------------+---------+-------
2                         214       0.0444
3                         479299    99.5191
4                         2064      0.4286
5                         38        0.0079

CA key size in chains     Count
-------------------------+---------
ECDSA 256                 21571     
ECDSA 384                 21574     
RSA 1024                  189       
RSA 2045                  3         
RSA 2048                  797792    
RSA 4096                  124027    

Chains with CA key        Count     Percent
-------------------------+---------+-------
ECDSA 256                 21571     4.4789
ECDSA 384                 21574     4.4795
RSA 1024                  187       0.0388
RSA 2045                  3         0.0006
RSA 2048                  459556    95.4198
RSA 4096                  123505    25.6439

Signature algorithm (ex. root) Count
------------------------------+---------
ecdsa-with-SHA384              21569     
sha1WithRSAEncryption          87272     
sha256WithRSAEncryption        264799    
sha384WithRSAEncryption        109831    
sha512WithRSAEncryption        70        

Eff. host cert chain LoS  Count     Percent
-------------------------+---------+-------
80                        87432     18.1539
112                       372602    77.3651
128                       21581     4.481

Root CAs                                      Count     Percent
---------------------------------------------+---------+-------
(2c543cd1) GeoTrust Global CA                 102403    21.2624
(d6325660) COMODO RSA Certification Authority 101866    21.1509
(cbf06781) Go Daddy Root Certificate Authorit 47350     9.8315
(5ad8a5d6) GlobalSign Root CA                 41408     8.5977
(b204d74a) VeriSign Class 3 Public Primary Ce 26837     5.5723
(244b5494) DigiCert High Assurance EV Root CA 25125     5.2168
(2e4eed3c) thawte Primary Root CA             22902     4.7553
(eed8c118) COMODO ECC Certification Authority 21557     4.476
(653b494a) Baltimore CyberTrust Root          11908     2.4725
(157753a5) AddTrust External CA Root          10009     2.0782
(ae8153b9) StartCom Certification Authority   8637      1.7933
(fc5a8f99) USERTrust RSA Certification Author 7875      1.6351
(3513523f) DigiCert Global Root CA            7502      1.5577
(4bfab552) Starfield Root Certificate Authori 6246      1.2969
(480720ec) GeoTrust Primary Certification Aut 5252      1.0905
(f387163d) Starfield Technologies, Inc.       4889      1.0151


Scan performed between 18th and 28th of September 2015.

August 2015 scan results

Another rather uneventful month – more TLS servers among Alexa top 1 million, more support for AES-GCM, ECDHE, TLS1.2. Less servers with bad configurations – RC4 and other insecure ciphers, SSL2 and SSL3, SHA-1 certificates.

Cipher suites

AES in CBC mode remains unchanged but we see continued growth of the GCM, with it gaining another 2%. Despite its age, 3DES is still showing growth with 1% more servers supporting it, likely because of removal of RC4, which lost another 3% overall and 0.4% for servers which prefer it. There are still over 1300 servers among Alexa top 1 million that support only RC4 (0.27% of total).

Similarly, the overall percentage of servers which support completely insecure ciphers has dropped by over 1.5%.

Despite FREAK and Logjam, over 6.5% of servers support export grade ciphers.

Key exchange

ECDHE support is still growing, although at a rather slow pace – this month 2.2% more servers were willing to use this mechanism. DHE has fallen by nearly 1.5%

As always, the growth was fuelled by adding support for the P-256 curve.

Support as well as preference for PFS has grown – by just under a 1% and 1.5% respectively

Hash and signature algorithms

Unfortunately the roll-out of TLS 1.2 also brings with itself additional servers willing to negotiate MD5 signature algorithm on ServerKeyExchange messages, it has grown by 1% month over month.

Support for SHA-256 has grown by 2% so deployment of more capable systems is at least higher.

Vulnerabilities

Support for insecure renegotiation is still at a fairly high level of 4%, falling just by 0.2% since last month.

Compression has fallen by a same amount, reducing the percentage of servers vulnerable to CRIME to 2.1%

Certificates

Certificates using SHA-1 signatures have fallen by just over 6%, getting replaced mostly by RSA certificates signed with SHA-256 with some signed by ECDSA.

2048 bit RSA sees little changes, towering at nearly 90% of all servers.

Protocols

SSLv2 and SSLv3 continue their journey down, at the same slow pace. But we are at a level of just 600 servers in Alexa Top 1 million requiring use of SSLv3 to connect. Over 99% of servers support at least TLSv1.0.

At the same time, we have reached the milestone of “only one in five servers supporting TLSv1.0 as the highest protocol version”. We are shy of just 0.3% to be able to say that 4 in 5 servers support TLSv1.2!

Results

SSL/TLS survey of 509351 websites from Alexa's top 1 million
Stats only from connections that did provide valid certificates
(or anonymous DH from servers that do also have valid certificate installed)


Supported Ciphers         Count     Percent
-------------------------+---------+-------
3DES                      435183    85.4387
3DES Only                 725       0.1423
AES                       500583    98.2786
AES Only                  18647     3.6609
AES-CBC                   500485    98.2594
AES-CBC Only              9344      1.8345
AES-GCM                   363787    71.4217
AES-GCM Only              37        0.0073
CAMELLIA                  225125    44.1984
CAMELLIA Only             3         0.0006
CHACHA20                  63145     12.3971
CHACHA20 Only             2         0.0004
Insecure                  67027     13.1593
RC4                       239979    47.1147
RC4 Only                  1395      0.2739
RC4 Preferred             29355     5.7632
RC4 forced in TLS1.1+     16525     3.2443
x:FF 29 RC4 Only          1696      0.333
x:FF 29 RC4 Preferred     33338     6.5452
x:FF 29 incompatible      107       0.021
x:FF 35 RC4 Only          2022      0.397
x:FF 35 RC4 Preferred     33466     6.5703
x:FF 35 incompatible      112       0.022
y:DHE-RSA-SEED-SHA        85997     16.8836
y:IDEA-CBC-SHA            78567     15.4249
y:SEED-SHA                95725     18.7935
z:ADH-AES128-GCM-SHA256   290       0.0569
z:ADH-AES128-SHA          690       0.1355
z:ADH-AES128-SHA256       194       0.0381
z:ADH-AES256-GCM-SHA384   300       0.0589
z:ADH-AES256-SHA          701       0.1376
z:ADH-AES256-SHA256       196       0.0385
z:ADH-CAMELLIA128-SHA     306       0.0601
z:ADH-CAMELLIA256-SHA     312       0.0613
z:ADH-DES-CBC-SHA         295       0.0579
z:ADH-DES-CBC3-SHA        712       0.1398
z:ADH-RC4-MD5             569       0.1117
z:ADH-SEED-SHA            230       0.0452
z:AECDH-AES128-SHA        13191     2.5898
z:AECDH-AES256-SHA        13214     2.5943
z:AECDH-DES-CBC3-SHA      13149     2.5815
z:AECDH-NULL-SHA          51        0.01
z:AECDH-RC4-SHA           12459     2.4461
z:DES-CBC-MD5             12757     2.5046
z:DES-CBC-SHA             38652     7.5885
z:DES-CBC3-MD5            25783     5.0619
z:ECDHE-RSA-NULL-SHA      60        0.0118
z:EDH-RSA-DES-CBC-SHA     33192     6.5165
z:EXP-ADH-DES-CBC-SHA     214       0.042
z:EXP-ADH-RC4-MD5         213       0.0418
z:EXP-DES-CBC-SHA         17083     3.3539
z:EXP-EDH-RSA-DES-CBC-SHA 13893     2.7276
z:EXP-RC2-CBC-MD5         20743     4.0724
z:EXP-RC4-MD5             21811     4.2821
z:EXP1024-DES-CBC-SHA     5319      1.0443
z:EXP1024-RC4-SHA         5395      1.0592
z:IDEA-CBC-MD5            2435      0.4781
z:NULL-MD5                230       0.0452
z:NULL-SHA                232       0.0455
z:NULL-SHA256             22        0.0043
z:RC2-CBC-MD5             13042     2.5605
z:RC4-64-MD5              1052      0.2065

Cipher ordering           Count     Percent
-------------------------+---------+-------
Client side               130864    25.6923
Server side               378487    74.3077

Supported Handshakes      Count     Percent
-------------------------+---------+-------
ADH                       817       0.1604
AECDH                     13248     2.601
DHE                       280098    54.9912
ECDH                      3         0.0006
ECDHE                     390772    76.7196
ECDHE and DHE             205466    40.3388
RSA                       463146    90.9287

Supported PFS             Count     Percent  PFS Percent
-------------------------+---------+--------+-----------
DH,1024bits               187360    36.7841  66.8909
DH,1536bits               2         0.0004   0.0007
DH,2048bits               83731     16.4388  29.8935
DH,2236bits               3         0.0006   0.0011
DH,3072bits               2656      0.5214   0.9482
DH,3092bits               1         0.0002   0.0004
DH,4096bits               5788      1.1363   2.0664
DH,512bits                59        0.0116   0.0211
DH,768bits                553       0.1086   0.1974
DH,8192bits               2         0.0004   0.0007
ECDH,B-163,163bits        1         0.0002   0.0003
ECDH,B-571,570bits        1431      0.2809   0.3662
ECDH,K-163,163bits        1         0.0002   0.0003
ECDH,K-571,570bits        1         0.0002   0.0003
ECDH,P-224,224bits        83        0.0163   0.0212
ECDH,P-256,256bits        379964    74.5977  97.2342
ECDH,P-384,384bits        2696      0.5293   0.6899
ECDH,P-521,521bits        7641      1.5001   1.9554
Prefer DH,1024bits        70139     13.7703  25.0409
Prefer DH,1536bits        1         0.0002   0.0004
Prefer DH,2048bits        6067      1.1911   2.166
Prefer DH,2236bits        1         0.0002   0.0004
Prefer DH,3072bits        21        0.0041   0.0075
Prefer DH,4096bits        310       0.0609   0.1107
Prefer DH,768bits         170       0.0334   0.0607
Prefer ECDH,B-163,163bits 1         0.0002   0.0003
Prefer ECDH,B-571,570bits 1231      0.2417   0.315
Prefer ECDH,K-163,163bits 1         0.0002   0.0003
Prefer ECDH,K-571,570bits 1         0.0002   0.0003
Prefer ECDH,P-224,224bits 49        0.0096   0.0125
Prefer ECDH,P-256,256bits 327275    64.2533  83.7509
Prefer ECDH,P-384,384bits 2552      0.501    0.6531
Prefer ECDH,P-521,521bits 6909      1.3564   1.768
Prefer PFS                414728    81.4228  0
Support PFS               465404    91.372   0

Supported ECC curves      Count     Percent 
-------------------------+---------+--------
brainpoolP256r1           1013      0.1989   
brainpoolP384r1           1014      0.1991   
brainpoolP512r1           1015      0.1993   
prime192v1                1346      0.2643   
prime256v1                389473    76.4646  
prime256v1 Only           338238    66.4057  
secp160k1                 1313      0.2578   
secp160r1                 1315      0.2582   
secp160r2                 1312      0.2576   
secp192k1                 1335      0.2621   
secp224k1                 1403      0.2754   
secp224r1                 3044      0.5976   
secp224r1 Only            2         0.0004   
secp256k1                 2305      0.4525   
secp384r1                 51317     10.075   
secp384r1 Only            330       0.0648   
secp521r1                 20958     4.1146   
secp521r1 Only            124       0.0243   
sect163k1                 1322      0.2595   
sect163k1 Only            2         0.0004   
sect163r1                 1320      0.2592   
sect163r2                 1319      0.259    
sect163r2 Only            1         0.0002   
sect193r1                 1316      0.2584   
sect193r2                 1315      0.2582   
sect233k1                 1395      0.2739   
sect233r1                 1395      0.2739   
sect239k1                 1394      0.2737   
sect283k1                 2280      0.4476   
sect283r1                 2279      0.4474   
sect409k1                 2281      0.4478   
sect409r1                 2278      0.4472   
sect571k1                 2291      0.4498   
sect571r1                 2290      0.4496   

Unsupported curve fallback     Count     Percent 
------------------------------+---------+--------
False                          76188     14.9579  
True                           263977    51.8261  
order-specific                 263       0.0516   
unknown                        168923    33.1644  

ECC curve ordering        Count     Percent 
-------------------------+---------+--------
client                    3661      0.7188   
inconclusive-noecc        9         0.0018   
server                    386286    75.8389  
unknown                   119395    23.4406  

TLSv1.2 PFS supported sigalgs  Count     Percent 
------------------------------+---------+--------
ECDSA-SHA1                     35626     6.9944   
ECDSA-SHA1 Only                4         0.0008   
ECDSA-SHA224                   35618     6.9928   
ECDSA-SHA256                   35628     6.9948   
ECDSA-SHA384                   35625     6.9942   
ECDSA-SHA512                   35631     6.9954   
ECDSA-SHA512 Only              6         0.0012   
RSA-MD5                        165235    32.4403  
RSA-SHA1                       341873    67.1193  
RSA-SHA1 Only                  46530     9.1352   
RSA-SHA224                     277602    54.5011  
RSA-SHA256                     301111    59.1166  
RSA-SHA256 Only                4859      0.954    
RSA-SHA384                     278555    54.6882  
RSA-SHA512                     278643    54.7055  
RSA-SHA512 Only                93        0.0183   

TLSv1.2 PFS ordering           Count     Percent 
------------------------------+---------+--------
client                         243146    47.7364  
indeterminate                  8         0.0016   
intolerant                     3556      0.6981   
order-fallback                 16        0.0031   
server                         136828    26.8632  
unsupported                    22608     4.4386   

TLSv1.2 PFS sigalg fallback    Count     Percent 
------------------------------+---------+--------
ECDSA SHA1                     35612     6.9916   
ECDSA intolerant               39        0.0077   
RSA False                      163780    32.1546  
RSA SHA1                       152230    29.8871  
RSA intolerant                 30949     6.0762   
RSA soft-nopfs                 1543      0.3029   

Renegotiation             Count     Percent 
-------------------------+---------+--------
False                     6729      1.3211   
insecure                  20615     4.0473   
secure                    482007    94.6316  

Compression               Count     Percent 
-------------------------+---------+--------
1 (zlib compression)      10877     2.1355   
False                     6729      1.3211   
NONE                      491745    96.5434  

TLS session ticket hint   Count     Percent 
-------------------------+---------+--------
1                         2         0.0004   
1 only                    2         0.0004   
2                         2         0.0004   
2 only                    2         0.0004   
5                         4         0.0008   
5 only                    4         0.0008   
10                        7         0.0014   
10 only                   7         0.0014   
15                        10        0.002    
15 only                   10        0.002    
30                        10        0.002    
30 only                   9         0.0018   
60                        100       0.0196   
60 only                   92        0.0181   
65                        1         0.0002   
65 only                   1         0.0002   
70                        6         0.0012   
100                       12        0.0024   
100 only                  12        0.0024   
120                       32        0.0063   
120 only                  32        0.0063   
128                       3         0.0006   
128 only                  3         0.0006   
150                       2         0.0004   
180                       52        0.0102   
180 only                  50        0.0098   
240                       14        0.0027   
240 only                  14        0.0027   
300                       227236    44.6129  
300 only                  222350    43.6536  
302                       1         0.0002   
302 only                  1         0.0002   
360                       3         0.0006   
360 only                  1         0.0002   
400                       7         0.0014   
400 only                  7         0.0014   
420                       113       0.0222   
420 only                  82        0.0161   
450                       1         0.0002   
450 only                  1         0.0002   
480                       12        0.0024   
480 only                  12        0.0024   
500                       4         0.0008   
500 only                  4         0.0008   
540                       1         0.0002   
540 only                  1         0.0002   
600                       23677     4.6485   
600 only                  23483     4.6104   
720                       1         0.0002   
720 only                  1         0.0002   
840                       2         0.0004   
840 only                  2         0.0004   
900                       664       0.1304   
900 only                  648       0.1272   
960                       2         0.0004   
960 only                  2         0.0004   
1200                      1996      0.3919   
1200 only                 1989      0.3905   
1500                      8         0.0016   
1500 only                 7         0.0014   
1800                      449       0.0882   
1800 only                 441       0.0866   
2400                      6         0.0012   
2400 only                 6         0.0012   
2700                      6         0.0012   
2700 only                 6         0.0012   
3000                      20        0.0039   
3000 only                 20        0.0039   
3600                      463       0.0909   
3600 only                 439       0.0862   
3900                      1         0.0002   
3900 only                 1         0.0002   
5400                      15        0.0029   
5400 only                 5         0.001    
6000                      6         0.0012   
6000 only                 6         0.0012   
7200                      15785     3.099    
7200 only                 15761     3.0943   
10800                     2395      0.4702   
10800 only                2391      0.4694   
14400                     73        0.0143   
14400 only                73        0.0143   
18000                     14        0.0027   
18000 only                14        0.0027   
21600                     5069      0.9952   
21600 only                5067      0.9948   
28800                     1936      0.3801   
28800 only                846       0.1661   
36000                     1219      0.2393   
36000 only                1212      0.2379   
43200                     32        0.0063   
43200 only                32        0.0063   
60000                     1         0.0002   
60000 only                1         0.0002   
64800                     50264     9.8682   
64800 only                50206     9.8569   
72000                     10        0.002    
72000 only                10        0.002    
84600                     1         0.0002   
84600 only                1         0.0002   
86000                     37        0.0073   
86000 only                37        0.0073   
86400                     3516      0.6903   
86400 only                3515      0.6901   
100800                    12467     2.4476   
100800 only               12460     2.4463   
115200                    1         0.0002   
115200 only               1         0.0002   
129600                    7         0.0014   
129600 only               7         0.0014   
172800                    8         0.0016   
172800 only               8         0.0016   
216000                    1         0.0002   
216000 only               1         0.0002   
432000                    2         0.0004   
432000 only               2         0.0004   
604800                    1         0.0002   
864000                    2         0.0004   
864000 only               2         0.0004   
2592000                   1         0.0002   
2592000 only              1         0.0002   
None                      167946    32.9725  
None only                 161562    31.7192  

Certificate sig alg     Count     Percent 
-------------------------+---------+--------
None                      13903     2.7296   
ecdsa-with-SHA256         35609     6.9911   
sha1WithRSAEncryption     118117    23.1897  
sha256WithRSAEncryption   355741    69.842   
sha384WithRSAEncryption   5         0.001    
sha512WithRSAEncryption   17        0.0033   

Certificate key size    Count     Percent 
-------------------------+---------+--------
ECDSA 256                 35649     6.9989   
ECDSA 384                 6         0.0012   
ECDSA 521                 1         0.0002   
RSA 1024                  81        0.0159   
RSA 10240                 7         0.0014   
RSA 2048                  455461    89.4199  
RSA 2049                  3         0.0006   
RSA 2056                  2         0.0004   
RSA 2058                  2         0.0004   
RSA 2064                  1         0.0002   
RSA 2080                  2         0.0004   
RSA 2084                  5         0.001    
RSA 2408                  1         0.0002   
RSA 2432                  2         0.0004   
RSA 2480                  1         0.0002   
RSA 2890                  1         0.0002   
RSA 3071                  2         0.0004   
RSA 3072                  111       0.0218   
RSA 3102                  1         0.0002   
RSA 3248                  3         0.0006   
RSA 4042                  1         0.0002   
RSA 4048                  1         0.0002   
RSA 4056                  25        0.0049   
RSA 4069                  3         0.0006   
RSA 4086                  2         0.0004   
RSA 4092                  6         0.0012   
RSA 4094                  1         0.0002   
RSA 4096                  18024     3.5386   
RSA 8192                  5         0.001    
RSA/ECDSA Dual Stack      50        0.0098

OCSP stapling             Count     Percent 
-------------------------+---------+--------
Supported                 109199    21.4389  
Unsupported               400152    78.5611  

Supported Protocols       Count     Percent
-------------------------+---------+-------
SSL2                      26076     5.1195
SSL2 Only                 24        0.0047
SSL3                      130306    25.5828
SSL3 Only                 584       0.1147
SSL3 or TLS1 Only         75720     14.866
SSL3 or lower Only        607       0.1192
TLS1                      506048    99.3515
TLS1 Only                 44327     8.7026
TLS1 or lower Only        100132    19.6587
TLS1.1                    396444    77.8332
TLS1.1 Only               30        0.0059
TLS1.1 or up Only         2473      0.4855
TLS1.2                    406149    79.7385
TLS1.2 Only               1063      0.2087
TLS1.2, 1.0 but not 1.1   11004     2.1604

Statistics from 528021 chains provided by 691201 hosts

Server provided chains    Count     Percent
-------------------------+---------+-------
complete                  479672    69.3969
incomplete                23576     3.4109
untrusted                 187953    27.1922

Trusted chain statistics
========================

Chain length              Count     Percent
-------------------------+---------+-------
2                         269       0.0509
3                         525613    99.544
4                         2106      0.3988
5                         33        0.0062

CA key size in chains     Count
-------------------------+---------
ECDSA 256                 35610     
ECDSA 384                 35613     
RSA 1024                  255       
RSA 2045                  1         
RSA 2048                  860646    
RSA 4096                  125820    

Chains with CA key        Count     Percent
-------------------------+---------+-------
ECDSA 256                 35610     6.744
ECDSA 384                 35613     6.7446
RSA 1024                  253       0.0479
RSA 2045                  1         0.0002
RSA 2048                  491885    93.1563
RSA 4096                  125302    23.7305

Signature algorithm (ex. root) Count
------------------------------+---------
ecdsa-with-SHA384              35609     
sha1WithRSAEncryption          136788    
sha256WithRSAEncryption        246213    
sha384WithRSAEncryption        111253    
sha512WithRSAEncryption        61        

Eff. host cert chain LoS  Count     Percent
-------------------------+---------+-------
80                        137062    25.9577
112                       355341    67.2968
128                       35618     6.7456

Root CAs                                      Count     Percent
---------------------------------------------+---------+-------
(2c543cd1) GeoTrust Global CA                 109891    20.8119
(d6325660) COMODO RSA Certification Authority 103786    19.6557
(5ad8a5d6) GlobalSign Root CA                 51859     9.8214
(cbf06781) Go Daddy Root Certificate Authorit 48094     9.1083
(eed8c118) COMODO ECC Certification Authority 35597     6.7416
(b204d74a) VeriSign Class 3 Public Primary Ce 30261     5.731
(244b5494) DigiCert High Assurance EV Root CA 26028     4.9293
(2e4eed3c) thawte Primary Root CA             24484     4.6369
(157753a5) AddTrust External CA Root          12314     2.3321
(653b494a) Baltimore CyberTrust Root          12080     2.2878
(ae8153b9) StartCom Certification Authority   9217      1.7456
(3513523f) DigiCert Global Root CA            7329      1.388
(fc5a8f99) USERTrust RSA Certification Author 7360      1.3939
(4bfab552) Starfield Root Certificate Authori 6079      1.1513
(f081611a) The Go Daddy Group, Inc.           5382      1.0193
(480720ec) GeoTrust Primary Certification Aut 5448      1.0318
(f387163d) Starfield Technologies, Inc.       5310      1.0056


Scan performed between 17th of August and 4th of September 2015.