July 2016 scan results

This month the scan has a bit more information.

I’ve added special probes to detect whether the server is intolerant to specific types of Client Hello messages.

While support for TLSv1.2 is still not universal (being just under 90%), tolerance to Client Hello messages advertising support for TLSv1.2 is essentially full, with just 67 servers being detected as intolerant to such messages.

Support for more uncommon messages is much worse though, clients sending their maximum supported version set to TLSv1.2 can expect 1.3% of servers rejecting their connections. Higher protocol versions like TLSv1.4 have a rate of rejection on around 2.45%, for very high protocol versions it rises to 3.295% for SSL 3.254 (that would be TLSv1.253).

Clients sending Client Hello with a lot of options or extensions can expect even more intolerance. Sending multiple key shares (from TLSv1.3 draft), most of defined extensions and couple hundred ciphersuites can expect their connections rejected by over 7% of servers. In general intolerance for very big Client Hello messages, like 16KiB and 24KiB large, is respectively at 23.7% and a whopping 89.5%!

If fixing this will follow similar deployment rates as TLSv1.2 or RC4 deprecation, it doesn’t look like we will be able to deploy most Post Quantum key exchanges any time soon…

Besides that, there were no major changes, just continuation of long established trends, so I won’t be doing full analysis for this month too.

SSL/TLS survey of 603391 websites from Alexa's top 1 million
Stats only from connections that did provide valid certificates
(or anonymous DH from servers that do also have valid certificate installed)


Supported Ciphers         Count     Percent
-------------------------+---------+-------
3DES                      532905    88.3184
3DES Only                 550       0.0912
3DES Preferred            1719      0.2849
3DES forced in TLS1.1+    992       0.1644
AES                       599329    99.3268
AES Only                  46610     7.7247
AES-CBC                   598756    99.2318
AES-CBC Only              4850      0.8038
AES-GCM                   509780    84.4858
AES-GCM Only              526       0.0872
CAMELLIA                  267705    44.3668
CAMELLIA Only             1         0.0002
CHACHA20                  83982     13.9183
CHACHA20 Only             3         0.0005
Insecure                  53186     8.8145
RC4                       153525    25.4437
RC4 Only                  140       0.0232
RC4 Preferred             12783     2.1185
RC4 forced in TLS1.1+     6911      1.1454
x:FF 29 3DES Only         597       0.0989
x:FF 29 3DES Preferred    2030      0.3364
x:FF 29 RC4 Only          193       0.032
x:FF 29 RC4 Preferred     14404     2.3872
x:FF 29 incompatible      530       0.0878
x:FF 35 3DES Only         605       0.1003
x:FF 35 3DES Preferred    1956      0.3242
x:FF 35 RC4 Only          218       0.0361
x:FF 35 RC4 Preferred     14418     2.3895
x:FF 35 incompatible      532       0.0882
x:FF 44 3DES Only         3874      0.642
x:FF 44 3DES Preferred    7464      1.237
x:FF 44 incompatible      750       0.1243
y:DHE-RSA-SEED-SHA        79084     13.1066
y:IDEA-CBC-SHA            75906     12.5799
y:SEED-SHA                90103     14.9328
z:ADH-AES128-GCM-SHA256   428       0.0709
z:ADH-AES128-SHA          715       0.1185
z:ADH-AES128-SHA256       281       0.0466
z:ADH-AES256-GCM-SHA384   442       0.0733
z:ADH-AES256-SHA          759       0.1258
z:ADH-AES256-SHA256       284       0.0471
z:ADH-CAMELLIA128-SHA     368       0.061
z:ADH-CAMELLIA128-SHA256  1         0.0002
z:ADH-CAMELLIA256-SHA     393       0.0651
z:ADH-CAMELLIA256-SHA256  1         0.0002
z:ADH-DES-CBC-SHA         279       0.0462
z:ADH-DES-CBC3-SHA        720       0.1193
z:ADH-RC4-MD5             517       0.0857
z:ADH-SEED-SHA            298       0.0494
z:AECDH-AES128-SHA        9498      1.5741
z:AECDH-AES256-SHA        9566      1.5854
z:AECDH-DES-CBC3-SHA      9463      1.5683
z:AECDH-NULL-SHA          60        0.0099
z:AECDH-RC4-SHA           8940      1.4816
z:DES-CBC-MD5             6015      0.9969
z:DES-CBC-SHA             33753     5.5939
z:DES-CBC3-MD5            15538     2.5751
z:ECDHE-RSA-NULL-SHA      67        0.0111
z:EDH-RSA-DES-CBC-SHA     28904     4.7903
z:EXP-ADH-DES-CBC-SHA     180       0.0298
z:EXP-ADH-RC4-MD5         178       0.0295
z:EXP-DES-CBC-SHA         9916      1.6434
z:EXP-EDH-RSA-DES-CBC-SHA 7950      1.3176
z:EXP-RC2-CBC-MD5         11811     1.9574
z:EXP-RC4-MD5             12355     2.0476
z:EXP1024-DES-CBC-SHA     3045      0.5046
z:EXP1024-RC4-SHA         3108      0.5151
z:IDEA-CBC-MD5            1225      0.203
z:NULL-MD5                196       0.0325
z:NULL-SHA                201       0.0333
z:NULL-SHA256             39        0.0065
z:RC2-CBC-MD5             6171      1.0227
z:RC4-64-MD5              692       0.1147

Cipher ordering           Count     Percent
-------------------------+---------+-------
Client side               149228    24.7316
Server side               454163    75.2684

Supported Handshakes      Count     Percent
-------------------------+---------+-------
ADH                       918       0.1521
AECDH                     9574      1.5867
DHE                       327644    54.3004
ECDH                      2         0.0003
ECDHE                     532966    88.3285
ECDHE and DHE             285103    47.2501
RSA                       517470    85.7603

Supported PFS             Count     Percent  PFS Percent
-------------------------+---------+--------+-----------
DH,1024bits               115821    19.195   35.3496
DH,2048bits               196265    32.527   59.9019
DH,2049bits               1         0.0002   0.0003
DH,2236bits               77        0.0128   0.0235
DH,2432bits               3         0.0005   0.0009
DH,3072bits               141       0.0234   0.043
DH,3092bits               2         0.0003   0.0006
DH,3196bits               1         0.0002   0.0003
DH,4096bits               14972     2.4813   4.5696
DH,512bits                122       0.0202   0.0372
DH,6144bits               1         0.0002   0.0003
DH,768bits                355       0.0588   0.1083
DH,8192bits               7         0.0012   0.0021
ECDH,B-571,570bits        4696      0.7783   0.8811
ECDH,K-163,163bits        1         0.0002   0.0002
ECDH,P-192,192bits        68        0.0113   0.0128
ECDH,P-224,224bits        91        0.0151   0.0171
ECDH,P-256,256bits        500295    82.9139  93.87
ECDH,P-384,384bits        12707     2.1059   2.3842
ECDH,P-521,521bits        17146     2.8416   3.2171
ECDH,brainpoolP512r1,512bits 3         0.0005   0.0006
ECDH,secp256k1,256bits    1         0.0002   0.0002
Prefer DH,1024bits        42440     7.0336   12.9531
Prefer DH,2048bits        4955      0.8212   1.5123
Prefer DH,3072bits        9         0.0015   0.0027
Prefer DH,3092bits        2         0.0003   0.0006
Prefer DH,4096bits        379       0.0628   0.1157
Prefer DH,768bits         33        0.0055   0.0101
Prefer ECDH,B-571,570bits 4438      0.7355   0.8327
Prefer ECDH,K-163,163bits 1         0.0002   0.0002
Prefer ECDH,P-192,192bits 1         0.0002   0.0002
Prefer ECDH,P-224,224bits 89        0.0147   0.0167
Prefer ECDH,P-256,256bits 465038    77.0708  87.2547
Prefer ECDH,P-384,384bits 10660     1.7667   2.0001
Prefer ECDH,P-521,521bits 15901     2.6353   2.9835
Prefer ECDH,brainpoolP512r1,512bits 3         0.0005   0.0006
Prefer ECDH,secp256k1,256bits 1         0.0002   0.0002
Prefer PFS                543950    90.1488  0
Support PFS               575507    95.3788  0

Supported ECC curves      Count     Percent 
-------------------------+---------+--------
None                      2         0.0003   
None Only                 2         0.0003   
brainpoolP256r1           27492     4.5562   
brainpoolP384r1           27491     4.5561   
brainpoolP512r1           27484     4.5549   
prime192v1                1647      0.273    
prime256v1                510415    84.5911  
prime256v1 Only           428464    71.0093  
secp160k1                 1528      0.2532   
secp160r1                 1536      0.2546   
secp160r2                 1528      0.2532   
secp192k1                 1543      0.2557   
secp224k1                 1625      0.2693   
secp224r1                 5406      0.8959   
secp256k1                 29683     4.9194   
secp384r1                 88419     14.6537  
secp384r1 Only            5169      0.8567   
secp521r1                 58499     9.695    
secp521r1 Only            153       0.0254   
sect163k1                 1531      0.2537   
sect163k1 Only            3         0.0005   
sect163r1                 1529      0.2534   
sect163r2                 1529      0.2534   
sect193r1                 1529      0.2534   
sect193r2                 1529      0.2534   
sect233k1                 1614      0.2675   
sect233r1                 1614      0.2675   
sect239k1                 1614      0.2675   
sect283k1                 28930     4.7946   
sect283k1 Only            2         0.0003   
sect283r1                 28927     4.7941   
sect409k1                 28927     4.7941   
sect409r1                 28927     4.7941   
sect571k1                 28927     4.7941   
sect571r1                 28930     4.7946   
server                    38445     6.3715   
server Only               38445     6.3715   

Unsupported curve fallback     Count     Percent 
------------------------------+---------+--------
False                          532806    88.3019  
unknown                        70585     11.6981  

ECC curve ordering        Count     Percent 
-------------------------+---------+--------
                          36744     6.0896   
client                    18027     2.9876   
server                    478197    79.2516  
unknown                   70423     11.6712  

TLSv1.2 PFS supported sigalgs  Count     Percent 
------------------------------+---------+--------
ECDSA-SHA1                     54563     9.0427   
ECDSA-SHA1 Only                9         0.0015   
ECDSA-SHA224                   54587     9.0467   
ECDSA-SHA256                   72567     12.0265  
ECDSA-SHA384                   72639     12.0385  
ECDSA-SHA512                   72750     12.0569  
ECDSA-SHA512 Only              118       0.0196   
RSA-MD5                        23842     3.9513   
RSA-SHA1                       462908    76.7178  
RSA-SHA1 Only                  30278     5.018    
RSA-SHA224                     387875    64.2825  
RSA-SHA256                     441866    73.2305  
RSA-SHA256 Only                8016      1.3285   
RSA-SHA384                     403401    66.8557  
RSA-SHA384 Only                4         0.0007   
RSA-SHA512                     403342    66.8459  
RSA-SHA512 Only                131       0.0217   

TLSv1.2 PFS ordering           Count     Percent 
------------------------------+---------+--------
client                         282677    46.8481  
indeterminate                  38        0.0063   
intolerant                     6561      1.0874   
order-fallback                 4         0.0007   
server                         236059    39.1221  
unsupported                    14339     2.3764   

TLSv1.2 PFS sigalg fallback    Count     Percent 
------------------------------+---------+--------
ECDSA SHA1                     54456     9.025    
ECDSA intolerant               652       0.1081   
ECDSA pfs-rsa-SHA512           17783     2.9472   
ECDSA soft-nopfs               15        0.0025   
RSA False                      23629     3.916    
RSA SHA1                       399316    66.1786  
RSA intolerant                 50007     8.2877   
RSA pfs-ecdsa-SHA512           99        0.0164   
RSA soft-nopfs                 389       0.0645   

Renegotiation             Count     Percent 
-------------------------+---------+--------
False                     4550      0.7541   
insecure                  15701     2.6021   
secure                    583140    96.6438  

Compression               Count     Percent 
-------------------------+---------+--------
1 (zlib compression)      6683      1.1076   
False                     4550      0.7541   
NONE                      592158    98.1384  

TLS session ticket hint   Count     Percent 
-------------------------+---------+--------
1                         3         0.0005   
1 only                    3         0.0005   
5                         8         0.0013   
5 only                    8         0.0013   
10                        9         0.0015   
10 only                   9         0.0015   
15                        7         0.0012   
15 only                   7         0.0012   
30                        29        0.0048   
30 only                   29        0.0048   
60                        172       0.0285   
60 only                   166       0.0275   
65                        2         0.0003   
65 only                   2         0.0003   
70                        6         0.001    
70 only                   4         0.0007   
75                        1         0.0002   
75 only                   1         0.0002   
90                        1         0.0002   
90 only                   1         0.0002   
100                       15        0.0025   
100 only                  15        0.0025   
120                       28        0.0046   
120 only                  28        0.0046   
128                       3         0.0005   
128 only                  2         0.0003   
150                       2         0.0003   
180                       83        0.0138   
180 only                  80        0.0133   
240                       12        0.002    
240 only                  12        0.002    
300                       306995    50.8783  
300 only                  304055    50.391   
302                       2         0.0003   
302 only                  2         0.0003   
360                       3         0.0005   
360 only                  2         0.0003   
400                       8         0.0013   
400 only                  8         0.0013   
420                       120       0.0199   
420 only                  103       0.0171   
480                       11        0.0018   
480 only                  11        0.0018   
500                       4         0.0007   
500 only                  4         0.0007   
540                       4         0.0007   
540 only                  4         0.0007   
600                       29961     4.9654   
600 only                  29817     4.9416   
630                       1         0.0002   
630 only                  1         0.0002   
700                       1         0.0002   
700 only                  1         0.0002   
720                       6         0.001    
720 only                  6         0.001    
840                       2         0.0003   
840 only                  2         0.0003   
900                       1560      0.2585   
900 only                  1541      0.2554   
960                       3         0.0005   
960 only                  3         0.0005   
1000                      1         0.0002   
1000 only                 1         0.0002   
1200                      3528      0.5847   
1200 only                 3525      0.5842   
1210                      2         0.0003   
1210 only                 2         0.0003   
1320                      1         0.0002   
1320 only                 1         0.0002   
1380                      1         0.0002   
1380 only                 1         0.0002   
1440                      1         0.0002   
1440 only                 1         0.0002   
1500                      4         0.0007   
1500 only                 3         0.0005   
1800                      860       0.1425   
1800 only                 839       0.139    
1980                      2         0.0003   
1980 only                 2         0.0003   
2100                      1         0.0002   
2400                      8         0.0013   
2400 only                 8         0.0013   
2700                      12        0.002    
2700 only                 12        0.002    
3000                      41        0.0068   
3000 only                 41        0.0068   
3600                      1100      0.1823   
3600 only                 1090      0.1806   
3900                      2         0.0003   
3900 only                 2         0.0003   
4200                      2         0.0003   
4200 only                 1         0.0002   
4500                      1         0.0002   
4500 only                 1         0.0002   
5160                      1         0.0002   
5160 only                 1         0.0002   
5400                      15        0.0025   
5400 only                 9         0.0015   
6000                      341       0.0565   
6000 only                 340       0.0563   
7200                      15389     2.5504   
7200 only                 15355     2.5448   
7500                      2         0.0003   
7500 only                 2         0.0003   
9000                      2         0.0003   
9000 only                 2         0.0003   
10800                     5322      0.882    
10800 only                5300      0.8784   
14400                     147       0.0244   
14400 only                144       0.0239   
18000                     9         0.0015   
18000 only                8         0.0013   
21600                     4353      0.7214   
21600 only                4353      0.7214   
25200                     1         0.0002   
25200 only                1         0.0002   
28800                     2164      0.3586   
28800 only                2164      0.3586   
30000                     2         0.0003   
30000 only                1         0.0002   
36000                     1239      0.2053   
36000 only                1231      0.204    
43200                     67        0.0111   
43200 only                67        0.0111   
54000                     2         0.0003   
54000 only                2         0.0003   
60000                     3         0.0005   
60000 only                3         0.0005   
64800                     73037     12.1044  
64800 only                73018     12.1013  
72000                     12        0.002    
72000 only                12        0.002    
79200                     1         0.0002   
79200 only                1         0.0002   
86400                     3232      0.5356   
86400 only                3222      0.534    
100800                    9169      1.5196   
100800 only               9156      1.5174   
108000                    1         0.0002   
108000 only               1         0.0002   
115200                    1         0.0002   
115200 only               1         0.0002   
129600                    6         0.001    
129600 only               6         0.001    
172800                    49        0.0081   
172800 only               49        0.0081   
216000                    3         0.0005   
216000 only               3         0.0005   
259200                    3         0.0005   
259200 only               3         0.0005   
432000                    1         0.0002   
432000 only               1         0.0002   
604800                    1         0.0002   
864000                    2         0.0003   
864000 only               2         0.0003   
7776000                   2         0.0003   
7776000 only              2         0.0003   
None                      147458    24.4382  
None only                 144200    23.8983  

Certificate sig alg     Count     Percent 
-------------------------+---------+--------
None                      10178     1.6868   
ecdsa-with-SHA256         70598     11.7002  
sha1WithRSAEncryption     17351     2.8756   
sha256WithRSAEncryption   533303    88.3843  
sha384WithRSAEncryption   7         0.0012   
sha512WithRSAEncryption   77        0.0128   

Certificate key size    Count     Percent 
-------------------------+---------+--------
ECDSA 256                 72865     12.0759  
ECDSA 384                 41        0.0068   
ECDSA 521                 1         0.0002   
RSA 1024                  14        0.0023   
RSA 2048                  516458    85.5926  
RSA 2049                  4         0.0007   
RSA 2056                  1         0.0002   
RSA 2058                  3         0.0005   
RSA 2059                  1         0.0002   
RSA 2080                  6         0.001    
RSA 2084                  1         0.0002   
RSA 2086                  1         0.0002   
RSA 2096                  3         0.0005   
RSA 2408                  1         0.0002   
RSA 2432                  6         0.001    
RSA 2560                  1         0.0002   
RSA 2948                  1         0.0002   
RSA 3072                  158       0.0262   
RSA 3096                  2         0.0003   
RSA 3120                  1         0.0002   
RSA 3248                  3         0.0005   
RSA 4048                  3         0.0005   
RSA 4056                  21        0.0035   
RSA 4069                  1         0.0002   
RSA 4086                  3         0.0005   
RSA 4092                  2         0.0003   
RSA 4094                  1         0.0002   
RSA 4095                  1         0.0002   
RSA 4096                  33887     5.6161   
RSA 4196                  1         0.0002   
RSA 8192                  12        0.002    
RSA 8392                  1         0.0002   
RSA/ECDSA Dual Stack      20097     3.3307

OCSP stapling             Count     Percent 
-------------------------+---------+--------
Supported                 139486    23.117   
Unsupported               463905    76.883   

Supported Protocols       Count     Percent
-------------------------+---------+-------
SSL2                      15694     2.601
SSL2 Only                 9         0.0015
SSL3                      88647     14.6915
SSL3 Only                 325       0.0539
SSL3 or TLS1 Only         47120     7.8092
SSL3 or lower Only        335       0.0555
TLS1                      590402    97.8473
TLS1 Only                 28435     4.7125
TLS1 or lower Only        61759     10.2353
TLS1.1                    532582    88.2648
TLS1.1 Only               43        0.0071
TLS1.1 or up Only         12475     2.0675
TLS1.2                    539663    89.4384
TLS1.2 Only               3587      0.5945
TLS1.2, 1.0 but not 1.1   5029      0.8335

Client Hello intolerance                 Count     Percent
----------------------------------------+---------+-------
Huge Cipher List                         539862    89.4713
Huge Cipher List (trunc 16388)           143271    23.7443
SSL 3.254                                19882     3.295
TLS 1.0                                  66391     11.003
TLS 1.1                                  3190      0.5287
TLS 1.2                                  67        0.0111
TLS 1.3                                  7896      1.3086
TLS 1.4                                  14758     2.4458
Xmas tree                                43001     7.1266
x:missing information                    44        0.0073



Statistics from 544239 chains provided by 734331 hosts

Server provided chains    Count     Percent
-------------------------+---------+-------
complete                  493648    67.2242
incomplete                20056     2.7312
untrusted                 220627    30.0446

Trusted chain statistics
========================

Chain length              Count     Percent
-------------------------+---------+-------
2                         1         0.0002
3                         540295    99.2753
4                         3930      0.7221
5                         13        0.0024

CA key size in chains     Count
-------------------------+---------
ECDSA 256                 30197     
ECDSA 384                 30193     
RSA 1024                  9         
RSA 2045                  2         
RSA 2048                  845143    
RSA 4096                  186889    

Chains with CA key        Count     Percent
-------------------------+---------+-------
ECDSA 256                 30197     5.5485
ECDSA 384                 30193     5.5477
RSA 1024                  7         0.0013
RSA 2045                  2         0.0004
RSA 2048                  513612    94.3725
RSA 4096                  186227    34.2179

Signature algorithm (ex. root) Count
------------------------------+---------
ecdsa-with-SHA384              30185     
sha1WithRSAEncryption          20474     
sha256WithRSAEncryption        330105    
sha384WithRSAEncryption        167373    
sha512WithRSAEncryption        57        

Eff. host cert chain LoS  Count     Percent
-------------------------+---------+-------
80                        20448     3.7572
112                       493575    90.6909
128                       30216     5.552

Most popular root CAs                         Count     Percent
---------------------------------------------+---------+-------
(d6325660) COMODO RSA Certification Authority 149876    27.5386
(2c543cd1) GeoTrust Global CA                 82272     15.1169
(cbf06781) Go Daddy Root Certificate Authorit 46152     8.4801
(5ad8a5d6) GlobalSign Root CA                 42046     7.7256
(b204d74a) VeriSign Class 3 Public Primary Ce 30585     5.6198
(eed8c118) COMODO ECC Certification Authority 30178     5.545
(244b5494) DigiCert High Assurance EV Root CA 21202     3.8957
(2e4eed3c) thawte Primary Root CA             17390     3.1953
(fc5a8f99) USERTrust RSA Certification Author 17354     3.1887
(2e5ac55d) DST Root CA X3                     16492     3.0303
(653b494a) Baltimore CyberTrust Root          11315     2.079
(3513523f) DigiCert Global Root CA            10347     1.9012
(ae8153b9) StartCom Certification Authority   9044      1.6618
(4bfab552) Starfield Root Certificate Authori 9012      1.6559
(e2799e36) GeoTrust Primary Certification Aut 6148      1.1297
(480720ec) GeoTrust Primary Certification Aut 5775      1.0611
(02265526) Entrust Root Certification Authori 3969      0.7293
(ba89ed3b) thawte Primary Root CA - G3        3394      0.6236
(8096d0a9) Certification Authority of WoSign  2877      0.5286
(157753a5) AddTrust External CA Root          2782      0.5112

Most popular intermediate CA                  Count     Percent
---------------------------------------------+---------+-------
(8d28ae65) COMODO RSA Domain Validation Secur 100923    18.5439
(27eb7704) Go Daddy Secure Certificate Author 46152     8.4801
(53f3e569) RapidSSL SHA256 CA - G3            40339     7.412
(6cfa716c) COMODO ECC Domain Validation Secur 30126     5.5354
(7d9c641e) Symantec Class 3 Secure Server CA  21662     3.9802
(1400f578) cPanel, Inc. Certification Authori 19580     3.5977
(38ae8eda) DigiCert SHA2 High Assurance Serve 17140     3.1494
(4f06f81d) Let's Encrypt Authority X3         16492     3.0303
(16744f0c) AlphaSSL CA - SHA256 - G2          16239     2.9838
(493a2f06) COMODO RSA Domain Validation Secur 13442     2.4699
(10310d4b) GeoTrust SSL CA - G3               13423     2.4664
(80ecc636) RapidSSL SHA256 CA                 12795     2.351
(d7d634d4) GlobalSign Domain Validation CA -  11432     2.1005
(b85455c4) GlobalSign Organization Validation 11363     2.0879
(c43a77d9) COMODO RSA Organization Validation 11217     2.061
(85cf5865) DigiCert SHA2 Secure Server CA     10208     1.8756
(9ad474ec) thawte SSL CA - G2                 9146      1.6805
(cd7781e5) Starfield Secure Certificate Autho 9012      1.6559
(d84ef247) GeoTrust DV SSL CA - G4            7163      1.3161
(a0f7ac3e) Symantec Class 3 EV SSL CA - G3    7144      1.3127
(3d97f5e2) Verizon Akamai SureServer CA G14-S 7025      1.2908
(fd917e82) SecureCore RSA DV CA               6995      1.2853
(b71a5f76) GeoTrust EV SSL CA - G4            5724      1.0517
(661c52cc) thawte DV SSL CA - G2              5368      0.9863
(e22cd3f0) COMODO RSA Extended Validation Sec 4365      0.802
(7f8496de) StartCom Class 1 DV Server CA      3678      0.6758
(45bfefc3) DigiCert SHA2 Extended Validation  3527      0.6481
(2835d715) Entrust Certification Authority -  3328      0.6115
(f131b364) RapidSSL CA                        3180      0.5843
(98d7cad7) GeoTrust DV SSL CA - G3            3154      0.5795



Scan performed between 20th of July and 17th of August 2016

June 2016 scan results

Sorry, no analysis this month.

SSL/TLS survey of 593851 websites from Alexa's top 1 million
Stats only from connections that did provide valid certificates
(or anonymous DH from servers that do also have valid certificate installed)


Supported Ciphers         Count     Percent
-------------------------+---------+-------
3DES                      525961    88.5678
3DES Only                 605       0.1019
3DES Preferred            1797      0.3026
3DES forced in TLS1.1+    978       0.1647
AES                       589255    99.2261
AES Only                  43606     7.3429
AES-CBC                   588687    99.1304
AES-CBC Only              5565      0.9371
AES-GCM                   490658    82.6231
AES-GCM Only              520       0.0876
CAMELLIA                  261701    44.0685
CAMELLIA Only             2         0.0003
CHACHA20                  81256     13.6829
Insecure                  56141     9.4537
RC4                       166167    27.9813
RC4 Only                  158       0.0266
RC4 Preferred             13843     2.3311
RC4 forced in TLS1.1+     7176      1.2084
x:FF 29 3DES Only         654       0.1101
x:FF 29 3DES Preferred    2164      0.3644
x:FF 29 RC4 Only          233       0.0392
x:FF 29 RC4 Preferred     16139     2.7177
x:FF 29 incompatible      518       0.0872
x:FF 35 3DES Only         662       0.1115
x:FF 35 3DES Preferred    2094      0.3526
x:FF 35 RC4 Only          273       0.046
x:FF 35 RC4 Preferred     16162     2.7216
x:FF 35 incompatible      522       0.0879
x:FF 44 3DES Only         4368      0.7355
x:FF 44 3DES Preferred    8162      1.3744
x:FF 44 incompatible      795       0.1339
y:DHE-RSA-SEED-SHA        79533     13.3928
y:IDEA-CBC-SHA            76113     12.8169
y:SEED-SHA                90128     15.1769
z:ADH-AES128-GCM-SHA256   430       0.0724
z:ADH-AES128-SHA          771       0.1298
z:ADH-AES128-SHA256       268       0.0451
z:ADH-AES256-GCM-SHA384   444       0.0748
z:ADH-AES256-SHA          809       0.1362
z:ADH-AES256-SHA256       269       0.0453
z:ADH-CAMELLIA128-SHA     401       0.0675
z:ADH-CAMELLIA128-SHA256  1         0.0002
z:ADH-CAMELLIA256-SHA     424       0.0714
z:ADH-CAMELLIA256-SHA256  1         0.0002
z:ADH-DES-CBC-SHA         326       0.0549
z:ADH-DES-CBC3-SHA        781       0.1315
z:ADH-RC4-MD5             571       0.0962
z:ADH-SEED-SHA            322       0.0542
z:AECDH-AES128-SHA        10202     1.7179
z:AECDH-AES256-SHA        10261     1.7279
z:AECDH-DES-CBC3-SHA      10168     1.7122
z:AECDH-NULL-SHA          94        0.0158
z:AECDH-RC4-SHA           9605      1.6174
z:DES-CBC-MD5             6658      1.1212
z:DES-CBC-SHA             35044     5.9011
z:DES-CBC3-MD5            17074     2.8751
z:ECDHE-RSA-NULL-SHA      100       0.0168
z:EDH-RSA-DES-CBC-SHA     29995     5.0509
z:EXP-ADH-DES-CBC-SHA     181       0.0305
z:EXP-ADH-RC4-MD5         180       0.0303
z:EXP-DES-CBC-SHA         10901     1.8356
z:EXP-EDH-RSA-DES-CBC-SHA 8667      1.4595
z:EXP-RC2-CBC-MD5         13108     2.2073
z:EXP-RC4-MD5             13716     2.3097
z:EXP1024-DES-CBC-SHA     3463      0.5831
z:EXP1024-RC4-SHA         3524      0.5934
z:IDEA-CBC-MD5            1453      0.2447
z:NULL-MD5                233       0.0392
z:NULL-SHA                238       0.0401
z:NULL-SHA256             36        0.0061
z:RC2-CBC-MD5             6966      1.173
z:RC4-64-MD5              757       0.1275

Cipher ordering           Count     Percent
-------------------------+---------+-------
Client side               152565    25.6908
Server side               441286    74.3092

Supported Handshakes      Count     Percent
-------------------------+---------+-------
ADH                       979       0.1649
AECDH                     10271     1.7296
DHE                       320930    54.0422
ECDH                      2         0.0003
ECDHE                     517887    87.2082
ECDHE and DHE             274945    46.2987
RSA                       509769    85.8412

Supported PFS             Count     Percent  PFS Percent
-------------------------+---------+--------+-----------
DH,1024bits               119481    20.1197  37.2296
DH,1028bits               1         0.0002   0.0003
DH,2048bits               188192    31.6901  58.6396
DH,2236bits               78        0.0131   0.0243
DH,2430bits               1         0.0002   0.0003
DH,2432bits               3         0.0005   0.0009
DH,2560bits               1         0.0002   0.0003
DH,3072bits               132       0.0222   0.0411
DH,3092bits               2         0.0003   0.0006
DH,3196bits               1         0.0002   0.0003
DH,4046bits               1         0.0002   0.0003
DH,4094bits               1         0.0002   0.0003
DH,4096bits               12637     2.128    3.9376
DH,512bits                108       0.0182   0.0337
DH,6144bits               1         0.0002   0.0003
DH,768bits                385       0.0648   0.12
DH,8192bits               8         0.0013   0.0025
ECDH,B-571,570bits        3072      0.5173   0.5932
ECDH,K-163,163bits        1         0.0002   0.0002
ECDH,P-192,192bits        60        0.0101   0.0116
ECDH,P-224,224bits        94        0.0158   0.0182
ECDH,P-256,256bits        490672    82.6254  94.745
ECDH,P-384,384bits        9474      1.5953   1.8294
ECDH,P-521,521bits        16461     2.7719   3.1785
ECDH,brainpoolP512r1,512bits 1         0.0002   0.0002
ECDH,secp256k1,256bits    1         0.0002   0.0002
Prefer DH,1024bits        45380     7.6416   14.1402
Prefer DH,2048bits        5635      0.9489   1.7558
Prefer DH,3072bits        8         0.0013   0.0025
Prefer DH,3092bits        2         0.0003   0.0006
Prefer DH,4096bits        398       0.067    0.124
Prefer DH,768bits         44        0.0074   0.0137
Prefer ECDH,B-571,570bits 2840      0.4782   0.5484
Prefer ECDH,K-163,163bits 1         0.0002   0.0002
Prefer ECDH,P-192,192bits 1         0.0002   0.0002
Prefer ECDH,P-224,224bits 92        0.0155   0.0178
Prefer ECDH,P-256,256bits 453139    76.3052  87.4977
Prefer ECDH,P-384,384bits 7350      1.2377   1.4192
Prefer ECDH,P-521,521bits 15215     2.5621   2.9379
Prefer ECDH,brainpoolP512r1,512bits 1         0.0002   0.0002
Prefer ECDH,secp256k1,256bits 1         0.0002   0.0002
Prefer PFS                530107    89.266   0
Support PFS               563872    94.9518  0

Supported ECC curves      Count     Percent 
-------------------------+---------+--------
brainpoolP256r1           17814     2.9997   
brainpoolP384r1           17827     3.0019   
brainpoolP512r1           17836     3.0034   
prime192v1                1799      0.3029   
prime256v1                513258    86.4288  
prime256v1 Only           427959    72.065   
secp160k1                 1678      0.2826   
secp160r1                 1688      0.2842   
secp160r2                 1678      0.2826   
secp192k1                 1693      0.2851   
secp224k1                 1780      0.2997   
secp224r1                 5748      0.9679   
secp256k1                 20085     3.3822   
secp384r1                 88954     14.9792  
secp384r1 Only            3672      0.6183   
secp521r1                 50953     8.5801   
secp521r1 Only            140       0.0236   
sect163k1                 1684      0.2836   
sect163k1 Only            2         0.0003   
sect163r1                 1682      0.2832   
sect163r2                 1681      0.2831   
sect193r1                 1681      0.2831   
sect193r2                 1681      0.2831   
sect233k1                 1770      0.2981   
sect233r1                 1768      0.2977   
sect239k1                 1768      0.2977   
sect283k1                 19394     3.2658   
sect283r1                 19392     3.2655   
sect409k1                 19395     3.266    
sect409r1                 19391     3.2653   
sect571k1                 19395     3.266    
sect571r1                 19395     3.266    

Unsupported curve fallback     Count     Percent 
------------------------------+---------+--------
False                          56371     9.4924   
True                           391090    65.8566  
order-specific                 45        0.0076   
unknown                        146345    24.6434  

ECC curve ordering        Count     Percent 
-------------------------+---------+--------
client                    13249     2.231    
inconclusive-noecc        8         0.0013   
server                    503853    84.845   
unknown                   76741     12.9226  

TLSv1.2 PFS supported sigalgs  Count     Percent 
------------------------------+---------+--------
ECDSA-SHA1                     53286     8.973    
ECDSA-SHA1 Only                8         0.0013   
ECDSA-SHA224                   53248     8.9666   
ECDSA-SHA256                   71063     11.9665  
ECDSA-SHA384                   71064     11.9666  
ECDSA-SHA512                   71074     11.9683  
ECDSA-SHA512 Only              16        0.0027   
RSA-MD5                        27142     4.5705   
RSA-SHA1                       447072    75.2835  
RSA-SHA1 Only                  34046     5.7331   
RSA-SHA224                     371135    62.4963  
RSA-SHA256                     422358    71.1219  
RSA-SHA256 Only                8044      1.3545   
RSA-SHA384                     383992    64.6613  
RSA-SHA384 Only                4         0.0007   
RSA-SHA512                     384022    64.6664  
RSA-SHA512 Only                209       0.0352   

TLSv1.2 PFS ordering           Count     Percent 
------------------------------+---------+--------
client                         280809    47.2861  
indeterminate                  54        0.0091   
intolerant                     6465      1.0887   
order-fallback                 8         0.0013   
server                         220388    37.1117  
unsupported                    15018     2.5289   

TLSv1.2 PFS sigalg fallback    Count     Percent 
------------------------------+---------+--------
ECDSA SHA1                     53230     8.9635   
ECDSA intolerant               189       0.0318   
ECDSA pfs-rsa-SHA512           17719     2.9837   
ECDSA soft-nopfs               7         0.0012   
RSA False                      26845     4.5205   
RSA SHA1                       386610    65.1022  
RSA intolerant                 43313     7.2936   
RSA pfs-ecdsa-SHA512           27        0.0045   
RSA soft-nopfs                 474       0.0798   

Renegotiation             Count     Percent 
-------------------------+---------+--------
False                     4962      0.8356   
insecure                  16550     2.7869   
secure                    572339    96.3775  

Compression               Count     Percent 
-------------------------+---------+--------
1 (zlib compression)      7077      1.1917   
False                     4962      0.8356   
NONE                      581812    97.9727  

TLS session ticket hint   Count     Percent 
-------------------------+---------+--------
1                         2         0.0003   
1 only                    2         0.0003   
2                         1         0.0002   
2 only                    1         0.0002   
5                         5         0.0008   
5 only                    5         0.0008   
10                        8         0.0013   
10 only                   8         0.0013   
15                        8         0.0013   
15 only                   8         0.0013   
30                        25        0.0042   
30 only                   25        0.0042   
60                        166       0.028    
60 only                   161       0.0271   
65                        2         0.0003   
65 only                   2         0.0003   
70                        8         0.0013   
70 only                   8         0.0013   
75                        1         0.0002   
75 only                   1         0.0002   
90                        1         0.0002   
90 only                   1         0.0002   
100                       16        0.0027   
100 only                  16        0.0027   
120                       27        0.0045   
120 only                  27        0.0045   
128                       6         0.001    
128 only                  6         0.001    
150                       2         0.0003   
180                       78        0.0131   
180 only                  74        0.0125   
240                       14        0.0024   
240 only                  14        0.0024   
244                       2         0.0003   
244 only                  2         0.0003   
300                       298609    50.2835  
300 only                  295255    49.7187  
302                       2         0.0003   
302 only                  2         0.0003   
360                       3         0.0005   
360 only                  2         0.0003   
400                       6         0.001    
400 only                  6         0.001    
420                       129       0.0217   
420 only                  111       0.0187   
450                       1         0.0002   
450 only                  1         0.0002   
480                       11        0.0019   
480 only                  11        0.0019   
500                       3         0.0005   
500 only                  3         0.0005   
540                       4         0.0007   
540 only                  4         0.0007   
600                       28678     4.8292   
600 only                  28547     4.8071   
660                       1         0.0002   
660 only                  1         0.0002   
700                       1         0.0002   
700 only                  1         0.0002   
720                       3         0.0005   
720 only                  3         0.0005   
840                       2         0.0003   
840 only                  2         0.0003   
900                       1532      0.258    
900 only                  1515      0.2551   
960                       3         0.0005   
960 only                  3         0.0005   
1000                      1         0.0002   
1000 only                 1         0.0002   
1200                      3512      0.5914   
1200 only                 3508      0.5907   
1210                      2         0.0003   
1210 only                 2         0.0003   
1320                      1         0.0002   
1320 only                 1         0.0002   
1380                      1         0.0002   
1380 only                 1         0.0002   
1440                      1         0.0002   
1440 only                 1         0.0002   
1500                      6         0.001    
1500 only                 5         0.0008   
1800                      751       0.1265   
1800 only                 734       0.1236   
1980                      2         0.0003   
1980 only                 2         0.0003   
2100                      2         0.0003   
2100 only                 1         0.0002   
2400                      10        0.0017   
2400 only                 10        0.0017   
2700                      11        0.0019   
2700 only                 11        0.0019   
3000                      42        0.0071   
3000 only                 42        0.0071   
3300                      1         0.0002   
3300 only                 1         0.0002   
3600                      1079      0.1817   
3600 only                 1070      0.1802   
3900                      1         0.0002   
3900 only                 1         0.0002   
4200                      1         0.0002   
4500                      1         0.0002   
4500 only                 1         0.0002   
5160                      1         0.0002   
5160 only                 1         0.0002   
5400                      19        0.0032   
5400 only                 6         0.001    
6000                      352       0.0593   
6000 only                 352       0.0593   
7200                      15154     2.5518   
7200 only                 15130     2.5478   
9000                      2         0.0003   
9000 only                 2         0.0003   
10800                     5334      0.8982   
10800 only                5324      0.8965   
14400                     116       0.0195   
14400 only                116       0.0195   
18000                     9         0.0015   
18000 only                9         0.0015   
21600                     4287      0.7219   
21600 only                4286      0.7217   
25200                     1         0.0002   
25200 only                1         0.0002   
28800                     2555      0.4302   
28800 only                2555      0.4302   
30000                     3         0.0005   
30000 only                1         0.0002   
36000                     1220      0.2054   
36000 only                1209      0.2036   
43200                     65        0.0109   
43200 only                65        0.0109   
54000                     1         0.0002   
54000 only                1         0.0002   
54647                     1         0.0002   
54660                     1         0.0002   
54674                     1         0.0002   
54690                     1         0.0002   
54703                     1         0.0002   
54722                     1         0.0002   
54737                     1         0.0002   
54751                     1         0.0002   
60000                     2         0.0003   
60000 only                2         0.0003   
64800                     70759     11.9153  
64800 only                70736     11.9114  
72000                     12        0.002    
72000 only                12        0.002    
79200                     1         0.0002   
79200 only                1         0.0002   
86400                     2990      0.5035   
86400 only                2984      0.5025   
100800                    9026      1.5199   
100800 only               9015      1.5181   
108000                    1         0.0002   
108000 only               1         0.0002   
115200                    1         0.0002   
115200 only               1         0.0002   
129600                    6         0.001    
129600 only               6         0.001    
172800                    47        0.0079   
172800 only               47        0.0079   
216000                    4         0.0007   
216000 only               3         0.0005   
259200                    2         0.0003   
259200 only               2         0.0003   
432000                    1         0.0002   
432000 only               1         0.0002   
604800                    1         0.0002   
604800 only               1         0.0002   
864000                    2         0.0003   
864000 only               2         0.0003   
7776000                   1         0.0002   
7776000 only              1         0.0002   
None                      150742    25.3838  
None only                 147105    24.7714  

Certificate sig alg     Count     Percent 
-------------------------+---------+--------
None                      10920     1.8388   
ecdsa-with-SHA256         68463     11.5286  
sha1WithRSAEncryption     21372     3.5989   
sha256WithRSAEncryption   521742    87.8574  
sha384WithRSAEncryption   8         0.0013   
sha512WithRSAEncryption   69        0.0116   

Certificate key size    Count     Percent 
-------------------------+---------+--------
ECDSA 256                 71108     11.974   
ECDSA 384                 38        0.0064   
ECDSA 521                 1         0.0002   
RSA 1024                  15        0.0025   
RSA 2048                  511834    86.189   
RSA 2049                  3         0.0005   
RSA 2056                  1         0.0002   
RSA 2058                  3         0.0005   
RSA 2059                  1         0.0002   
RSA 2080                  6         0.001    
RSA 2084                  2         0.0003   
RSA 2086                  1         0.0002   
RSA 2096                  3         0.0005   
RSA 2408                  1         0.0002   
RSA 2432                  3         0.0005   
RSA 2560                  1         0.0002   
RSA 2948                  1         0.0002   
RSA 3072                  163       0.0274   
RSA 3073                  1         0.0002   
RSA 3096                  2         0.0003   
RSA 3248                  3         0.0005   
RSA 4048                  4         0.0007   
RSA 4056                  18        0.003    
RSA 4069                  1         0.0002   
RSA 4086                  4         0.0007   
RSA 4092                  2         0.0003   
RSA 4094                  1         0.0002   
RSA 4095                  1         0.0002   
RSA 4096                  30991     5.2186   
RSA 4196                  1         0.0002   
RSA 8192                  10        0.0017   
RSA 8392                  1         0.0002   
RSA/ECDSA Dual Stack      20358     3.4281

OCSP stapling             Count     Percent 
-------------------------+---------+--------
Supported                 126688    21.3333  
Unsupported               467163    78.6667  

Supported Protocols       Count     Percent
-------------------------+---------+-------
SSL2                      17236     2.9024
SSL2 Only                 12        0.002
SSL3                      99629     16.7768
SSL3 Only                 497       0.0837
SSL3 or TLS1 Only         52946     8.9157
SSL3 or lower Only        505       0.085
TLS1                      582034    98.0101
TLS1 Only                 32797     5.5228
TLS1 or lower Only        68913     11.6044
TLS1.1                    515189    86.7539
TLS1.1 Only               42        0.0071
TLS1.1 or up Only         11134     1.8749
TLS1.2                    522729    88.0236
TLS1.2 Only               3290      0.554
TLS1.2, 1.0 but not 1.1   5865      0.9876





Statistics from 628845 chains provided by 728648 hosts

Server provided chains    Count     Percent
-------------------------+---------+-------
complete                  570337    78.2733
incomplete                21286     2.9213
untrusted                 137025    18.8054

Trusted chain statistics
========================

Chain length              Count     Percent
-------------------------+---------+-------
2                         1         0.0002
3                         625155    99.4132
4                         3676      0.5846
5                         13        0.0021

CA key size in chains     Count
-------------------------+---------
ECDSA 256                 68458     
ECDSA 384                 68457     
RSA 1024                  8         
RSA 2045                  2         
RSA 2048                  927971    
RSA 4096                  196495    

Chains with CA key        Count     Percent
-------------------------+---------+-------
ECDSA 256                 68458     10.8863
ECDSA 384                 68456     10.886
RSA 1024                  6         0.001
RSA 2045                  2         0.0003
RSA 2048                  559959    89.0456
RSA 4096                  195838    31.1425

Signature algorithm (ex. root) Count
------------------------------+---------
ecdsa-with-SHA384              68447     
sha1WithRSAEncryption          24541     
sha256WithRSAEncryption        363378    
sha384WithRSAEncryption        176120    
sha512WithRSAEncryption        60        

Eff. host cert chain LoS  Count     Percent
-------------------------+---------+-------
80                        24524     3.8998
112                       535845    85.211
128                       68476     10.8892

Most popular root CAs                         Count     Percent
---------------------------------------------+---------+-------
(d6325660) COMODO RSA Certification Authority 158376    25.1852
(2c543cd1) GeoTrust Global CA                 95542     15.1933
(eed8c118) COMODO ECC Certification Authority 68438     10.8831
(cbf06781) Go Daddy Root Certificate Authorit 49514     7.8738
(5ad8a5d6) GlobalSign Root CA                 48382     7.6938
(b204d74a) VeriSign Class 3 Public Primary Ce 32086     5.1024
(2e5ac55d) DST Root CA X3                     26043     4.1414
(244b5494) DigiCert High Assurance EV Root CA 20408     3.2453
(2e4eed3c) thawte Primary Root CA             19033     3.0267
(fc5a8f99) USERTrust RSA Certification Author 17598     2.7985
(653b494a) Baltimore CyberTrust Root          11671     1.8559
(3513523f) DigiCert Global Root CA            10585     1.6832
(ae8153b9) StartCom Certification Authority   9453      1.5032
(4bfab552) Starfield Root Certificate Authori 8502      1.352


Scan performed between 19th of June and 6th of July 2016

May 2016 scan results

No detailed analysis, sorry.

SSL/TLS survey of 588324 websites from Alexa's top 1 million
Stats only from connections that did provide valid certificates
(or anonymous DH from servers that do also have valid certificate installed)


Supported Ciphers         Count     Percent
-------------------------+---------+-------
3DES                      521557    88.6513
3DES Only                 618       0.105
3DES Preferred            1789      0.3041
3DES forced in TLS1.1+    964       0.1639
AES                       583623    99.201
AES Only                  42928     7.2967
AES-CBC                   583065    99.1061
AES-CBC Only              6504      1.1055
AES-GCM                   482505    82.0135
AES-GCM Only              514       0.0874
CAMELLIA                  258710    43.9741
CAMELLIA Only             3         0.0005
CHACHA20                  80738     13.7234
CHACHA20 Only             4         0.0007
Insecure                  56788     9.6525
RC4                       168525    28.6449
RC4 Only                  166       0.0282
RC4 Preferred             14971     2.5447
RC4 forced in TLS1.1+     8083      1.3739
x:FF 29 3DES Only         661       0.1124
x:FF 29 3DES Preferred    2145      0.3646
x:FF 29 RC4 Only          245       0.0416
x:FF 29 RC4 Preferred     16797     2.8551
x:FF 29 incompatible      506       0.086
x:FF 35 3DES Only         669       0.1137
x:FF 35 3DES Preferred    2073      0.3524
x:FF 35 RC4 Only          285       0.0484
x:FF 35 RC4 Preferred     16818     2.8586
x:FF 35 incompatible      510       0.0867
x:FF 44 3DES Only         4449      0.7562
x:FF 44 3DES Preferred    8286      1.4084
x:FF 44 incompatible      795       0.1351
y:DHE-RSA-SEED-SHA        79291     13.4774
y:IDEA-CBC-SHA            75311     12.8009
y:SEED-SHA                89316     15.1814
z:ADH-AES128-GCM-SHA256   414       0.0704
z:ADH-AES128-SHA          763       0.1297
z:ADH-AES128-SHA256       275       0.0467
z:ADH-AES256-GCM-SHA384   425       0.0722
z:ADH-AES256-SHA          792       0.1346
z:ADH-AES256-SHA256       275       0.0467
z:ADH-CAMELLIA128-SHA     406       0.069
z:ADH-CAMELLIA128-SHA256  1         0.0002
z:ADH-CAMELLIA256-SHA     423       0.0719
z:ADH-CAMELLIA256-SHA256  1         0.0002
z:ADH-DES-CBC-SHA         338       0.0575
z:ADH-DES-CBC3-SHA        773       0.1314
z:ADH-RC4-MD5             578       0.0982
z:ADH-SEED-SHA            332       0.0564
z:AECDH-AES128-SHA        10505     1.7856
z:AECDH-AES256-SHA        10564     1.7956
z:AECDH-DES-CBC3-SHA      10475     1.7805
z:AECDH-NULL-SHA          91        0.0155
z:AECDH-RC4-SHA           9925      1.687
z:DES-CBC-MD5             6864      1.1667
z:DES-CBC-SHA             35454     6.0263
z:DES-CBC3-MD5            17200     2.9236
z:ECDHE-RSA-NULL-SHA      98        0.0167
z:EDH-RSA-DES-CBC-SHA     30414     5.1696
z:EXP-ADH-DES-CBC-SHA     188       0.032
z:EXP-ADH-RC4-MD5         186       0.0316
z:EXP-DES-CBC-SHA         11293     1.9195
z:EXP-EDH-RSA-DES-CBC-SHA 8983      1.5269
z:EXP-RC2-CBC-MD5         13517     2.2975
z:EXP-RC4-MD5             14150     2.4051
z:EXP1024-DES-CBC-SHA     3580      0.6085
z:EXP1024-RC4-SHA         3641      0.6189
z:IDEA-CBC-MD5            1486      0.2526
z:NULL-MD5                239       0.0406
z:NULL-SHA                242       0.0411
z:NULL-SHA256             33        0.0056
z:RC2-CBC-MD5             7118      1.2099
z:RC4-64-MD5              762       0.1295

Cipher ordering           Count     Percent
-------------------------+---------+-------
Client side               151229    25.7051
Server side               437095    74.2949

Supported Handshakes      Count     Percent
-------------------------+---------+-------
ADH                       941       0.1599
AECDH                     10576     1.7976
DHE                       319231    54.2611
ECDH                      2         0.0003
ECDHE                     509684    86.6332
ECDHE and DHE             272378    46.2973
RSA                       505946    85.9979

Supported PFS             Count     Percent  PFS Percent
-------------------------+---------+--------+-----------
DH,1024bits               122627    20.8434  38.4132
DH,2048bits               183782    31.2382  57.5702
DH,2236bits               92        0.0156   0.0288
DH,2430bits               1         0.0002   0.0003
DH,2432bits               3         0.0005   0.0009
DH,2560bits               1         0.0002   0.0003
DH,3072bits               122       0.0207   0.0382
DH,3092bits               2         0.0003   0.0006
DH,3196bits               1         0.0002   0.0003
DH,4094bits               1         0.0002   0.0003
DH,4096bits               12216     2.0764   3.8267
DH,512bits                91        0.0155   0.0285
DH,6144bits               1         0.0002   0.0003
DH,768bits                384       0.0653   0.1203
DH,8192bits               9         0.0015   0.0028
ECDH,B-571,570bits        2788      0.4739   0.547
ECDH,K-163,163bits        1         0.0002   0.0002
ECDH,P-192,192bits        39        0.0066   0.0077
ECDH,P-224,224bits        92        0.0156   0.0181
ECDH,P-256,256bits        484945    82.4282  95.1462
ECDH,P-384,384bits        8059      1.3698   1.5812
ECDH,P-521,521bits        15676     2.6645   3.0756
ECDH,brainpoolP512r1,512bits 1         0.0002   0.0002
Prefer DH,1024bits        46364     7.8807   14.5237
Prefer DH,2048bits        5558      0.9447   1.7411
Prefer DH,3072bits        11        0.0019   0.0034
Prefer DH,4096bits        389       0.0661   0.1219
Prefer DH,768bits         45        0.0076   0.0141
Prefer ECDH,B-571,570bits 2562      0.4355   0.5027
Prefer ECDH,K-163,163bits 1         0.0002   0.0002
Prefer ECDH,P-192,192bits 1         0.0002   0.0002
Prefer ECDH,P-224,224bits 89        0.0151   0.0175
Prefer ECDH,P-256,256bits 446551    75.9022  87.6133
Prefer ECDH,P-384,384bits 6159      1.0469   1.2084
Prefer ECDH,P-521,521bits 14444     2.4551   2.8339
Prefer ECDH,brainpoolP512r1,512bits 1         0.0002   0.0002
Prefer PFS                522175    88.7564  0
Support PFS               556537    94.597   0

Supported ECC curves      Count     Percent 
-------------------------+---------+--------
brainpoolP256r1           15666     2.6628   
brainpoolP384r1           15673     2.664    
brainpoolP512r1           15677     2.6647   
prime192v1                1721      0.2925   
prime256v1                505771    85.9681  
prime256v1 Only           424806    72.2061  
secp160k1                 1634      0.2777   
secp160r1                 1641      0.2789   
secp160r2                 1633      0.2776   
secp192k1                 1647      0.2799   
secp224k1                 1732      0.2944   
secp224r1                 5585      0.9493   
secp256k1                 17871     3.0376   
secp384r1                 83624     14.2139  
secp384r1 Only            2663      0.4526   
secp521r1                 47374     8.0524   
secp521r1 Only            142       0.0241   
sect163k1                 1637      0.2782   
sect163r1                 1636      0.2781   
sect163r2                 1637      0.2782   
sect193r1                 1636      0.2781   
sect193r2                 1636      0.2781   
sect233k1                 1728      0.2937   
sect233r1                 1725      0.2932   
sect239k1                 1721      0.2925   
sect283k1                 17205     2.9244   
sect283r1                 17203     2.9241   
sect409k1                 17203     2.9241   
sect409r1                 17200     2.9236   
sect571k1                 17204     2.9242   
sect571r1                 17205     2.9244   

Unsupported curve fallback     Count     Percent 
------------------------------+---------+--------
False                          56188     9.5505   
True                           384116    65.2899  
order-specific                 30        0.0051   
unknown                        147990    25.1545  

ECC curve ordering        Count     Percent 
-------------------------+---------+--------
client                    12072     2.0519   
inconclusive-noecc        8         0.0014   
server                    496534    84.3981  
unknown                   79710     13.5487  

TLSv1.2 PFS supported sigalgs  Count     Percent 
------------------------------+---------+--------
ECDSA-SHA1                     53235     9.0486   
ECDSA-SHA1 Only                7         0.0012   
ECDSA-SHA224                   53208     9.044    
ECDSA-SHA256                   70734     12.023   
ECDSA-SHA384                   70725     12.0214  
ECDSA-SHA512                   70735     12.0231  
ECDSA-SHA512 Only              16        0.0027   
RSA-MD5                        32419     5.5104   
RSA-SHA1                       439804    74.7554  
RSA-SHA1 Only                  34182     5.8101   
RSA-SHA224                     364514    61.958   
RSA-SHA256                     414576    70.4673  
RSA-SHA256 Only                7888      1.3408   
RSA-SHA384                     377143    64.1046  
RSA-SHA384 Only                4         0.0007   
RSA-SHA512                     377071    64.0924  
RSA-SHA512 Only                85        0.0144   

TLSv1.2 PFS ordering           Count     Percent 
------------------------------+---------+--------
client                         276407    46.9821  
indeterminate                  52        0.0088   
intolerant                     6076      1.0328   
order-fallback                 9         0.0015   
server                         217108    36.9028  
unsupported                    15976     2.7155   

TLSv1.2 PFS sigalg fallback    Count     Percent 
------------------------------+---------+--------
ECDSA SHA1                     53190     9.0409   
ECDSA intolerant               134       0.0228   
ECDSA pfs-rsa-SHA512           17450     2.9661   
ECDSA soft-nopfs               9         0.0015   
RSA False                      32115     5.4587   
RSA SHA1                       374923    63.7273  
RSA intolerant                 41684     7.0852   
RSA pfs-ecdsa-SHA512           26        0.0044   
RSA soft-nopfs                 481       0.0818   

Renegotiation             Count     Percent 
-------------------------+---------+--------
False                     5021      0.8534   
insecure                  16740     2.8454   
secure                    566563    96.3012  

Compression               Count     Percent 
-------------------------+---------+--------
1 (zlib compression)      7345      1.2485   
False                     5021      0.8534   
NONE                      575958    97.8981  

TLS session ticket hint   Count     Percent 
-------------------------+---------+--------
1                         2         0.0003   
1 only                    2         0.0003   
2                         1         0.0002   
2 only                    1         0.0002   
5                         9         0.0015   
5 only                    9         0.0015   
10                        8         0.0014   
10 only                   8         0.0014   
15                        7         0.0012   
15 only                   7         0.0012   
30                        24        0.0041   
30 only                   24        0.0041   
60                        159       0.027    
60 only                   151       0.0257   
65                        2         0.0003   
65 only                   2         0.0003   
70                        8         0.0014   
70 only                   7         0.0012   
75                        1         0.0002   
75 only                   1         0.0002   
90                        1         0.0002   
90 only                   1         0.0002   
100                       15        0.0025   
100 only                  15        0.0025   
120                       24        0.0041   
120 only                  24        0.0041   
128                       6         0.001    
128 only                  5         0.0008   
150                       2         0.0003   
180                       72        0.0122   
180 only                  70        0.0119   
240                       13        0.0022   
240 only                  13        0.0022   
244                       2         0.0003   
244 only                  2         0.0003   
300                       294538    50.0639  
300 only                  291166    49.4908  
302                       2         0.0003   
302 only                  2         0.0003   
360                       3         0.0005   
360 only                  2         0.0003   
400                       4         0.0007   
400 only                  4         0.0007   
420                       133       0.0226   
420 only                  113       0.0192   
480                       11        0.0019   
480 only                  10        0.0017   
500                       3         0.0005   
500 only                  3         0.0005   
540                       4         0.0007   
540 only                  4         0.0007   
600                       28048     4.7674   
600 only                  27923     4.7462   
700                       3         0.0005   
700 only                  3         0.0005   
840                       2         0.0003   
840 only                  2         0.0003   
900                       1508      0.2563   
900 only                  1487      0.2528   
960                       4         0.0007   
960 only                  4         0.0007   
1000                      1         0.0002   
1000 only                 1         0.0002   
1200                      3403      0.5784   
1200 only                 3400      0.5779   
1210                      2         0.0003   
1210 only                 2         0.0003   
1320                      1         0.0002   
1320 only                 1         0.0002   
1380                      1         0.0002   
1380 only                 1         0.0002   
1440                      1         0.0002   
1440 only                 1         0.0002   
1500                      7         0.0012   
1500 only                 6         0.001    
1800                      698       0.1186   
1800 only                 680       0.1156   
1980                      2         0.0003   
1980 only                 2         0.0003   
2100                      2         0.0003   
2100 only                 1         0.0002   
2160                      1         0.0002   
2160 only                 1         0.0002   
2400                      9         0.0015   
2400 only                 9         0.0015   
2700                      10        0.0017   
2700 only                 10        0.0017   
3000                      38        0.0065   
3000 only                 38        0.0065   
3300                      1         0.0002   
3300 only                 1         0.0002   
3600                      1035      0.1759   
3600 only                 1024      0.1741   
3900                      2         0.0003   
3900 only                 2         0.0003   
4200                      1         0.0002   
4500                      1         0.0002   
4500 only                 1         0.0002   
5160                      1         0.0002   
5160 only                 1         0.0002   
5400                      22        0.0037   
5400 only                 6         0.001    
6000                      345       0.0586   
6000 only                 345       0.0586   
7200                      15012     2.5517   
7200 only                 14995     2.5488   
8100                      1         0.0002   
8100 only                 1         0.0002   
9000                      2         0.0003   
9000 only                 2         0.0003   
10800                     5061      0.8602   
10800 only                5045      0.8575   
14400                     106       0.018    
14400 only                106       0.018    
18000                     11        0.0019   
18000 only                11        0.0019   
21600                     4326      0.7353   
21600 only                4324      0.735    
25200                     1         0.0002   
25200 only                1         0.0002   
28800                     2688      0.4569   
28800 only                2688      0.4569   
30000                     3         0.0005   
30000 only                1         0.0002   
36000                     1246      0.2118   
36000 only                1240      0.2108   
43200                     61        0.0104   
43200 only                61        0.0104   
54000                     1         0.0002   
54000 only                1         0.0002   
60000                     2         0.0003   
60000 only                2         0.0003   
64800                     70216     11.9349  
64800 only                70188     11.9302  
72000                     12        0.002    
72000 only                12        0.002    
79200                     1         0.0002   
79200 only                1         0.0002   
86400                     2835      0.4819   
86400 only                2826      0.4803   
100800                    9392      1.5964   
100800 only               9375      1.5935   
108000                    1         0.0002   
108000 only               1         0.0002   
115200                    1         0.0002   
115200 only               1         0.0002   
129600                    7         0.0012   
129600 only               7         0.0012   
172800                    55        0.0093   
172800 only               55        0.0093   
216000                    4         0.0007   
216000 only               4         0.0007   
259200                    3         0.0005   
259200 only               3         0.0005   
432000                    1         0.0002   
432000 only               1         0.0002   
604800                    1         0.0002   
864000                    3         0.0005   
864000 only               3         0.0005   
7776000                   1         0.0002   
7776000 only              1         0.0002   
None                      150759    25.6252  
None only                 147078    24.9995  

Certificate sig alg     Count     Percent 
-------------------------+---------+--------
None                      11191     1.9022   
ecdsa-with-SHA256         67977     11.5543  
sha1WithRSAEncryption     23775     4.0411   
sha256WithRSAEncryption   514022    87.3706  
sha384WithRSAEncryption   8         0.0014   
sha512WithRSAEncryption   67        0.0114   

Certificate key size    Count     Percent 
-------------------------+---------+--------
ECDSA 256                 70749     12.0255  
ECDSA 384                 34        0.0058   
ECDSA 521                 1         0.0002   
RSA 1024                  17        0.0029   
RSA 2048                  507589    86.2771  
RSA 2049                  2         0.0003   
RSA 2056                  1         0.0002   
RSA 2058                  3         0.0005   
RSA 2059                  1         0.0002   
RSA 2084                  1         0.0002   
RSA 2086                  1         0.0002   
RSA 2096                  3         0.0005   
RSA 2408                  1         0.0002   
RSA 2432                  2         0.0003   
RSA 2560                  1         0.0002   
RSA 2948                  1         0.0002   
RSA 3072                  156       0.0265   
RSA 3073                  1         0.0002   
RSA 3096                  2         0.0003   
RSA 3248                  2         0.0003   
RSA 4048                  4         0.0007   
RSA 4056                  16        0.0027   
RSA 4069                  1         0.0002   
RSA 4086                  3         0.0005   
RSA 4092                  2         0.0003   
RSA 4094                  1         0.0002   
RSA 4095                  1         0.0002   
RSA 4096                  29945     5.0899   
RSA 4196                  1         0.0002   
RSA 8192                  11        0.0019   
RSA 8392                  1         0.0002   
RSA/ECDSA Dual Stack      20215     3.436

OCSP stapling             Count     Percent 
-------------------------+---------+--------
Supported                 127611    21.6906  
Unsupported               460713    78.3094  

Supported Protocols       Count     Percent
-------------------------+---------+-------
SSL2                      17372     2.9528
SSL2 Only                 13        0.0022
SSL3                      102349    17.3967
SSL3 Only                 1020      0.1734
SSL3 or TLS1 Only         54445     9.2543
SSL3 or lower Only        1028      0.1747
TLS1                      576797    98.0407
TLS1 Only                 33030     5.6143
TLS1 or lower Only        70001     11.8984
TLS1.1                    507108    86.1954
TLS1.1 Only               42        0.0071
TLS1.1 or up Only         10330     1.7558
TLS1.2                    515617    87.6417
TLS1.2 Only               3098      0.5266
TLS1.2, 1.0 but not 1.1   7000      1.1898



Statistics from 622291 chains provided by 724741 hosts

Server provided chains    Count     Percent
-------------------------+---------+-------
complete                  563959    77.8152
incomplete                21088     2.9097
untrusted                 139694    19.275

Trusted chain statistics
========================

Chain length              Count     Percent
-------------------------+---------+-------
2                         2         0.0003
3                         618971    99.4665
4                         3305      0.5311
5                         13        0.0021

CA key size in chains     Count
-------------------------+---------
ECDSA 256                 67969     
ECDSA 384                 67967     
RSA 1024                  10        
RSA 2045                  2         
RSA 2048                  918447    
RSA 4096                  193516    

Chains with CA key        Count     Percent
-------------------------+---------+-------
ECDSA 256                 67969     10.9224
ECDSA 384                 67967     10.9221
RSA 1024                  8         0.0013
RSA 2045                  2         0.0003
RSA 2048                  553908    89.0111
RSA 4096                  192863    30.9924

Signature algorithm (ex. root) Count
------------------------------+---------
ecdsa-with-SHA384              67958     
sha1WithRSAEncryption          27126     
sha256WithRSAEncryption        356410    
sha384WithRSAEncryption        174062    
sha512WithRSAEncryption        64        

Eff. host cert chain LoS  Count     Percent
-------------------------+---------+-------
80                        27123     4.3586
112                       527185    84.7168
128                       67983     10.9246

Most common root CAs                          Count     Percent
---------------------------------------------+---------+-------
(d6325660) COMODO RSA Certification Authority 156327    25.1212
(2c543cd1) GeoTrust Global CA                 97389     15.6501
(eed8c118) COMODO ECC Certification Authority 67950     10.9193
(5ad8a5d6) GlobalSign Root CA                 54936     8.828
(cbf06781) Go Daddy Root Certificate Authorit 48751     7.8341
(b204d74a) VeriSign Class 3 Public Primary Ce 32016     5.1449
(244b5494) DigiCert High Assurance EV Root CA 19865     3.1922
(2e4eed3c) thawte Primary Root CA             18906     3.0381
(fc5a8f99) USERTrust RSA Certification Author 17597     2.8278
(2e5ac55d) DST Root CA X3                     17594     2.8273
(653b494a) Baltimore CyberTrust Root          11729     1.8848
(3513523f) DigiCert Global Root CA            10305     1.656
(ae8153b9) StartCom Certification Authority   9737      1.5647
(4bfab552) Starfield Root Certificate Authori 8211      1.3195


Scan performed between 30th of May and 18th of June 2016

April 2016 scan results

Again, no analysis, just raw statistics, sorry.

SSL/TLS survey of 554044 websites from Alexa's top 1 million
Stats only from connections that did provide valid certificates
(or anonymous DH from servers that do also have valid certificate installed)


Supported Ciphers         Count     Percent
-------------------------+---------+-------
3DES                      488020    88.0833
3DES Only                 590       0.1065
3DES Preferred            1772      0.3198
3DES forced in TLS1.1+    936       0.1689
AES                       549187    99.1234
AES Only                  42441     7.6602
AES-CBC                   548762    99.0466
AES-CBC Only              8334      1.5042
AES-GCM                   448629    80.9735
AES-GCM Only              378       0.0682
CAMELLIA                  241430    43.576
CAMELLIA Only             1         0.0002
CHACHA20                  75592     13.6437
Insecure                  54139     9.7716
RC4                       160923    29.0452
RC4 Only                  183       0.033
RC4 Preferred             15628     2.8207
RC4 forced in TLS1.1+     8360      1.5089
x:FF 29 3DES Only         639       0.1153
x:FF 29 3DES Preferred    2130      0.3844
x:FF 29 RC4 Only          254       0.0458
x:FF 29 RC4 Preferred     17323     3.1266
x:FF 29 incompatible      272       0.0491
x:FF 35 3DES Only         645       0.1164
x:FF 35 3DES Preferred    2044      0.3689
x:FF 35 RC4 Only          301       0.0543
x:FF 35 RC4 Preferred     17346     3.1308
x:FF 35 incompatible      276       0.0498
x:FF 44 3DES Only         4576      0.8259
x:FF 44 3DES Preferred    8336      1.5046
x:FF 44 incompatible      577       0.1041
y:DHE-RSA-SEED-SHA        71951     12.9865
y:IDEA-CBC-SHA            67468     12.1774
y:SEED-SHA                82250     14.8454
z:ADH-AES128-GCM-SHA256   401       0.0724
z:ADH-AES128-SHA          730       0.1318
z:ADH-AES128-SHA256       275       0.0496
z:ADH-AES256-GCM-SHA384   411       0.0742
z:ADH-AES256-SHA          748       0.135
z:ADH-AES256-SHA256       274       0.0495
z:ADH-CAMELLIA128-SHA     390       0.0704
z:ADH-CAMELLIA256-SHA     400       0.0722
z:ADH-DES-CBC-SHA         321       0.0579
z:ADH-DES-CBC3-SHA        738       0.1332
z:ADH-RC4-MD5             539       0.0973
z:ADH-SEED-SHA            312       0.0563
z:AECDH-AES128-SHA        9716      1.7537
z:AECDH-AES256-SHA        9763      1.7621
z:AECDH-DES-CBC3-SHA      9685      1.7481
z:AECDH-NULL-SHA          85        0.0153
z:AECDH-RC4-SHA           9132      1.6482
z:DES-CBC-MD5             7224      1.3039
z:DES-CBC-SHA             33578     6.0605
z:DES-CBC3-MD5            17444     3.1485
z:ECDHE-RSA-NULL-SHA      95        0.0171
z:EDH-RSA-DES-CBC-SHA     28962     5.2274
z:EXP-ADH-DES-CBC-SHA     173       0.0312
z:EXP-ADH-RC4-MD5         171       0.0309
z:EXP-DES-CBC-SHA         11121     2.0072
z:EXP-EDH-RSA-DES-CBC-SHA 8776      1.584
z:EXP-RC2-CBC-MD5         13375     2.4141
z:EXP-RC4-MD5             14006     2.528
z:EXP1024-DES-CBC-SHA     3639      0.6568
z:EXP1024-RC4-SHA         3688      0.6657
z:IDEA-CBC-MD5            1523      0.2749
z:NULL-MD5                214       0.0386
z:NULL-SHA                218       0.0393
z:NULL-SHA256             32        0.0058
z:RC2-CBC-MD5             7396      1.3349
z:RC4-64-MD5              767       0.1384

Cipher ordering           Count     Percent
-------------------------+---------+-------
Client side               134999    24.3661
Server side               419045    75.6339

Supported Handshakes      Count     Percent
-------------------------+---------+-------
ADH                       885       0.1597
AECDH                     9773      1.7639
DHE                       298929    53.954
ECDH                      2         0.0004
ECDHE                     476485    86.0013
ECDHE and DHE             253657    45.7828
RSA                       475653    85.8511

Supported PFS             Count     Percent  PFS Percent
-------------------------+---------+--------+-----------
DH,1024bits               116515    21.0299  38.9775
DH,1536bits               1         0.0002   0.0003
DH,2048bits               170990    30.8622  57.2009
DH,2236bits               69        0.0125   0.0231
DH,2432bits               3         0.0005   0.001
DH,2560bits               1         0.0002   0.0003
DH,3072bits               111       0.02     0.0371
DH,3092bits               1         0.0002   0.0003
DH,4094bits               1         0.0002   0.0003
DH,4096bits               10885     1.9646   3.6413
DH,4098bits               1         0.0002   0.0003
DH,512bits                64        0.0116   0.0214
DH,6144bits               1         0.0002   0.0003
DH,768bits                377       0.068    0.1261
DH,8192bits               9         0.0016   0.003
ECDH,B-571,570bits        2314      0.4177   0.4856
ECDH,K-163,163bits        1         0.0002   0.0002
ECDH,P-192,192bits        23        0.0042   0.0048
ECDH,P-224,224bits        84        0.0152   0.0176
ECDH,P-256,256bits        456709    82.4319  95.8496
ECDH,P-384,384bits        5908      1.0663   1.2399
ECDH,P-521,521bits        13327     2.4054   2.7969
Prefer DH,1024bits        43925     7.9281   14.6941
Prefer DH,1536bits        1         0.0002   0.0003
Prefer DH,2048bits        5768      1.0411   1.9296
Prefer DH,3072bits        6         0.0011   0.002
Prefer DH,4096bits        423       0.0763   0.1415
Prefer DH,768bits         54        0.0097   0.0181
Prefer ECDH,B-571,570bits 2090      0.3772   0.4386
Prefer ECDH,K-163,163bits 1         0.0002   0.0002
Prefer ECDH,P-224,224bits 81        0.0146   0.017
Prefer ECDH,P-256,256bits 419866    75.7821  88.1174
Prefer ECDH,P-384,384bits 4218      0.7613   0.8852
Prefer ECDH,P-521,521bits 12182     2.1987   2.5566
Prefer PFS                488615    88.1906  0
Support PFS               521757    94.1725  0

Supported ECC curves      Count     Percent 
-------------------------+---------+--------
brainpoolP256r1           7632      1.3775   
brainpoolP384r1           7634      1.3779   
brainpoolP512r1           7637      1.3784   
prime192v1                1557      0.281    
prime256v1                473202    85.4087  
prime256v1 Only           404241    72.9619  
secp160k1                 1490      0.2689   
secp160r1                 1497      0.2702   
secp160r2                 1488      0.2686   
secp192k1                 1502      0.2711   
secp224k1                 1576      0.2845   
secp224r1                 4971      0.8972   
secp256k1                 10618     1.9165   
secp384r1                 70010     12.6362  
secp384r1 Only            1082      0.1953   
secp521r1                 36615     6.6087   
secp521r1 Only            140       0.0253   
sect163k1                 1492      0.2693   
sect163k1 Only            1         0.0002   
sect163r1                 1490      0.2689   
sect163r2                 1490      0.2689   
sect193r1                 1490      0.2689   
sect193r2                 1489      0.2688   
sect233k1                 1566      0.2826   
sect233r1                 1566      0.2826   
sect239k1                 1565      0.2825   
sect283k1                 9047      1.6329   
sect283k1 Only            1         0.0002   
sect283r1                 9044      1.6324   
sect409k1                 9041      1.6318   
sect409r1                 9038      1.6313   
sect571k1                 9044      1.6324   
sect571r1                 9045      1.6325   

Unsupported curve fallback     Count     Percent 
------------------------------+---------+--------
False                          46285     8.354    
True                           365389    65.9495  
order-specific                 61        0.011    
unknown                        142309    25.6855  

ECC curve ordering        Count     Percent 
-------------------------+---------+--------
client                    9132      1.6482   
inconclusive-noecc        4         0.0007   
server                    465324    83.9868  
unknown                   79584     14.3642  

TLSv1.2 PFS supported sigalgs  Count     Percent 
------------------------------+---------+--------
ECDSA-SHA1                     50518     9.118    
ECDSA-SHA1 Only                3         0.0005   
ECDSA-SHA224                   50534     9.1209   
ECDSA-SHA256                   66231     11.9541  
ECDSA-SHA384                   66277     11.9624  
ECDSA-SHA512                   66334     11.9727  
ECDSA-SHA512 Only              61        0.011    
RSA-MD5                        41528     7.4954   
RSA-SHA1                       408670    73.7613  
RSA-SHA1 Only                  36069     6.5101   
RSA-SHA224                     340011    61.369   
RSA-SHA256                     380914    68.7516  
RSA-SHA256 Only                7319      1.321    
RSA-SHA384                     345799    62.4136  
RSA-SHA384 Only                4         0.0007   
RSA-SHA512                     345776    62.4095  
RSA-SHA512 Only                118       0.0213   

TLSv1.2 PFS ordering           Count     Percent 
------------------------------+---------+--------
client                         255972    46.2007  
indeterminate                  42        0.0076   
intolerant                     5716      1.0317   
order-fallback                 9         0.0016   
server                         203222    36.6798  
unsupported                    17516     3.1615   

TLSv1.2 PFS sigalg fallback    Count     Percent 
------------------------------+---------+--------
ECDSA SHA1                     50464     9.1083   
ECDSA intolerant               381       0.0688   
ECDSA pfs-rsa-SHA512           15610     2.8175   
ECDSA soft-nopfs               2         0.0004   
RSA False                      41178     7.4323   
RSA SHA1                       336118    60.6663  
RSA intolerant                 40148     7.2464   
RSA pfs-ecdsa-SHA512           45        0.0081   
RSA soft-nopfs                 512       0.0924   

Renegotiation             Count     Percent 
-------------------------+---------+--------
False                     5199      0.9384   
insecure                  15950     2.8788   
secure                    532895    96.1828  

Compression               Count     Percent 
-------------------------+---------+--------
1 (zlib compression)      7539      1.3607   
False                     5199      0.9384   
NONE                      541306    97.7009  

TLS session ticket hint   Count     Percent 
-------------------------+---------+--------
1                         4         0.0007   
1 only                    4         0.0007   
2                         2         0.0004   
2 only                    2         0.0004   
5                         8         0.0014   
5 only                    8         0.0014   
10                        8         0.0014   
10 only                   8         0.0014   
15                        6         0.0011   
15 only                   6         0.0011   
30                        19        0.0034   
30 only                   18        0.0032   
60                        167       0.0301   
60 only                   164       0.0296   
65                        2         0.0004   
65 only                   2         0.0004   
70                        6         0.0011   
70 only                   4         0.0007   
75                        1         0.0002   
75 only                   1         0.0002   
100                       16        0.0029   
100 only                  16        0.0029   
120                       28        0.0051   
120 only                  28        0.0051   
128                       3         0.0005   
128 only                  3         0.0005   
150                       2         0.0004   
180                       66        0.0119   
180 only                  64        0.0116   
240                       11        0.002    
240 only                  11        0.002    
244                       2         0.0004   
244 only                  2         0.0004   
300                       272999    49.2739  
300 only                  269600    48.6604  
302                       3         0.0005   
302 only                  3         0.0005   
360                       3         0.0005   
360 only                  2         0.0004   
400                       5         0.0009   
400 only                  5         0.0009   
420                       122       0.022    
420 only                  105       0.019    
480                       10        0.0018   
480 only                  10        0.0018   
500                       4         0.0007   
500 only                  4         0.0007   
540                       3         0.0005   
540 only                  3         0.0005   
600                       28373     5.1211   
600 only                  28233     5.0958   
660                       1         0.0002   
660 only                  1         0.0002   
700                       3         0.0005   
700 only                  3         0.0005   
840                       2         0.0004   
840 only                  2         0.0004   
900                       1388      0.2505   
900 only                  1366      0.2466   
960                       2         0.0004   
960 only                  2         0.0004   
1000                      1         0.0002   
1000 only                 1         0.0002   
1200                      2912      0.5256   
1200 only                 2907      0.5247   
1210                      2         0.0004   
1210 only                 2         0.0004   
1320                      1         0.0002   
1320 only                 1         0.0002   
1380                      1         0.0002   
1380 only                 1         0.0002   
1440                      1         0.0002   
1440 only                 1         0.0002   
1500                      6         0.0011   
1500 only                 5         0.0009   
1800                      579       0.1045   
1800 only                 568       0.1025   
1980                      2         0.0004   
1980 only                 2         0.0004   
2100                      2         0.0004   
2100 only                 1         0.0002   
2160                      1         0.0002   
2160 only                 1         0.0002   
2400                      8         0.0014   
2400 only                 8         0.0014   
2700                      9         0.0016   
2700 only                 9         0.0016   
3000                      25        0.0045   
3000 only                 25        0.0045   
3300                      1         0.0002   
3300 only                 1         0.0002   
3600                      865       0.1561   
3600 only                 850       0.1534   
3900                      1         0.0002   
3900 only                 1         0.0002   
4200                      1         0.0002   
5160                      1         0.0002   
5160 only                 1         0.0002   
5400                      15        0.0027   
5400 only                 9         0.0016   
5940                      1         0.0002   
5940 only                 1         0.0002   
6000                      297       0.0536   
6000 only                 297       0.0536   
7200                      15195     2.7426   
7200 only                 15175     2.739    
7500                      1         0.0002   
7500 only                 1         0.0002   
10800                     4136      0.7465   
10800 only                4122      0.744    
14400                     95        0.0171   
14400 only                95        0.0171   
18000                     10        0.0018   
18000 only                10        0.0018   
21600                     4179      0.7543   
21600 only                4179      0.7543   
25200                     1         0.0002   
25200 only                1         0.0002   
28800                     3321      0.5994   
28800 only                3321      0.5994   
30000                     1         0.0002   
30000 only                1         0.0002   
36000                     1080      0.1949   
36000 only                1071      0.1933   
38854                     1         0.0002   
38866                     1         0.0002   
38879                     1         0.0002   
38893                     1         0.0002   
38908                     1         0.0002   
38925                     1         0.0002   
38940                     1         0.0002   
38953                     1         0.0002   
43200                     55        0.0099   
43200 only                55        0.0099   
60000                     2         0.0004   
60000 only                2         0.0004   
64800                     65043     11.7397  
64800 only                65041     11.7393  
72000                     9         0.0016   
72000 only                9         0.0016   
79200                     1         0.0002   
79200 only                1         0.0002   
86400                     2805      0.5063   
86400 only                2801      0.5056   
100800                    9140      1.6497   
100800 only               9137      1.6491   
108000                    1         0.0002   
108000 only               1         0.0002   
115200                    1         0.0002   
115200 only               1         0.0002   
129600                    6         0.0011   
129600 only               6         0.0011   
172800                    49        0.0088   
172800 only               49        0.0088   
216000                    4         0.0007   
216000 only               4         0.0007   
432000                    1         0.0002   
432000 only               1         0.0002   
604800                    2         0.0004   
864000                    2         0.0004   
864000 only               2         0.0004   
7776000                   2         0.0004   
7776000 only              2         0.0004   
None                      144581    26.0956  
None only                 140902    25.4316  

Certificate sig alg     Count     Percent 
-------------------------+---------+--------
None                      10359     1.8697   
ecdsa-with-SHA256         63100     11.389   
sha1WithRSAEncryption     29544     5.3324   
sha256WithRSAEncryption   477256    86.1405  
sha384WithRSAEncryption   5         0.0009   
sha512WithRSAEncryption   60        0.0108   

Certificate key size    Count     Percent 
-------------------------+---------+--------
ECDSA 256                 66442     11.9922  
ECDSA 384                 21        0.0038   
ECDSA 521                 1         0.0002   
RSA 1024                  21        0.0038   
RSA 2048                  479886    86.6151  
RSA 2049                  2         0.0004   
RSA 2056                  3         0.0005   
RSA 2058                  3         0.0005   
RSA 2084                  3         0.0005   
RSA 2086                  1         0.0002   
RSA 2096                  2         0.0004   
RSA 2432                  2         0.0004   
RSA 3072                  150       0.0271   
RSA 3073                  1         0.0002   
RSA 3076                  3         0.0005   
RSA 3096                  2         0.0004   
RSA 3248                  3         0.0005   
RSA 4048                  3         0.0005   
RSA 4056                  15        0.0027   
RSA 4069                  1         0.0002   
RSA 4086                  4         0.0007   
RSA 4092                  2         0.0004   
RSA 4094                  1         0.0002   
RSA 4095                  1         0.0002   
RSA 4096                  26364     4.7585   
RSA 4196                  1         0.0002   
RSA 8192                  9         0.0016   
RSA 8392                  1         0.0002   
RSA/ECDSA Dual Stack      18891     3.4097

OCSP stapling             Count     Percent 
-------------------------+---------+--------
Supported                 128586    23.2086  
Unsupported               425458    76.7914  

Supported Protocols       Count     Percent
-------------------------+---------+-------
SSL2                      17623     3.1808
SSL2 Only                 17        0.0031
SSL3                      98238     17.7311
SSL3 Only                 1159      0.2092
SSL3 or TLS1 Only         52628     9.4989
SSL3 or lower Only        1168      0.2108
TLS1                      543101    98.0249
TLS1 Only                 32939     5.9452
TLS1 or lower Only        68307     12.3288
TLS1.1                    473247    85.4169
TLS1.1 Only               208       0.0375
TLS1.1 or up Only         9606      1.7338
TLS1.2                    482460    87.0797
TLS1.2 Only               2594      0.4682
TLS1.2, 1.0 but not 1.1   8635      1.5585


Statistics from 589898 chains provided by 709652 hosts

Server provided chains    Count     Percent
-------------------------+---------+-------
complete                  529449    74.6068
incomplete                22333     3.147
untrusted                 157870    22.2461

Trusted chain statistics
========================

Chain length              Count     Percent
-------------------------+---------+-------
2                         8         0.0014
3                         587212    99.5447
4                         2665      0.4518
5                         13        0.0022

CA key size in chains     Count
-------------------------+---------
ECDSA 256                 63091     
ECDSA 384                 63090     
RSA 1024                  21        
RSA 2045                  2         
RSA 2048                  881842    
RSA 4096                  174433    

Chains with CA key        Count     Percent
-------------------------+---------+-------
ECDSA 256                 63091     10.6952
ECDSA 384                 63090     10.6951
RSA 1024                  19        0.0032
RSA 2045                  2         0.0003
RSA 2048                  526385    89.2332
RSA 4096                  173801    29.4629

Signature algorithm (ex. root) Count
------------------------------+---------
ecdsa-with-SHA384              63084     
sha1WithRSAEncryption          33756     
sha256WithRSAEncryption        339826    
sha384WithRSAEncryption        155860    
sha512WithRSAEncryption        55        

Eff. host cert chain LoS  Count     Percent
-------------------------+---------+-------
80                        33778     5.7261
112                       493007    83.575
128                       63113     10.699

Root CAs                                      Count     Percent
---------------------------------------------+---------+-------
(d6325660) COMODO RSA Certification Authority 138204    23.4285
(2c543cd1) GeoTrust Global CA                 95310     16.157
(eed8c118) COMODO ECC Certification Authority 63077     10.6929
(5ad8a5d6) GlobalSign Root CA                 56226     9.5315
(cbf06781) Go Daddy Root Certificate Authorit 49413     8.3765
(b204d74a) VeriSign Class 3 Public Primary Ce 30520     5.1738
(244b5494) DigiCert High Assurance EV Root CA 19387     3.2865
(2e4eed3c) thawte Primary Root CA             18858     3.1968
(653b494a) Baltimore CyberTrust Root          12557     2.1287
(2e5ac55d) DST Root CA X3                     12525     2.1232
(fc5a8f99) USERTrust RSA Certification Author 17514     2.969
(ae8153b9) StartCom Certification Authority   9654      1.6366
(3513523f) DigiCert Global Root CA            9633      1.633
(4bfab552) Starfield Root Certificate Authori 8780      1.4884


Scan performed between 18th of April and 1st of May 2016

March 2016 scan results

Haven’t had much time to process the results, at the same time, not much has changed (just continuation of established trends).

SSL/TLS survey of 551637 websites from Alexa's top 1 million
Stats only from connections that did provide valid certificates
(or anonymous DH from servers that do also have valid certificate installed)


Supported Ciphers         Count     Percent
-------------------------+---------+-------
3DES                      484308    87.7947
3DES Only                 592       0.1073
3DES Preferred            1803      0.3268
3DES forced in TLS1.1+    945       0.1713
AES                       546565    99.0806
AES Only                  43629     7.909
AES-CBC                   546039    98.9852
AES-CBC Only              8757      1.5875
AES-GCM                   442034    80.1313
AES-GCM Only              490       0.0888
CAMELLIA                  235037    42.6072
CAMELLIA Only             3         0.0005
CHACHA20                  74906     13.5789
CHACHA20 Only             1         0.0002
Insecure                  53675     9.7301
RC4                       165105    29.93
RC4 Only                  189       0.0343
RC4 Preferred             16635     3.0156
RC4 forced in TLS1.1+     8955      1.6234
x:FF 29 3DES Only         637       0.1155
x:FF 29 3DES Preferred    2172      0.3937
x:FF 29 RC4 Only          263       0.0477
x:FF 29 RC4 Preferred     18392     3.3341
x:FF 29 incompatible      389       0.0705
x:FF 35 3DES Only         644       0.1167
x:FF 35 3DES Preferred    2079      0.3769
x:FF 35 RC4 Only          313       0.0567
x:FF 35 RC4 Preferred     18423     3.3397
x:FF 35 incompatible      393       0.0712
x:FF 44 3DES Only         4780      0.8665
x:FF 44 3DES Preferred    8693      1.5759
x:FF 44 incompatible      706       0.128
y:DHE-RSA-SEED-SHA        69733     12.6411
y:IDEA-CBC-SHA            66812     12.1116
y:SEED-SHA                80215     14.5413
z:ADH-AES128-GCM-SHA256   415       0.0752
z:ADH-AES128-SHA          692       0.1254
z:ADH-AES128-SHA256       283       0.0513
z:ADH-AES256-GCM-SHA384   428       0.0776
z:ADH-AES256-SHA          704       0.1276
z:ADH-AES256-SHA256       283       0.0513
z:ADH-CAMELLIA128-SHA     365       0.0662
z:ADH-CAMELLIA256-SHA     368       0.0667
z:ADH-DES-CBC-SHA         279       0.0506
z:ADH-DES-CBC3-SHA        707       0.1282
z:ADH-RC4-MD5             522       0.0946
z:ADH-SEED-SHA            294       0.0533
z:AECDH-AES128-SHA        8357      1.5149
z:AECDH-AES256-SHA        8387      1.5204
z:AECDH-DES-CBC3-SHA      8323      1.5088
z:AECDH-NULL-SHA          56        0.0102
z:AECDH-RC4-SHA           7767      1.408
z:DES-CBC-MD5             7631      1.3833
z:DES-CBC-SHA             34001     6.1637
z:DES-CBC3-MD5            18130     3.2866
z:ECDHE-RSA-NULL-SHA      63        0.0114
z:EDH-RSA-DES-CBC-SHA     28894     5.2379
z:EXP-ADH-DES-CBC-SHA     182       0.033
z:EXP-ADH-RC4-MD5         181       0.0328
z:EXP-DES-CBC-SHA         11397     2.066
z:EXP-EDH-RSA-DES-CBC-SHA 8988      1.6293
z:EXP-RC2-CBC-MD5         13770     2.4962
z:EXP-RC4-MD5             14407     2.6117
z:EXP1024-DES-CBC-SHA     3787      0.6865
z:EXP1024-RC4-SHA         3834      0.695
z:IDEA-CBC-MD5            1577      0.2859
z:NULL-MD5                182       0.033
z:NULL-SHA                189       0.0343
z:NULL-SHA256             43        0.0078
z:RC2-CBC-MD5             7791      1.4123
z:RC4-64-MD5              776       0.1407

Cipher ordering           Count     Percent
-------------------------+---------+-------
Client side               133547    24.2092
Server side               418090    75.7908

Supported Handshakes      Count     Percent
-------------------------+---------+-------
ADH                       857       0.1554
AECDH                     8405      1.5236
DHE                       295868    53.6345
ECDH                      2         0.0004
ECDHE                     469045    85.0278
ECDHE and DHE             247197    44.8115
RSA                       474406    85.9997

Supported PFS             Count     Percent  PFS Percent
-------------------------+---------+--------+-----------
DH,1024bits               118316    21.4482  39.9895
DH,1536bits               1         0.0002   0.0003
DH,2048bits               166870    30.25    56.4002
DH,2236bits               65        0.0118   0.022
DH,2432bits               3         0.0005   0.001
DH,3072bits               115       0.0208   0.0389
DH,3092bits               1         0.0002   0.0003
DH,4046bits               1         0.0002   0.0003
DH,4094bits               1         0.0002   0.0003
DH,4096bits               10250     1.8581   3.4644
DH,512bits                57        0.0103   0.0193
DH,768bits                352       0.0638   0.119
DH,8192bits               10        0.0018   0.0034
ECDH,B-571,570bits        2139      0.3878   0.456
ECDH,K-163,163bits        1         0.0002   0.0002
ECDH,P-192,192bits        20        0.0036   0.0043
ECDH,P-224,224bits        90        0.0163   0.0192
ECDH,P-256,256bits        450911    81.7405  96.1338
ECDH,P-384,384bits        5288      0.9586   1.1274
ECDH,P-521,521bits        12472     2.2609   2.659
Prefer DH,1024bits        46513     8.4318   15.7209
Prefer DH,1536bits        1         0.0002   0.0003
Prefer DH,2048bits        5993      1.0864   2.0256
Prefer DH,3072bits        10        0.0018   0.0034
Prefer DH,4096bits        386       0.07     0.1305
Prefer DH,768bits         37        0.0067   0.0125
Prefer ECDH,B-571,570bits 1925      0.349    0.4104
Prefer ECDH,K-163,163bits 1         0.0002   0.0002
Prefer ECDH,P-224,224bits 87        0.0158   0.0185
Prefer ECDH,P-256,256bits 414883    75.2094  88.4527
Prefer ECDH,P-384,384bits 3903      0.7075   0.8321
Prefer ECDH,P-521,521bits 11412     2.0688   2.433
Prefer PFS                485151    87.9475  0
Support PFS               517716    93.8508  0

Supported ECC curves      Count     Percent 
-------------------------+---------+--------
brainpoolP256r1           7010      1.2708   
brainpoolP384r1           7016      1.2719   
brainpoolP512r1           7016      1.2719   
prime192v1                1542      0.2795   
prime192v1 Only           1         0.0002   
prime256v1                465478    84.3812  
prime256v1 Only           399795    72.4743  
secp160k1                 1479      0.2681   
secp160r1                 1485      0.2692   
secp160r2                 1478      0.2679   
secp192k1                 1492      0.2705   
secp224k1                 1571      0.2848   
secp224r1                 4963      0.8997   
secp256k1                 8958      1.6239   
secp384r1                 66416     12.0398  
secp384r1 Only            776       0.1407   
secp521r1                 33828     6.1323   
secp521r1 Only            143       0.0259   
sect163k1                 1480      0.2683   
sect163k1 Only            2         0.0004   
sect163r1                 1478      0.2679   
sect163r2                 1478      0.2679   
sect193r1                 1478      0.2679   
sect193r2                 1478      0.2679   
sect233k1                 1563      0.2833   
sect233r1                 1563      0.2833   
sect239k1                 1563      0.2833   
sect283k1                 8428      1.5278   
sect283r1                 8425      1.5273   
sect409k1                 8431      1.5284   
sect409r1                 8429      1.528    
sect571k1                 8434      1.5289   
sect571r1                 8434      1.5289   

Unsupported curve fallback     Count     Percent 
------------------------------+---------+--------
False                          48103     8.72     
True                           357854    64.8713  
order-specific                 74        0.0134   
unknown                        145606    26.3953  

ECC curve ordering        Count     Percent 
-------------------------+---------+--------
client                    8089      1.4664   
inconclusive-noecc        7         0.0013   
server                    458334    83.0862  
unknown                   85207     15.4462  

TLSv1.2 PFS supported sigalgs  Count     Percent 
------------------------------+---------+--------
ECDSA-SHA1                     48616     8.813    
ECDSA-SHA1 Only                5         0.0009   
ECDSA-SHA224                   48602     8.8105   
ECDSA-SHA256                   64365     11.668   
ECDSA-SHA384                   64360     11.6671  
ECDSA-SHA512                   64365     11.668   
ECDSA-SHA512 Only              6         0.0011   
RSA-MD5                        46119     8.3604   
RSA-SHA1                       404339    73.298   
RSA-SHA1 Only                  37023     6.7115   
RSA-SHA224                     339349    61.5167  
RSA-SHA256                     375560    68.081   
RSA-SHA256 Only                7280      1.3197   
RSA-SHA384                     341601    61.925   
RSA-SHA384 Only                3         0.0005   
RSA-SHA512                     341567    61.9188  
RSA-SHA512 Only                84        0.0152   

TLSv1.2 PFS ordering           Count     Percent 
------------------------------+---------+--------
client                         252624    45.7953  
indeterminate                  57        0.0103   
intolerant                     5553      1.0066   
order-fallback                 7         0.0013   
server                         199982    36.2525  
unsupported                    18801     3.4082   

TLSv1.2 PFS sigalg fallback    Count     Percent 
------------------------------+---------+--------
ECDSA SHA1                     48595     8.8092   
ECDSA intolerant               74        0.0134   
ECDSA pfs-rsa-SHA512           15721     2.8499   
RSA False                      45736     8.291    
RSA SHA1                       328060    59.4703  
RSA intolerant                 39590     7.1768   
RSA pfs-ecdsa-SHA512           1         0.0002   
RSA soft-nopfs                 500       0.0906   

Renegotiation             Count     Percent 
-------------------------+---------+--------
False                     5768      1.0456   
insecure                  16732     3.0332   
secure                    529137    95.9212  

Compression               Count     Percent 
-------------------------+---------+--------
1 (zlib compression)      7977      1.4461   
False                     5768      1.0456   
NONE                      537892    97.5083  

TLS session ticket hint   Count     Percent 
-------------------------+---------+--------
1                         4         0.0007   
1 only                    4         0.0007   
2                         2         0.0004   
2 only                    2         0.0004   
5                         3         0.0005   
5 only                    3         0.0005   
10                        6         0.0011   
10 only                   6         0.0011   
15                        5         0.0009   
15 only                   5         0.0009   
30                        18        0.0033   
30 only                   17        0.0031   
60                        170       0.0308   
60 only                   166       0.0301   
65                        1         0.0002   
65 only                   1         0.0002   
70                        6         0.0011   
75                        1         0.0002   
75 only                   1         0.0002   
100                       13        0.0024   
100 only                  13        0.0024   
120                       23        0.0042   
120 only                  23        0.0042   
128                       2         0.0004   
128 only                  2         0.0004   
150                       2         0.0004   
180                       72        0.0131   
180 only                  70        0.0127   
240                       14        0.0025   
240 only                  14        0.0025   
244                       1         0.0002   
244 only                  1         0.0002   
300                       268504    48.674   
300 only                  264860    48.0135  
302                       3         0.0005   
302 only                  3         0.0005   
360                       2         0.0004   
360 only                  1         0.0002   
400                       5         0.0009   
400 only                  5         0.0009   
420                       124       0.0225   
420 only                  105       0.019    
450                       1         0.0002   
450 only                  1         0.0002   
480                       10        0.0018   
480 only                  10        0.0018   
500                       4         0.0007   
500 only                  4         0.0007   
540                       3         0.0005   
540 only                  3         0.0005   
600                       27697     5.0209   
600 only                  27547     4.9937   
660                       3         0.0005   
660 only                  3         0.0005   
720                       1         0.0002   
720 only                  1         0.0002   
840                       1         0.0002   
840 only                  1         0.0002   
900                       1254      0.2273   
900 only                  1233      0.2235   
960                       2         0.0004   
960 only                  2         0.0004   
1000                      1         0.0002   
1000 only                 1         0.0002   
1200                      3011      0.5458   
1200 only                 3007      0.5451   
1210                      1         0.0002   
1210 only                 1         0.0002   
1300                      1         0.0002   
1300 only                 1         0.0002   
1320                      1         0.0002   
1320 only                 1         0.0002   
1380                      1         0.0002   
1380 only                 1         0.0002   
1500                      5         0.0009   
1500 only                 4         0.0007   
1800                      570       0.1033   
1800 only                 559       0.1013   
1980                      2         0.0004   
1980 only                 2         0.0004   
2100                      2         0.0004   
2100 only                 1         0.0002   
2400                      8         0.0015   
2400 only                 8         0.0015   
2700                      9         0.0016   
2700 only                 9         0.0016   
3000                      28        0.0051   
3000 only                 28        0.0051   
3600                      802       0.1454   
3600 only                 792       0.1436   
3900                      1         0.0002   
3900 only                 1         0.0002   
5160                      1         0.0002   
5160 only                 1         0.0002   
5400                      15        0.0027   
5400 only                 8         0.0015   
6000                      288       0.0522   
6000 only                 287       0.052    
7200                      16170     2.9313   
7200 only                 16152     2.928    
10800                     3928      0.7121   
10800 only                3918      0.7102   
14400                     85        0.0154   
14400 only                84        0.0152   
18000                     9         0.0016   
18000 only                9         0.0016   
21600                     4289      0.7775   
21600 only                4289      0.7775   
25200                     1         0.0002   
25200 only                1         0.0002   
28800                     3301      0.5984   
28800 only                3301      0.5984   
36000                     1118      0.2027   
36000 only                1107      0.2007   
43200                     46        0.0083   
43200 only                46        0.0083   
60000                     2         0.0004   
60000 only                2         0.0004   
64800                     63048     11.4293  
64800 only                63047     11.4291  
72000                     8         0.0015   
72000 only                8         0.0015   
79200                     1         0.0002   
79200 only                1         0.0002   
84000                     1         0.0002   
84000 only                1         0.0002   
86000                     51        0.0092   
86000 only                51        0.0092   
86400                     2862      0.5188   
86400 only                2858      0.5181   
100800                    10169     1.8434   
100800 only               10144     1.8389   
108000                    1         0.0002   
108000 only               1         0.0002   
115200                    1         0.0002   
115200 only               1         0.0002   
129600                    8         0.0015   
129600 only               8         0.0015   
172800                    9         0.0016   
172800 only               9         0.0016   
216000                    5         0.0009   
216000 only               5         0.0009   
259200                    2         0.0004   
259200 only               2         0.0004   
432000                    1         0.0002   
432000 only               1         0.0002   
604800                    2         0.0004   
604800 only               1         0.0002   
864000                    4         0.0007   
864000 only               4         0.0007   
7776000                   2         0.0004   
7776000 only              2         0.0004   
None                      147762    26.7861  
None only                 143812    26.07    

Certificate sig alg     Count     Percent 
-------------------------+---------+--------
None                      9012      1.6337   
ecdsa-with-SHA256         61035     11.0643  
sha1WithRSAEncryption     33972     6.1584   
sha256WithRSAEncryption   472384    85.6331  
sha384WithRSAEncryption   5         0.0009   
sha512WithRSAEncryption   59        0.0107   

Certificate key size    Count     Percent 
-------------------------+---------+--------
ECDSA 256                 64371     11.6691  
ECDSA 384                 20        0.0036   
ECDSA 521                 1         0.0002   
RSA 1024                  29        0.0053   
RSA 2048                  480108    87.0333  
RSA 2049                  2         0.0004   
RSA 2056                  2         0.0004   
RSA 2058                  3         0.0005   
RSA 2084                  4         0.0007   
RSA 2086                  1         0.0002   
RSA 2096                  2         0.0004   
RSA 2432                  2         0.0004   
RSA 3071                  1         0.0002   
RSA 3072                  141       0.0256   
RSA 3073                  1         0.0002   
RSA 3076                  6         0.0011   
RSA 3096                  2         0.0004   
RSA 3248                  4         0.0007   
RSA 4048                  4         0.0007   
RSA 4056                  15        0.0027   
RSA 4092                  2         0.0004   
RSA 4094                  2         0.0004   
RSA 4095                  1         0.0002   
RSA 4096                  25981     4.7098   
RSA 8192                  8         0.0015   
RSA 8392                  1         0.0002   
RSA/ECDSA Dual Stack      19066     3.4563

OCSP stapling             Count     Percent 
-------------------------+---------+--------
Supported                 128880    23.3632  
Unsupported               422757    76.6368  

Supported Protocols       Count     Percent
-------------------------+---------+-------
SSL2                      18283     3.3143
SSL2 Only                 14        0.0025
SSL3                      101196    18.3447
SSL3 Only                 1158      0.2099
SSL3 or TLS1 Only         54616     9.9007
SSL3 or lower Only        1168      0.2117
TLS1                      542011    98.255
TLS1 Only                 34339     6.2249
TLS1 or lower Only        70962     12.8639
TLS1.1                    467843    84.8099
TLS1.1 Only               333       0.0604
TLS1.1 or up Only         8279      1.5008
TLS1.2                    477009    86.4715
TLS1.2 Only               2566      0.4652
TLS1.2, 1.0 but not 1.1   9002      1.6319


Statistics from 587252 chains provided by 715935 hosts

Server provided chains    Count     Percent
-------------------------+---------+-------
complete                  525344    73.3787
incomplete                23228     3.2444
untrusted                 167363    23.3768

Trusted chain statistics
========================

Chain length              Count     Percent
-------------------------+---------+-------
2                         13        0.0022
3                         585030    99.6216
4                         2197      0.3741
5                         12        0.002

CA key size in chains     Count
-------------------------+---------
ECDSA 256                 61011     
ECDSA 384                 61009     
RSA 1024                  26        
RSA 2045                  2         
RSA 2048                  885900    
RSA 4096                  168764    

Chains with CA key        Count     Percent
-------------------------+---------+-------
ECDSA 256                 61011     10.3892
ECDSA 384                 61009     10.3889
RSA 1024                  24        0.0041
RSA 2045                  2         0.0003
RSA 2048                  525829    89.5406
RSA 4096                  168152    28.6337

Signature algorithm (ex. root) Count
------------------------------+---------
ecdsa-with-SHA384              61004     
sha1WithRSAEncryption          38564     
sha256WithRSAEncryption        338536    
sha384WithRSAEncryption        151286    
sha512WithRSAEncryption        70        

Eff. host cert chain LoS  Count     Percent
-------------------------+---------+-------
80                        38602     6.5733
112                       487624    83.0349
128.0                     61026     10.3918

Most popular root CAs                         Count     Percent
---------------------------------------------+---------+-------
(d6325660) COMODO RSA Certification Authority 135263    23.0332
(2c543cd1) GeoTrust Global CA                 101180    17.2294
(eed8c118) COMODO ECC Certification Authority 60996     10.3867
(5ad8a5d6) GlobalSign Root CA                 56051     9.5446
(cbf06781) Go Daddy Root Certificate Authorit 49631     8.4514
(b204d74a) VeriSign Class 3 Public Primary Ce 31013     5.281
(244b5494) DigiCert High Assurance EV Root CA 20318     3.4598
(2e4eed3c) thawte Primary Root CA             18889     3.2165
(fc5a8f99) USERTrust RSA Certification Author 15885     2.705
(653b494a) Baltimore CyberTrust Root          13245     2.2554
(4bfab552) Starfield Root Certificate Authori 10600     1.805
(3513523f) DigiCert Global Root CA            9653      1.6438
(ae8153b9) StartCom Certification Authority   8863      1.5092
(2e5ac55d) DST Root CA X3                     7351      1.2518


Test ran between 17th of March and 5th of April 2016

February 2016 scan results (incomplete)

Unfortunately during scanning the disk space on the server run out so the results are not complete.

Other than that, no interesting developments, just continuation of established trends.

SSL/TLS survey of 479178 websites from Alexa's top 1 million
Stats only from connections that did provide valid certificates
(or anonymous DH from servers that do also have valid certificate installed)


Supported Ciphers         Count     Percent
-------------------------+---------+-------
3DES                      419340    87.5124
3DES Only                 506       0.1056
3DES Preferred            1692      0.3531
3DES forced in TLS1.1+    922       0.1924
AES                       474652    99.0555
AES Only                  37306     7.7854
AES-CBC                   474138    98.9482
AES-CBC Only              7523      1.57
AES-GCM                   380917    79.4938
AES-GCM Only              466       0.0972
CAMELLIA                  201933    42.1415
CAMELLIA Only             3         0.0006
CHACHA20                  66326     13.8416
CHACHA20 Only             1         0.0002
Insecure                  48383     10.0971
RC4                       149250    31.1471
RC4 Only                  177       0.0369
RC4 Preferred             15506     3.236
RC4 forced in TLS1.1+     8442      1.7618
x:FF 29 3DES Only         550       0.1148
x:FF 29 3DES Preferred    2012      0.4199
x:FF 29 RC4 Only          265       0.0553
x:FF 29 RC4 Preferred     17097     3.568
x:FF 29 incompatible      321       0.067
x:FF 35 3DES Only         559       0.1167
x:FF 35 3DES Preferred    1924      0.4015
x:FF 35 RC4 Only          311       0.0649
x:FF 35 RC4 Preferred     17124     3.5736
x:FF 35 incompatible      325       0.0678
y:DHE-RSA-SEED-SHA        60590     12.6446
y:IDEA-CBC-SHA            58075     12.1197
y:SEED-SHA                70022     14.6129
z:ADH-AES128-GCM-SHA256   354       0.0739
z:ADH-AES128-SHA          605       0.1263
z:ADH-AES128-SHA256       246       0.0513
z:ADH-AES256-GCM-SHA384   367       0.0766
z:ADH-AES256-SHA          618       0.129
z:ADH-AES256-SHA256       245       0.0511
z:ADH-CAMELLIA128-SHA     316       0.0659
z:ADH-CAMELLIA256-SHA     321       0.067
z:ADH-DES-CBC-SHA         243       0.0507
z:ADH-DES-CBC3-SHA        620       0.1294
z:ADH-RC4-MD5             455       0.095
z:ADH-SEED-SHA            254       0.053
z:AECDH-AES128-SHA        7521      1.5696
z:AECDH-AES256-SHA        7556      1.5769
z:AECDH-DES-CBC3-SHA      7499      1.565
z:AECDH-NULL-SHA          45        0.0094
z:AECDH-RC4-SHA           7010      1.4629
z:DES-CBC-MD5             7605      1.5871
z:DES-CBC-SHA             30728     6.4126
z:DES-CBC3-MD5            17199     3.5893
z:ECDHE-RSA-NULL-SHA      53        0.0111
z:EDH-RSA-DES-CBC-SHA     25945     5.4145
z:EXP-ADH-DES-CBC-SHA     148       0.0309
z:EXP-ADH-RC4-MD5         145       0.0303
z:EXP-DES-CBC-SHA         10647     2.2219
z:EXP-EDH-RSA-DES-CBC-SHA 8346      1.7417
z:EXP-RC2-CBC-MD5         12795     2.6702
z:EXP-RC4-MD5             13391     2.7946
z:EXP1024-DES-CBC-SHA     3415      0.7127
z:EXP1024-RC4-SHA         3465      0.7231
z:IDEA-CBC-MD5            1613      0.3366
z:NULL-MD5                162       0.0338
z:NULL-SHA                169       0.0353
z:NULL-SHA256             38        0.0079
z:RC2-CBC-MD5             7754      1.6182
z:RC4-64-MD5              712       0.1486

Cipher ordering           Count     Percent
-------------------------+---------+-------
Client side               116701    24.3544
Server side               362477    75.6456

Supported Handshakes      Count     Percent
-------------------------+---------+-------
ADH                       753       0.1571
AECDH                     7568      1.5794
DHE                       255330    53.285
ECDH                      2         0.0004
ECDHE                     404645    84.4457
ECDHE and DHE             212045    44.2518
RSA                       411697    85.9173

Supported PFS             Count     Percent  PFS Percent
-------------------------+---------+--------+-----------
DH,1024bits               107150    22.3612  41.9653
DH,1338bits               1         0.0002   0.0004
DH,1536bits               1         0.0002   0.0004
DH,2048bits               139444    29.1007  54.6132
DH,2236bits               57        0.0119   0.0223
DH,2432bits               3         0.0006   0.0012
DH,3072bits               93        0.0194   0.0364
DH,3092bits               1         0.0002   0.0004
DH,4096bits               8367      1.7461   3.2769
DH,512bits                52        0.0109   0.0204
DH,768bits                313       0.0653   0.1226
DH,8192bits               7         0.0015   0.0027
ECDH,B-571,570bits        1786      0.3727   0.4414
ECDH,K-163,163bits        1         0.0002   0.0002
ECDH,P-192,192bits        15        0.0031   0.0037
ECDH,P-224,224bits        84        0.0175   0.0208
ECDH,P-256,256bits        389954    81.3798  96.3694
ECDH,P-384,384bits        4297      0.8967   1.0619
ECDH,P-521,521bits        10105     2.1088   2.4973
Prefer DH,1024bits        41750     8.7128   16.3514
Prefer DH,1536bits        1         0.0002   0.0004
Prefer DH,2048bits        4670      0.9746   1.829
Prefer DH,3072bits        7         0.0015   0.0027
Prefer DH,4096bits        333       0.0695   0.1304
Prefer DH,768bits         37        0.0077   0.0145
Prefer ECDH,B-571,570bits 1575      0.3287   0.3892
Prefer ECDH,K-163,163bits 1         0.0002   0.0002
Prefer ECDH,P-224,224bits 81        0.0169   0.02
Prefer ECDH,P-256,256bits 357787    74.6668  88.42
Prefer ECDH,P-384,384bits 3158      0.659    0.7804
Prefer ECDH,P-521,521bits 9166      1.9129   2.2652
Prefer PFS                418566    87.3508  0
Support PFS               447930    93.4788  0

Supported ECC curves      Count     Percent 
-------------------------+---------+--------
brainpoolP256r1           5523      1.1526   
brainpoolP384r1           5524      1.1528   
brainpoolP512r1           5525      1.153    
prime192v1                1353      0.2824   
prime256v1                401476    83.7843  
prime256v1 Only           345957    72.198   
secp160k1                 1299      0.2711   
secp160r1                 1304      0.2721   
secp160r2                 1299      0.2711   
secp192k1                 1314      0.2742   
secp224k1                 1392      0.2905   
secp224r1                 4371      0.9122   
secp256k1                 7238      1.5105   
secp384r1                 56063     11.6998  
secp384r1 Only            584       0.1219   
secp521r1                 28028     5.8492   
secp521r1 Only            125       0.0261   
sect163k1                 1310      0.2734   
sect163k1 Only            3         0.0006   
sect163r1                 1306      0.2726   
sect163r2                 1307      0.2728   
sect193r1                 1306      0.2726   
sect193r2                 1304      0.2721   
sect233k1                 1387      0.2895   
sect233r1                 1386      0.2892   
sect239k1                 1383      0.2886   
sect283k1                 6795      1.4181   
sect283k1 Only            1         0.0002   
sect283r1                 6792      1.4174   
sect409k1                 6793      1.4176   
sect409r1                 6793      1.4176   
sect571k1                 6797      1.4185   
sect571r1                 6797      1.4185   

Unsupported curve fallback     Count     Percent 
------------------------------+---------+--------
False                          43974     9.177    
True                           304974    63.6452  
order-specific                 61        0.0127   
unknown                        130169    27.1651  

ECC curve ordering        Count     Percent 
-------------------------+---------+--------
client                    6487      1.3538   
inconclusive-noecc        8         0.0017   
server                    395730    82.5852  
unknown                   76953     16.0594  

TLSv1.2 PFS supported sigalgs  Count     Percent 
------------------------------+---------+--------
ECDSA-SHA1                     40044     8.3568   
ECDSA-SHA1 Only                3         0.0006   
ECDSA-SHA224                   40035     8.3549   
ECDSA-SHA256                   54403     11.3534  
ECDSA-SHA384                   54398     11.3524  
ECDSA-SHA512                   54399     11.3526  
ECDSA-SHA512 Only              1         0.0002   
RSA-MD5                        47971     10.0111  
RSA-SHA1                       347530    72.5263  
RSA-SHA1 Only                  36263     7.5678   
RSA-SHA224                     288147    60.1336  
RSA-SHA256                     318675    66.5045  
RSA-SHA256 Only                6467      1.3496   
RSA-SHA384                     290085    60.538   
RSA-SHA384 Only                2         0.0004   
RSA-SHA512                     290093    60.5397  
RSA-SHA512 Only                126       0.0263   

TLSv1.2 PFS ordering           Count     Percent 
------------------------------+---------+--------
client                         215610    44.9958  
indeterminate                  32        0.0067   
intolerant                     4623      0.9648   
order-fallback                 3         0.0006   
server                         175045    36.5303  
unsupported                    17219     3.5934   

TLSv1.2 PFS sigalg fallback    Count     Percent 
------------------------------+---------+--------
ECDSA SHA1                     40031     8.3541   
ECDSA intolerant               47        0.0098   
ECDSA pfs-rsa-SHA512           14337     2.992    
ECDSA soft-nopfs               1         0.0002   
RSA False                      47573     9.928    
RSA SHA1                       274148    57.2121  
RSA intolerant                 34088     7.1138   
RSA pfs-ecdsa-SHA512           4         0.0008   
RSA soft-nopfs                 498       0.1039   

Renegotiation             Count     Percent 
-------------------------+---------+--------
False                     5212      1.0877   
insecure                  15480     3.2305   
secure                    458486    95.6818  

Compression               Count     Percent 
-------------------------+---------+--------
1 (zlib compression)      7370      1.5381   
False                     5212      1.0877   
NONE                      466596    97.3743  

TLS session ticket hint   Count     Percent 
-------------------------+---------+--------
1                         4         0.0008   
1 only                    4         0.0008   
2                         1         0.0002   
2 only                    1         0.0002   
10                        6         0.0013   
10 only                   6         0.0013   
15                        5         0.001    
15 only                   5         0.001    
30                        18        0.0038   
30 only                   17        0.0035   
60                        142       0.0296   
60 only                   138       0.0288   
65                        1         0.0002   
65 only                   1         0.0002   
70                        6         0.0013   
100                       15        0.0031   
100 only                  15        0.0031   
120                       24        0.005    
120 only                  24        0.005    
128                       3         0.0006   
128 only                  3         0.0006   
150                       1         0.0002   
180                       58        0.0121   
180 only                  55        0.0115   
240                       7         0.0015   
240 only                  7         0.0015   
244                       1         0.0002   
244 only                  1         0.0002   
300                       230415    48.0855  
300 only                  226909    47.3538  
302                       2         0.0004   
302 only                  2         0.0004   
360                       3         0.0006   
360 only                  1         0.0002   
400                       7         0.0015   
400 only                  7         0.0015   
420                       116       0.0242   
420 only                  93        0.0194   
480                       10        0.0021   
480 only                  10        0.0021   
500                       4         0.0008   
500 only                  4         0.0008   
540                       2         0.0004   
540 only                  2         0.0004   
600                       23920     4.9919   
600 only                  23758     4.9581   
660                       1         0.0002   
660 only                  1         0.0002   
840                       1         0.0002   
840 only                  1         0.0002   
900                       983       0.2051   
900 only                  962       0.2008   
960                       3         0.0006   
960 only                  3         0.0006   
1000                      1         0.0002   
1000 only                 1         0.0002   
1200                      2630      0.5489   
1200 only                 2627      0.5482   
1320                      1         0.0002   
1320 only                 1         0.0002   
1500                      2         0.0004   
1500 only                 1         0.0002   
1800                      500       0.1043   
1800 only                 491       0.1025   
1980                      2         0.0004   
1980 only                 2         0.0004   
2100                      2         0.0004   
2100 only                 1         0.0002   
2400                      7         0.0015   
2400 only                 7         0.0015   
2700                      10        0.0021   
2700 only                 10        0.0021   
3000                      26        0.0054   
3000 only                 26        0.0054   
3600                      664       0.1386   
3600 only                 655       0.1367   
3900                      1         0.0002   
3900 only                 1         0.0002   
5160                      1         0.0002   
5160 only                 1         0.0002   
5400                      15        0.0031   
5400 only                 8         0.0017   
6000                      214       0.0447   
6000 only                 214       0.0447   
7200                      14927     3.1151   
7200 only                 14908     3.1112   
10800                     3286      0.6858   
10800 only                3277      0.6839   
14400                     93        0.0194   
14400 only                91        0.019    
18000                     9         0.0019   
18000 only                9         0.0019   
21600                     3668      0.7655   
21600 only                3668      0.7655   
25200                     1         0.0002   
25200 only                1         0.0002   
28800                     1854      0.3869   
28800 only                1853      0.3867   
36000                     954       0.1991   
36000 only                945       0.1972   
43200                     39        0.0081   
43200 only                39        0.0081   
60000                     1         0.0002   
60000 only                1         0.0002   
64800                     56248     11.7384  
64800 only                56243     11.7374  
72000                     21        0.0044   
72000 only                21        0.0044   
79200                     1         0.0002   
79200 only                1         0.0002   
86000                     44        0.0092   
86000 only                44        0.0092   
86400                     2743      0.5724   
86400 only                2734      0.5706   
100800                    8629      1.8008   
100800 only               8618      1.7985   
115200                    1         0.0002   
115200 only               1         0.0002   
129600                    7         0.0015   
129600 only               7         0.0015   
172800                    9         0.0019   
172800 only               9         0.0019   
216000                    2         0.0004   
216000 only               2         0.0004   
259200                    2         0.0004   
259200 only               2         0.0004   
432000                    1         0.0002   
432000 only               1         0.0002   
604800                    2         0.0004   
864000                    3         0.0006   
864000 only               3         0.0006   
7776000                   2         0.0004   
7776000 only              2         0.0004   
None                      130619    27.259   
None only                 126799    26.4618  

Certificate sig alg     Count     Percent 
-------------------------+---------+--------
None                      8093      1.6889   
ecdsa-with-SHA256         54346     11.3415  
sha1WithRSAEncryption     32309     6.7426   
sha256WithRSAEncryption   406902    84.9167  
sha384WithRSAEncryption   3         0.0006   
sha512WithRSAEncryption   52        0.0109   

Certificate key size    Count     Percent 
-------------------------+---------+--------
ECDSA 256                 54398     11.3524  
ECDSA 384                 18        0.0038   
ECDSA 521                 1         0.0002   
RSA 1024                  28        0.0058   
RSA 2048                  416954    87.0144  
RSA 2049                  3         0.0006   
RSA 2056                  2         0.0004   
RSA 2058                  2         0.0004   
RSA 2084                  4         0.0008   
RSA 2086                  1         0.0002   
RSA 2096                  2         0.0004   
RSA 2432                  1         0.0002   
RSA 3071                  1         0.0002   
RSA 3072                  118       0.0246   
RSA 3073                  1         0.0002   
RSA 3076                  2         0.0004   
RSA 3096                  2         0.0004   
RSA 3248                  2         0.0004   
RSA 4048                  1         0.0002   
RSA 4056                  17        0.0035   
RSA 4092                  7         0.0015   
RSA 4094                  1         0.0002   
RSA 4096                  22025     4.5964   
RSA 4098                  1         0.0002   
RSA 8192                  4         0.0008   
RSA 8392                  1         0.0002   
RSA/ECDSA Dual Stack      14407     3.0066

OCSP stapling             Count     Percent 
-------------------------+---------+--------
Supported                 112039    23.3815  
Unsupported               367139    76.6185  

Supported Protocols       Count     Percent
-------------------------+---------+-------
SSL2                      17376     3.6262
SSL2 Only                 10        0.0021
SSL3                      93563     19.5257
SSL3 Only                 980       0.2045
SSL3 or TLS1 Only         47829     9.9815
SSL3 or lower Only        992       0.207
TLS1                      472039    98.5102
TLS1 Only                 29199     6.0936
TLS1 or lower Only        63377     13.2262
TLS1.1                    404578    84.4317
TLS1.1 Only               297       0.062
TLS1.1 or up Only         5984      1.2488
TLS1.2                    412518    86.0887
TLS1.2 Only               2158      0.4504
TLS1.2, 1.0 but not 1.1   7981      1.6656



Statistics from 487333 chains provided by 621854 hosts

Server provided chains    Count     Percent
-------------------------+---------+-------
complete                  436283    70.1584
incomplete                20784     3.3423
untrusted                 164787    26.4993

Trusted chain statistics
========================

Chain length              Count     Percent
-------------------------+---------+-------
2                         12        0.0025
3                         485364    99.596
4                         1945      0.3991
5                         12        0.0025

CA key size in chains     Count
-------------------------+---------
ECDSA 256                 42987     
ECDSA 384                 42988     
RSA 1024                  28        
RSA 2045                  2         
RSA 2048                  746942    
RSA 4096                  143676    

Chains with CA key        Count     Percent
-------------------------+---------+-------
ECDSA 256                 42987     8.8209
ECDSA 384                 42988     8.8211
RSA 1024                  26        0.0053
RSA 2045                  2         0.0004
RSA 2048                  443976    91.1032
RSA 4096                  143127    29.3694

Signature algorithm (ex. root) Count
------------------------------+---------
ecdsa-with-SHA384              42983     
sha1WithRSAEncryption          37695     
sha256WithRSAEncryption        279113    
sha384WithRSAEncryption        129437    
sha512WithRSAEncryption        62        

Eff. host cert chain LoS  Count     Percent
-------------------------+---------+-------
80                        37722     7.7405
112                       406613    83.4364
128.0                     42998     8.8231

Root CAs                                      Count     Percent
---------------------------------------------+---------+-------
(d6325660) COMODO RSA Certification Authority 115692    23.7398
(2c543cd1) GeoTrust Global CA                 85975     17.6419
(cbf06781) Go Daddy Root Certificate Authorit 43560     8.9384
(eed8c118) COMODO ECC Certification Authority 42977     8.8188
(5ad8a5d6) GlobalSign Root CA                 41299     8.4745
(b204d74a) VeriSign Class 3 Public Primary Ce 28043     5.7544
(244b5494) DigiCert High Assurance EV Root CA 18414     3.7785
(2e4eed3c) thawte Primary Root CA             17524     3.5959
(fc5a8f99) USERTrust RSA Certification Author 13626     2.796
(653b494a) Baltimore CyberTrust Root          10432     2.1406
(3513523f) DigiCert Global Root CA            8525      1.7493
(ae8153b9) StartCom Certification Authority   7668      1.5735
(4bfab552) Starfield Root Certificate Authori 7663      1.5724
(480720ec) GeoTrust Primary Certification Aut 4978      1.0215

Scan performed between 22nd of February and 16th of March 2016

January 2016 scan results

Another month, no exciting changes.

SSL/TLS survey of 541489 websites from Alexa's top 1 million
Stats only from connections that did provide valid certificates
(or anonymous DH from servers that do also have valid certificate installed)


Supported Ciphers         Count     Percent
-------------------------+---------+-------
3DES                      477135    88.1154
3DES Only                 523       0.0966
3DES Preferred            1744      0.3221
3DES forced in TLS1.1+    945       0.1745
AES                       535585    98.9097
AES Only                  34994     6.4626
AES-CBC                   534935    98.7896
AES-CBC Only              9110      1.6824
AES-GCM                   422759    78.0734
AES-GCM Only              589       0.1088
CAMELLIA                  228296    42.1608
CAMELLIA Only             2         0.0004
CHACHA20                  72561     13.4003
CHACHA20 Only             1         0.0002
Insecure                  56630     10.4582
RC4                       178913    33.0409
RC4 Only                  577       0.1066
RC4 Preferred             18219     3.3646
RC4 forced in TLS1.1+     9446      1.7444
x:FF 29 3DES Only         574       0.106
x:FF 29 3DES Preferred    2103      0.3884
x:FF 29 RC4 Only          771       0.1424
x:FF 29 RC4 Preferred     20172     3.7253
x:FF 29 incompatible      395       0.0729
x:FF 35 3DES Only         582       0.1075
x:FF 35 3DES Preferred    2009      0.371
x:FF 35 RC4 Only          937       0.173
x:FF 35 RC4 Preferred     20230     3.736
x:FF 35 incompatible      398       0.0735
y:DHE-RSA-SEED-SHA        66504     12.2817
y:IDEA-CBC-SHA            63061     11.6459
y:SEED-SHA                78410     14.4804
z:ADH-AES128-GCM-SHA256   397       0.0733
z:ADH-AES128-SHA          714       0.1319
z:ADH-AES128-SHA256       269       0.0497
z:ADH-AES256-GCM-SHA384   413       0.0763
z:ADH-AES256-SHA          723       0.1335
z:ADH-AES256-SHA256       271       0.05
z:ADH-CAMELLIA128-SHA     358       0.0661
z:ADH-CAMELLIA256-SHA     366       0.0676
z:ADH-DES-CBC-SHA         298       0.055
z:ADH-DES-CBC3-SHA        722       0.1333
z:ADH-RC4-MD5             560       0.1034
z:ADH-SEED-SHA            286       0.0528
z:AECDH-AES128-SHA        9282      1.7142
z:AECDH-AES256-SHA        9332      1.7234
z:AECDH-DES-CBC3-SHA      9248      1.7079
z:AECDH-NULL-SHA          61        0.0113
z:AECDH-RC4-SHA           8710      1.6085
z:DES-CBC-MD5             10050     1.856
z:DES-CBC-SHA             35379     6.5337
z:DES-CBC3-MD5            21189     3.9131
z:ECDHE-RSA-NULL-SHA      67        0.0124
z:EDH-RSA-DES-CBC-SHA     30295     5.5948
z:EXP-ADH-DES-CBC-SHA     192       0.0355
z:EXP-ADH-RC4-MD5         189       0.0349
z:EXP-DES-CBC-SHA         13046     2.4093
z:EXP-EDH-RSA-DES-CBC-SHA 10364     1.914
z:EXP-RC2-CBC-MD5         15781     2.9144
z:EXP-RC4-MD5             16506     3.0483
z:EXP1024-DES-CBC-SHA     4104      0.7579
z:EXP1024-RC4-SHA         4194      0.7745
z:IDEA-CBC-MD5            2095      0.3869
z:NULL-MD5                211       0.039
z:NULL-SHA                210       0.0388
z:NULL-SHA256             30        0.0055
z:RC2-CBC-MD5             10224     1.8881
z:RC4-64-MD5              892       0.1647

Cipher ordering           Count     Percent
-------------------------+---------+-------
Client side               133145    24.5887
Server side               408344    75.4113

Supported Handshakes      Count     Percent
-------------------------+---------+-------
ADH                       874       0.1614
AECDH                     9353      1.7273
DHE                       292291    53.9791
ECDH                      2         0.0004
ECDHE                     448914    82.9036
ECDHE and DHE             235557    43.5017
RSA                       475602    87.8323

Supported PFS             Count     Percent  PFS Percent
-------------------------+---------+--------+-----------
DH,1024bits               152465    28.1566  52.1621
DH,1338bits               1         0.0002   0.0003
DH,1536bits               1         0.0002   0.0003
DH,2048bits               131006    24.1937  44.8204
DH,2236bits               13        0.0024   0.0044
DH,2432bits               2         0.0004   0.0007
DH,2560bits               1         0.0002   0.0003
DH,3072bits               93        0.0172   0.0318
DH,3092bits               1         0.0002   0.0003
DH,4096bits               8605      1.5891   2.944
DH,4098bits               1         0.0002   0.0003
DH,512bits                50        0.0092   0.0171
DH,768bits                395       0.0729   0.1351
DH,8192bits               2         0.0004   0.0007
ECDH,B-571,570bits        1771      0.3271   0.3945
ECDH,K-163,163bits        1         0.0002   0.0002
ECDH,P-192,192bits        15        0.0028   0.0033
ECDH,P-224,224bits        84        0.0155   0.0187
ECDH,P-256,256bits        433613    80.0779  96.5916
ECDH,P-384,384bits        4499      0.8309   1.0022
ECDH,P-521,521bits        10705     1.977    2.3846
Prefer DH,1024bits        53883     9.9509   18.4347
Prefer DH,1536bits        1         0.0002   0.0003
Prefer DH,2048bits        6107      1.1278   2.0894
Prefer DH,3072bits        9         0.0017   0.0031
Prefer DH,4096bits        375       0.0693   0.1283
Prefer DH,768bits         52        0.0096   0.0178
Prefer ECDH,B-571,570bits 1556      0.2874   0.3466
Prefer ECDH,K-163,163bits 1         0.0002   0.0002
Prefer ECDH,P-224,224bits 81        0.015    0.018
Prefer ECDH,P-256,256bits 396887    73.2955  88.4105
Prefer ECDH,P-384,384bits 3290      0.6076   0.7329
Prefer ECDH,P-521,521bits 9642      1.7806   2.1479
Prefer PFS                471884    87.1456  0
Support PFS               505648    93.381   0

Supported ECC curves      Count     Percent 
-------------------------+---------+--------
brainpoolP256r1           2578      0.4761   
brainpoolP384r1           2579      0.4763   
brainpoolP512r1           2580      0.4765   
prime192v1                1446      0.267    
prime256v1                445477    82.2689  
prime256v1 Only           388604    71.7658  
secp160k1                 1397      0.258    
secp160r1                 1402      0.2589   
secp160r2                 1396      0.2578   
secp192k1                 1410      0.2604   
secp224k1                 1487      0.2746   
secp224r1                 4270      0.7886   
secp224r1 Only            1         0.0002   
secp256k1                 4033      0.7448   
secp384r1                 57392     10.5989  
secp384r1 Only            554       0.1023   
secp521r1                 26343     4.8649   
secp521r1 Only            142       0.0262   
sect163k1                 1402      0.2589   
sect163k1 Only            2         0.0004   
sect163r1                 1400      0.2585   
sect163r2                 1400      0.2585   
sect193r1                 1399      0.2584   
sect193r2                 1399      0.2584   
sect233k1                 1480      0.2733   
sect233r1                 1480      0.2733   
sect239k1                 1480      0.2733   
sect283k1                 3926      0.725    
sect283k1 Only            1         0.0002   
sect283r1                 3925      0.7249   
sect409k1                 3924      0.7247   
sect409r1                 3923      0.7245   
sect571k1                 3928      0.7254   
sect571r1                 3929      0.7256   

Unsupported curve fallback     Count     Percent 
------------------------------+---------+--------
False                          55946     10.3319  
True                           332237    61.3562  
order-specific                 60        0.0111   
unknown                        153246    28.3009  

ECC curve ordering        Count     Percent 
-------------------------+---------+--------
client                    6546      1.2089   
inconclusive-noecc        10        0.0018   
server                    439646    81.192   
unknown                   95287     17.5972  

TLSv1.2 PFS supported sigalgs  Count     Percent 
------------------------------+---------+--------
ECDSA-SHA1                     43763     8.082    
ECDSA-SHA1 Only                3         0.0006   
ECDSA-SHA224                   43755     8.0805   
ECDSA-SHA256                   58463     10.7967  
ECDSA-SHA384                   58458     10.7958  
ECDSA-SHA512                   58458     10.7958  
RSA-MD5                        93307     17.2316  
RSA-SHA1                       386583    71.3926  
RSA-SHA1 Only                  41287     7.6247   
RSA-SHA224                     320766    59.2378  
RSA-SHA256                     353383    65.2613  
RSA-SHA256 Only                6919      1.2778   
RSA-SHA384                     322845    59.6217  
RSA-SHA384 Only                1         0.0002   
RSA-SHA512                     322938    59.6389  
RSA-SHA512 Only                199       0.0368   

TLSv1.2 PFS ordering           Count     Percent 
------------------------------+---------+--------
client                         245811    45.3954  
indeterminate                  42        0.0078   
intolerant                     5114      0.9444   
order-fallback                 9         0.0017   
server                         187931    34.7063  
unsupported                    19787     3.6542   

TLSv1.2 PFS sigalg fallback    Count     Percent 
------------------------------+---------+--------
ECDSA SHA1                     43750     8.0796   
ECDSA intolerant               30        0.0055   
ECDSA pfs-rsa-SHA512           14685     2.712    
ECDSA soft-nopfs               1         0.0002   
RSA False                      92525     17.0871  
RSA SHA1                       265644    49.0581  
RSA intolerant                 37307     6.8897   
RSA pfs-ecdsa-SHA512           1         0.0002   
RSA soft-nopfs                 863       0.1594   

Renegotiation             Count     Percent 
-------------------------+---------+--------
False                     6052      1.1177   
insecure                  17380     3.2097   
secure                    518057    95.6727  

Compression               Count     Percent 
-------------------------+---------+--------
1 (zlib compression)      8694      1.6056   
False                     6052      1.1177   
NONE                      526743    97.2768  

TLS session ticket hint   Count     Percent 
-------------------------+---------+--------
1                         5         0.0009   
1 only                    5         0.0009   
2                         1         0.0002   
2 only                    1         0.0002   
5                         1         0.0002   
5 only                    1         0.0002   
10                        11        0.002    
10 only                   11        0.002    
15                        9         0.0017   
15 only                   9         0.0017   
30                        14        0.0026   
30 only                   12        0.0022   
60                        158       0.0292   
60 only                   152       0.0281   
65                        1         0.0002   
65 only                   1         0.0002   
70                        7         0.0013   
75                        1         0.0002   
75 only                   1         0.0002   
100                       13        0.0024   
100 only                  13        0.0024   
120                       25        0.0046   
120 only                  25        0.0046   
128                       3         0.0006   
128 only                  3         0.0006   
150                       2         0.0004   
180                       59        0.0109   
180 only                  56        0.0103   
240                       6         0.0011   
240 only                  6         0.0011   
244                       1         0.0002   
244 only                  1         0.0002   
300                       257671    47.5856  
300 only                  253451    46.8063  
302                       3         0.0006   
302 only                  3         0.0006   
360                       2         0.0004   
360 only                  1         0.0002   
400                       6         0.0011   
400 only                  6         0.0011   
420                       114       0.0211   
420 only                  91        0.0168   
450                       1         0.0002   
450 only                  1         0.0002   
480                       13        0.0024   
480 only                  13        0.0024   
500                       4         0.0007   
500 only                  4         0.0007   
540                       1         0.0002   
540 only                  1         0.0002   
600                       27406     5.0612   
600 only                  27252     5.0328   
720                       2         0.0004   
720 only                  2         0.0004   
840                       2         0.0004   
840 only                  2         0.0004   
900                       989       0.1826   
900 only                  972       0.1795   
960                       3         0.0006   
960 only                  3         0.0006   
1200                      2741      0.5062   
1200 only                 2735      0.5051   
1500                      6         0.0011   
1500 only                 5         0.0009   
1800                      555       0.1025   
1800 only                 545       0.1006   
1980                      2         0.0004   
1980 only                 2         0.0004   
2100                      2         0.0004   
2100 only                 1         0.0002   
2400                      9         0.0017   
2400 only                 9         0.0017   
2700                      11        0.002    
2700 only                 11        0.002    
3000                      29        0.0054   
3000 only                 29        0.0054   
3300                      1         0.0002   
3300 only                 1         0.0002   
3600                      688       0.1271   
3600 only                 679       0.1254   
3900                      1         0.0002   
3900 only                 1         0.0002   
5160                      1         0.0002   
5160 only                 1         0.0002   
5400                      13        0.0024   
5400 only                 7         0.0013   
6000                      235       0.0434   
6000 only                 235       0.0434   
7200                      15880     2.9327   
7200 only                 15854     2.9279   
10800                     3309      0.6111   
10800 only                3300      0.6094   
14400                     100       0.0185   
14400 only                100       0.0185   
18000                     8         0.0015   
18000 only                8         0.0015   
21600                     4676      0.8635   
21600 only                4676      0.8635   
25200                     1         0.0002   
25200 only                1         0.0002   
28800                     2453      0.453    
28800 only                2450      0.4525   
36000                     1094      0.202    
36000 only                1083      0.2      
43200                     41        0.0076   
43200 only                41        0.0076   
60000                     2         0.0004   
60000 only                2         0.0004   
64800                     4295      0.7932   
64800 only                4295      0.7932   
72000                     28        0.0052   
72000 only                28        0.0052   
79200                     1         0.0002   
79200 only                1         0.0002   
86000                     48        0.0089   
86000 only                48        0.0089   
86400                     3671      0.6779   
86400 only                3666      0.677    
100800                    10910     2.0148   
100800 only               10897     2.0124   
115200                    1         0.0002   
115200 only               1         0.0002   
129600                    8         0.0015   
129600 only               8         0.0015   
172800                    10        0.0018   
172800 only               10        0.0018   
216000                    2         0.0004   
216000 only               2         0.0004   
259200                    2         0.0004   
259200 only               2         0.0004   
432000                    1         0.0002   
432000 only               1         0.0002   
604800                    1         0.0002   
864000                    3         0.0006   
864000 only               3         0.0006   
None                      208648    38.5323  
None only                 204120    37.6961  

Certificate sig alg     Count     Percent 
-------------------------+---------+--------
None                      9968      1.8408   
ecdsa-with-SHA256         58398     10.7847  
sha1WithRSAEncryption     51637     9.5361   
sha256WithRSAEncryption   446192    82.4009  
sha384WithRSAEncryption   5         0.0009   
sha512WithRSAEncryption   43        0.0079   

Certificate key size    Count     Percent 
-------------------------+---------+--------
ECDSA 256                 58449     10.7941  
ECDSA 384                 17        0.0031   
ECDSA 521                 1         0.0002   
RSA 1024                  20        0.0037   
RSA 2047                  1         0.0002   
RSA 2048                  473537    87.4509  
RSA 2049                  2         0.0004   
RSA 2056                  1         0.0002   
RSA 2058                  2         0.0004   
RSA 2064                  2         0.0004   
RSA 2084                  5         0.0009   
RSA 2096                  2         0.0004   
RSA 2408                  1         0.0002   
RSA 2432                  1         0.0002   
RSA 2480                  1         0.0002   
RSA 3071                  1         0.0002   
RSA 3072                  119       0.022    
RSA 3073                  1         0.0002   
RSA 3096                  2         0.0004   
RSA 3248                  2         0.0004   
RSA 4048                  1         0.0002   
RSA 4056                  18        0.0033   
RSA 4092                  6         0.0011   
RSA 4094                  1         0.0002   
RSA 4095                  1         0.0002   
RSA 4096                  24063     4.4439   
RSA 4098                  1         0.0002   
RSA 8192                  3         0.0006   
RSA/ECDSA Dual Stack      14756     2.7251

OCSP stapling             Count     Percent 
-------------------------+---------+--------
Supported                 125414    23.161   
Unsupported               416075    76.839   

Supported Protocols       Count     Percent
-------------------------+---------+-------
SSL2                      21373     3.9471
SSL2 Only                 15        0.0028
SSL3                      111129    20.5229
SSL3 Only                 1140      0.2105
SSL3 or TLS1 Only         59881     11.0586
SSL3 or lower Only        1155      0.2133
TLS1                      534137    98.6423
TLS1 Only                 37819     6.9843
TLS1 or lower Only        79028     14.5946
TLS1.1                    449426    82.9982
TLS1.1 Only               331       0.0611
TLS1.1 or up Only         5997      1.1075
TLS1.2                    458682    84.7075
TLS1.2 Only               2265      0.4183
TLS1.2, 1.0 but not 1.1   9518      1.7577

Statistics from 575515 chains provided by 712157 hosts

Server provided chains    Count     Percent
-------------------------+---------+-------
complete                  510961    71.7484
incomplete                28667     4.0254
untrusted                 172529    24.2263

Trusted chain statistics
========================

Chain length              Count     Percent
-------------------------+---------+-------
2                         26        0.0045
3                         573525    99.6542
4                         1952      0.3392
5                         12        0.0021

CA key size in chains     Count
-------------------------+---------
ECDSA 256                 58397     
ECDSA 384                 58400     
RSA 1024                  25        
RSA 2045                  2         
RSA 2048                  878262    
RSA 4096                  157894    

Chains with CA key        Count     Percent
-------------------------+---------+-------
ECDSA 256                 58397     10.1469
ECDSA 384                 58400     10.1474
RSA 1024                  23        0.004
RSA 2045                  2         0.0003
RSA 2048                  516745    89.7883
RSA 4096                  157333    27.3378

Signature algorithm (ex. root) Count
------------------------------+---------
ecdsa-with-SHA384              58394     
sha1WithRSAEncryption          58209     
sha256WithRSAEncryption        319412    
sha384WithRSAEncryption        141372    
sha512WithRSAEncryption        78        

Eff. host cert chain LoS  Count     Percent
-------------------------+---------+-------
80                        58271     10.125
112                       458828    79.7248
128.0                     58416     10.1502

Most Popular Root CAs                         Count     Percent
---------------------------------------------+---------+-------
(d6325660) COMODO RSA Certification Authority 126106    21.9119
(2c543cd1) GeoTrust Global CA                 102943    17.8871
(eed8c118) COMODO ECC Certification Authority 58387     10.1452
(5ad8a5d6) GlobalSign Root CA                 50714     8.8119
(cbf06781) Go Daddy Root Certificate Authorit 50524     8.7789
(b204d74a) VeriSign Class 3 Public Primary Ce 32049     5.5688
(244b5494) DigiCert High Assurance EV Root CA 21377     3.7144
(2e4eed3c) thawte Primary Root CA             20668     3.5912
(fc5a8f99) USERTrust RSA Certification Author 15152     2.6328
(157753a5) AddTrust External CA Root          14593     2.5356
(653b494a) Baltimore CyberTrust Root          11373     1.9761
(ae8153b9) StartCom Certification Authority   9025      1.5682
(3513523f) DigiCert Global Root CA            8982      1.5607
(4bfab552) Starfield Root Certificate Authori 8553      1.4861


Scan performed between 18th of January and 3rd of February 2016

December 2015 scan results

Past few months were a bit eventful so I wasn’t able to dedicate as much time to cipherscan as I’d like.

So not to make the results bitrot any more, I’m posting them without the detailed analysis.

There were no interesting changes compared to November anyway – just continuation of established trends.

SSL/TLS survey of 536563 websites from Alexa's top 1 million
Stats only from connections that did provide valid certificates
(or anonymous DH from servers that do also have valid certificate installed)


Supported Ciphers         Count     Percent
-------------------------+---------+-------
3DES                      459320    85.6041
AES                       530014    98.7795
AES Only                  45794     8.5347
AES-CBC                   529364    98.6583
AES-CBC Only              10074     1.8775
AES-GCM                   412370    76.854
AES-GCM Only              538       0.1003
CAMELLIA                  222494    41.4665
CAMELLIA Only             3         0.0006
CHACHA20                  69686     12.9875
CHACHA20 Only             6         0.0011
Insecure                  57699     10.7534
RC4                       183979    34.2884
RC4 Only                  864       0.161
RC4 Preferred             19979     3.7235
RC4 forced in TLS1.1+     10502     1.9573
x:FF 29 RC4 Only          1093      0.2037
x:FF 29 RC4 Preferred     22208     4.1389
x:FF 29 incompatible      391       0.0729
x:FF 35 RC4 Only          1327      0.2473
x:FF 35 RC4 Preferred     22286     4.1535
x:FF 35 incompatible      395       0.0736
y:DHE-RSA-SEED-SHA        66508     12.3952
y:IDEA-CBC-SHA            61454     11.4533
y:SEED-SHA                77575     14.4578
z:ADH-AES128-GCM-SHA256   397       0.074
z:ADH-AES128-SHA          727       0.1355
z:ADH-AES128-SHA256       282       0.0526
z:ADH-AES256-GCM-SHA384   407       0.0759
z:ADH-AES256-SHA          745       0.1388
z:ADH-AES256-SHA256       282       0.0526
z:ADH-CAMELLIA128-SHA     367       0.0684
z:ADH-CAMELLIA256-SHA     379       0.0706
z:ADH-DES-CBC-SHA         309       0.0576
z:ADH-DES-CBC3-SHA        744       0.1387
z:ADH-RC4-MD5             597       0.1113
z:ADH-SEED-SHA            296       0.0552
z:AECDH-AES128-SHA        9967      1.8576
z:AECDH-AES256-SHA        10016     1.8667
z:AECDH-DES-CBC3-SHA      9935      1.8516
z:AECDH-NULL-SHA          60        0.0112
z:AECDH-RC4-SHA           9381      1.7484
z:DES-CBC-MD5             10532     1.9629
z:DES-CBC-SHA             35384     6.5946
z:DES-CBC3-MD5            21789     4.0608
z:ECDHE-RSA-NULL-SHA      64        0.0119
z:EDH-RSA-DES-CBC-SHA     30143     5.6178
z:EXP-ADH-DES-CBC-SHA     206       0.0384
z:EXP-ADH-RC4-MD5         201       0.0375
z:EXP-DES-CBC-SHA         13685     2.5505
z:EXP-EDH-RSA-DES-CBC-SHA 10941     2.0391
z:EXP-RC2-CBC-MD5         16617     3.0969
z:EXP-RC4-MD5             17371     3.2375
z:EXP1024-DES-CBC-SHA     4273      0.7964
z:EXP1024-RC4-SHA         4354      0.8115
z:IDEA-CBC-MD5            2139      0.3986
z:NULL-MD5                227       0.0423
z:NULL-SHA                227       0.0423
z:NULL-SHA256             28        0.0052
z:RC2-CBC-MD5             10751     2.0037
z:RC4-64-MD5              880       0.164

Cipher ordering           Count     Percent
-------------------------+---------+-------
Client side               132599    24.7127
Server side               403964    75.2873

Supported Handshakes      Count     Percent
-------------------------+---------+-------
ADH                       892       0.1662
AECDH                     10038     1.8708
DHE                       290879    54.2115
ECDH                      3         0.0006
ECDHE                     438449    81.7144
ECDHE and DHE             230817    43.0177
RSA                       462690    86.2322

Supported PFS             Count     Percent  PFS Percent
-------------------------+---------+--------+-----------
DH,1024bits               156486    29.1645  53.7976
DH,1338bits               1         0.0002   0.0003
DH,1536bits               1         0.0002   0.0003
DH,2048bits               125695    23.426   43.2121
DH,2236bits               13        0.0024   0.0045
DH,2432bits               2         0.0004   0.0007
DH,2560bits               1         0.0002   0.0003
DH,3072bits               96        0.0179   0.033
DH,3092bits               1         0.0002   0.0003
DH,4094bits               1         0.0002   0.0003
DH,4096bits               8225      1.5329   2.8276
DH,4098bits               1         0.0002   0.0003
DH,512bits                39        0.0073   0.0134
DH,6144bits               2         0.0004   0.0007
DH,768bits                413       0.077    0.142
DH,8192bits               2         0.0004   0.0007
ECDH,B-571,570bits        1680      0.3131   0.3832
ECDH,K-163,163bits        1         0.0002   0.0002
ECDH,P-192,192bits        13        0.0024   0.003
ECDH,P-224,224bits        85        0.0158   0.0194
ECDH,P-256,256bits        424488    79.1124  96.8158
ECDH,P-384,384bits        3868      0.7209   0.8822
ECDH,P-521,521bits        9879      1.8412   2.2532
Prefer DH,1024bits        55460     10.3362  19.0663
Prefer DH,1536bits        1         0.0002   0.0003
Prefer DH,2048bits        7764      1.447    2.6692
Prefer DH,3072bits        10        0.0019   0.0034
Prefer DH,4096bits        364       0.0678   0.1251
Prefer DH,768bits         48        0.0089   0.0165
Prefer ECDH,B-571,570bits 1483      0.2764   0.3382
Prefer ECDH,K-163,163bits 1         0.0002   0.0002
Prefer ECDH,P-224,224bits 82        0.0153   0.0187
Prefer ECDH,P-256,256bits 386031    71.9451  88.0447
Prefer ECDH,P-384,384bits 2985      0.5563   0.6808
Prefer ECDH,P-521,521bits 8928      1.6639   2.0363
Prefer PFS                463157    86.3192  0
Support PFS               498511    92.9082  0

Supported ECC curves      Count     Percent 
-------------------------+---------+--------
brainpoolP256r1           2250      0.4193   
brainpoolP384r1           2253      0.4199   
brainpoolP512r1           2257      0.4206   
prime192v1                1426      0.2658   
prime256v1                435505    81.1657  
prime256v1 Only           381299    71.0632  
secp160k1                 1377      0.2566   
secp160r1                 1382      0.2576   
secp160r2                 1376      0.2564   
secp192k1                 1394      0.2598   
secp224k1                 1465      0.273    
secp224r1                 4037      0.7524   
secp224r1 Only            1         0.0002   
secp256k1                 3628      0.6762   
secp384r1                 54625     10.1805  
secp384r1 Only            479       0.0893   
secp521r1                 24462     4.559    
secp521r1 Only            129       0.024    
sect163k1                 1388      0.2587   
sect163k1 Only            1         0.0002   
sect163r1                 1387      0.2585   
sect163r2                 1387      0.2585   
sect193r1                 1385      0.2581   
sect193r2                 1384      0.2579   
sect233k1                 1466      0.2732   
sect233r1                 1464      0.2728   
sect239k1                 1461      0.2723   
sect283k1                 3583      0.6678   
sect283r1                 3581      0.6674   
sect409k1                 3584      0.668    
sect409r1                 3584      0.668    
sect571k1                 3594      0.6698   
sect571r1                 3596      0.6702   

Unsupported curve fallback     Count     Percent 
------------------------------+---------+--------
False                          67862     12.6475  
True                           312481    58.2375  
order-specific                 96        0.0179   
unknown                        156124    29.097   

ECC curve ordering        Count     Percent 
-------------------------+---------+--------
client                    5459      1.0174   
inconclusive-noecc        12        0.0022   
server                    430685    80.2674  
unknown                   100407    18.713   

TLSv1.2 PFS supported sigalgs  Count     Percent 
------------------------------+---------+--------
ECDSA-SHA1                     41280     7.6934   
ECDSA-SHA1 Only                2         0.0004   
ECDSA-SHA224                   41274     7.6923   
ECDSA-SHA256                   55318     10.3097  
ECDSA-SHA384                   55314     10.3089  
ECDSA-SHA512                   55315     10.3091  
ECDSA-SHA512 Only              1         0.0002   
RSA-MD5                        156847    29.2318  
RSA-SHA1                       379786    70.7813  
RSA-SHA1 Only                  42067     7.8401   
RSA-SHA224                     314857    58.6803  
RSA-SHA256                     345177    64.3311  
RSA-SHA256 Only                6253      1.1654   
RSA-SHA384                     316545    58.9949  
RSA-SHA384 Only                1         0.0002   
RSA-SHA512                     316760    59.035   
RSA-SHA512 Only                293       0.0546   

TLSv1.2 PFS ordering           Count     Percent 
------------------------------+---------+--------
client                         241325    44.9761  
indeterminate                  115       0.0214   
intolerant                     4940      0.9207   
order-fallback                 4         0.0007   
server                         182715    34.0529  
unsupported                    21177     3.9468   

TLSv1.2 PFS sigalg fallback    Count     Percent 
------------------------------+---------+--------
ECDSA SHA1                     41260     7.6897   
ECDSA intolerant               48        0.0089   
ECDSA pfs-rsa-SHA512           14029     2.6146   
ECDSA soft-nopfs               2         0.0004   
RSA False                      155749    29.0272  
RSA SHA1                       196182    36.5627  
RSA intolerant                 36096     6.7273   
RSA pfs-ecdsa-SHA512           8         0.0015   
RSA soft-nopfs                 1168      0.2177   

Renegotiation             Count     Percent 
-------------------------+---------+--------
False                     6429      1.1982   
insecure                  17943     3.3441   
secure                    512191    95.4578  

Compression               Count     Percent 
-------------------------+---------+--------
1 (zlib compression)      9264      1.7265   
False                     6429      1.1982   
NONE                      520870    97.0753  

TLS session ticket hint   Count     Percent 
-------------------------+---------+--------
1                         5         0.0009   
1 only                    5         0.0009   
2                         2         0.0004   
2 only                    2         0.0004   
5                         1         0.0002   
5 only                    1         0.0002   
10                        12        0.0022   
10 only                   12        0.0022   
15                        8         0.0015   
15 only                   8         0.0015   
30                        17        0.0032   
30 only                   15        0.0028   
60                        98        0.0183   
60 only                   93        0.0173   
65                        2         0.0004   
65 only                   2         0.0004   
70                        6         0.0011   
100                       16        0.003    
100 only                  16        0.003    
120                       29        0.0054   
120 only                  29        0.0054   
128                       3         0.0006   
128 only                  3         0.0006   
150                       2         0.0004   
180                       48        0.0089   
180 only                  45        0.0084   
240                       8         0.0015   
240 only                  8         0.0015   
300                       254800    47.4874  
300 only                  250537    46.6929  
302                       3         0.0006   
302 only                  3         0.0006   
360                       2         0.0004   
360 only                  1         0.0002   
400                       6         0.0011   
400 only                  6         0.0011   
420                       133       0.0248   
420 only                  105       0.0196   
480                       15        0.0028   
480 only                  15        0.0028   
500                       4         0.0007   
500 only                  4         0.0007   
540                       1         0.0002   
540 only                  1         0.0002   
600                       27913     5.2022   
600 only                  27746     5.1711   
700                       1         0.0002   
700 only                  1         0.0002   
840                       1         0.0002   
840 only                  1         0.0002   
900                       923       0.172    
900 only                  896       0.167    
960                       1         0.0002   
960 only                  1         0.0002   
1200                      2345      0.437    
1200 only                 2339      0.4359   
1320                      1         0.0002   
1320 only                 1         0.0002   
1500                      11        0.0021   
1500 only                 10        0.0019   
1800                      536       0.0999   
1800 only                 528       0.0984   
1980                      1         0.0002   
1980 only                 1         0.0002   
2100                      1         0.0002   
2100 only                 1         0.0002   
2400                      8         0.0015   
2400 only                 8         0.0015   
2700                      10        0.0019   
2700 only                 10        0.0019   
3000                      26        0.0048   
3000 only                 26        0.0048   
3300                      1         0.0002   
3300 only                 1         0.0002   
3600                      614       0.1144   
3600 only                 602       0.1122   
3900                      1         0.0002   
3900 only                 1         0.0002   
4100                      1         0.0002   
4100 only                 1         0.0002   
5160                      1         0.0002   
5160 only                 1         0.0002   
5400                      14        0.0026   
5400 only                 7         0.0013   
6000                      200       0.0373   
6000 only                 200       0.0373   
7200                      15561     2.9001   
7200 only                 15539     2.896    
10800                     3493      0.651    
10800 only                3481      0.6488   
14400                     98        0.0183   
14400 only                98        0.0183   
18000                     8         0.0015   
18000 only                8         0.0015   
21600                     4783      0.8914   
21600 only                4783      0.8914   
25200                     1         0.0002   
25200 only                1         0.0002   
28800                     2385      0.4445   
28800 only                2380      0.4436   
36000                     1170      0.2181   
36000 only                1163      0.2167   
43200                     39        0.0073   
43200 only                39        0.0073   
60000                     1         0.0002   
60000 only                1         0.0002   
64800                     4661      0.8687   
64800 only                4660      0.8685   
72000                     31        0.0058   
72000 only                31        0.0058   
79200                     1         0.0002   
79200 only                1         0.0002   
86000                     46        0.0086   
86000 only                46        0.0086   
86400                     3553      0.6622   
86400 only                3545      0.6607   
100800                    10783     2.0096   
100800 only               10771     2.0074   
115200                    1         0.0002   
115200 only               1         0.0002   
129600                    8         0.0015   
129600 only               8         0.0015   
172800                    9         0.0017   
172800 only               9         0.0017   
216000                    1         0.0002   
216000 only               1         0.0002   
432000                    2         0.0004   
432000 only               2         0.0004   
604800                    2         0.0004   
604800 only               1         0.0002   
None                      206697    38.5224  
None only                 202099    37.6655  

Certificate sig alg     Count     Percent 
-------------------------+---------+--------
None                      10673     1.9891   
ecdsa-with-SHA256         55263     10.2994  
sha1WithRSAEncryption     66180     12.3341  
sha256WithRSAEncryption   429902    80.1214  
sha384WithRSAEncryption   5         0.0009   
sha512WithRSAEncryption   37        0.0069   

Certificate key size    Count     Percent 
-------------------------+---------+--------
ECDSA 256                 55328     10.3116  
ECDSA 384                 15        0.0028   
RSA 1024                  33        0.0062   
RSA 2048                  474602    88.4522  
RSA 2049                  2         0.0004   
RSA 2058                  3         0.0006   
RSA 2064                  1         0.0002   
RSA 2084                  4         0.0007   
RSA 2096                  2         0.0004   
RSA 2408                  1         0.0002   
RSA 2480                  1         0.0002   
RSA 3071                  1         0.0002   
RSA 3072                  127       0.0237   
RSA 3096                  2         0.0004   
RSA 3248                  3         0.0006   
RSA 4042                  1         0.0002   
RSA 4048                  1         0.0002   
RSA 4056                  24        0.0045   
RSA 4069                  1         0.0002   
RSA 4092                  6         0.0011   
RSA 4094                  2         0.0004   
RSA 4095                  1         0.0002   
RSA 4096                  20517     3.8238   
RSA 4098                  1         0.0002   
RSA 4196                  2         0.0004   
RSA 8192                  6         0.0011   
RSA/ECDSA Dual Stack      14112     2.6301

OCSP stapling             Count     Percent 
-------------------------+---------+--------
Supported                 122156    22.7664  
Unsupported               414407    77.2336  

Supported Protocols       Count     Percent
-------------------------+---------+-------
SSL2                      22019     4.1037
SSL2 Only                 16        0.003
SSL3                      114551    21.349
SSL3 Only                 451       0.0841
SSL3 or TLS1 Only         62546     11.6568
SSL3 or lower Only        465       0.0867
TLS1                      530535    98.8766
TLS1 Only                 38783     7.228
TLS1 or lower Only        83051     15.4783
TLS1.1                    440269    82.0536
TLS1.1 Only               341       0.0636
TLS1.1 or up Only         5269      0.982
TLS1.2                    450259    83.9154
TLS1.2 Only               2150      0.4007
TLS1.2, 1.0 but not 1.1   10510     1.9588


Statistics from 571668 chains provided by 706831 hosts

Server provided chains    Count     Percent
-------------------------+---------+-------
complete                  509502    72.0826
incomplete                25925     3.6678
untrusted                 171404    24.2496

Trusted chain statistics
========================

Chain length              Count     Percent
-------------------------+---------+-------
2                         33        0.0058
3                         569492    99.6194
4                         2129      0.3724
5                         14        0.0024

CA key size in chains     Count
-------------------------+---------
ECDSA 256                 55261     
ECDSA 384                 55264     
RSA 1024                  33        
RSA 2045                  3         
RSA 2048                  886633    
RSA 4096                  148266    

Chains with CA key        Count     Percent
-------------------------+---------+-------
ECDSA 256                 55261     9.6666
ECDSA 384                 55264     9.6671
RSA 1024                  31        0.0054
RSA 2045                  3         0.0005
RSA 2048                  516046    90.2702
RSA 4096                  147728    25.8416

Signature algorithm (ex. root) Count
------------------------------+---------
ecdsa-with-SHA384              55257     
sha1WithRSAEncryption          74114     
sha256WithRSAEncryption        311465    
sha384WithRSAEncryption        132882    
sha512WithRSAEncryption        74        

Eff. host cert chain LoS  Count     Percent
-------------------------+---------+-------
80                        74154     12.9715
112                       442237    77.3591
128                       55277     9.6694

Most common root CAs                          Count     Percent
---------------------------------------------+---------+-------
(157753a5) AddTrust External CA Root          21173     3.7037
(244b5494) DigiCert High Assurance EV Root CA 22796     3.9876
(2c543cd1) GeoTrust Global CA                 103983    18.1894
(2e4eed3c) thawte Primary Root CA             22155     3.8755
(3513523f) DigiCert Global Root CA            8921      1.5605
(4bfab552) Starfield Root Certificate Authori 7786      1.362
(5ad8a5d6) GlobalSign Root CA                 49934     8.7348
(653b494a) Baltimore CyberTrust Root          11652     2.0382
(ae8153b9) StartCom Certification Authority   9075      1.5875
(b204d74a) VeriSign Class 3 Public Primary Ce 33097     5.7895
(cbf06781) Go Daddy Root Certificate Authorit 50135     8.77
(d6325660) COMODO RSA Certification Authority 118944    20.8065
(eed8c118) COMODO ECC Certification Authority 55250     9.6647
(fc5a8f99) USERTrust RSA Certification Author 13826     2.4185


Scan performed between 15th of December and 26 of December 2015.

Testing for SLOTH

Researchers at INRIA have published a new attack against TLS they called SLOTH. More details about it can be found at http://sloth-attack.org.

The problematic part, is that many frameworks (that is GnuTLS, OpenSSL, NSS) even if they don’t advertise support for MD5 hashes, would in fact accept messages signed with this obsolete and insecure hash.

Thus, to test properly if a server is vulnerable against this attack, we need a client that is misbehaving.

For easy writing of such test cases I have been working on the tlsfuzzer. Just released version of it was extended to be able test servers for vulnerability against the SLOTH attack (to be more precise, just the client impersonation attack – the most severe of the described ones).

Client impersonation attack

To test vulnerability of server to client impersonation attack, you will need the TLS server, set of a client certificate and key trusted by server and Python (any version since 2.6 or 3.2 will do). The full procedure for testing a server is as follows.

Certificates:

For testing we will need a set of certificates trusted by the server, in this case we will cheat a little and tell the server to trust a certificate directly.

Client certificate:

openssl req -x509 -newkey rsa -keyout localuser.key \
-out localuser.crt -nodes -batch -subj /CN=Local\ User

Server certificate:

openssl req -x509 -newkey rsa -keyout localhost.key -out localhost.crt -nodes -batch -subj /CN=localhost

Server setup

The test client expects an HTTP server on localhost, on port 4433 that requests client certificates:

openssl s_server -key localhost.key -cert localhost.crt -verify 1 -www -tls1_2 -CAfile localuser.crt

Reproducer setup

The reproducer has a bit of dependencies on the system.

First thing, you will need python pip command. In case your distribution doesn’t provide it, download it from https://bootstrap.pypa.io/get-pip.py and run using python:

python get-pip.py

After that, install dependencies of tlsfuzzer:

pip install --pre tlslite-ng

Note: Installation may print an error: “error: invalid command ‘bdist_wheel'”, it can be ignored, it doesn’t break installation of package. In case you want to fix it anyway, upgrade setuptools package installed on your system by running:

pip install --upgrade setuptools

Finally download the reproducer itself:

git clone https://github.com/tomato42/tlsfuzzer.git

Running reproducer

Once we have all pieces in place, we can run the reproducer as follows:

cd tlsfuzzer
PYTHONPATH=. python scripts/test-certificate-verify.py -k /tmp/localuser.key -c /tmp/localuser.crt

(if you generated user certificates in /tmp directory)

Results

If the execution finished with

MD5 CertificateVerify test version 4                              
MD5 forced...
OK
Sanity check...
OK
Test end
successful: 2
failed: 0

That means that the server is not vulnerable.

In case the “MD5 forced” failed, but “Sanity check” resulted in “OK”, it means that the server is vulnerable.

Example failure may look like this:

MD5 CertificateVerify (CVE-2015-7575 aka SLOTH) test version 4
MD5 forced...
Error encountered while processing node <tlsfuzzer.expect.ExpectClose object at 0xe3a410> with last message being: <tlslite.messages.Message object at 0xe3a8d0>
Error while processing
Traceback (most recent call last):
  File "scripts/test-certificate-verify.py", line 140, in main
    runner.run()
  File "/root/tlsfuzzer/tlsfuzzer/runner.py", line 139, in run
    msg.write()))
AssertionError: Unexpected message from peer: ChangeCipherSpec()

Sanity check...
OK
Test end
successful: 1
failed: 1

(if the error was caused by Unexpected message from peer: ChangeCipherSpec, as shown above, it means that the server is definitely vulnerable)

In case the Sanity check failed, that may mean one of few things:

  • the server is not listening on localhost on port 4433
  • the server does not support TLS v1.2 protocol, in that case it is not vulnerable (note: this is NOT a good workaround)
  • the server does not support TLS_RSA_WITH_AES_128_CBC_SHA cipher (AES128-SHA in OpenSSL naming system)
  • the server did not ask for certificate on first connection attempt

November 2015 scan results

Number of servers which support TLS has grown by 1.3% since last month.

Cipher suites

Surprisingly, 3.2% more servers support just AES cipher suites now. At the same time we lost 3.7% market share of Camellia.

The good news is that RC4 support has dropped by 4.7%. Unfortunately, the amount of servers which default to RC4 is still rather high, at a 4% mark level.

Ciphersuites which are completely insecure have lost just 0.5%.

Essentially no change in server side vs client side cipher ordering, with just a small increase in the former.

Key exchange

Ciphersuites which provide forward secrecy are still growing, with ECDHE gaining 0.7% and support for ECDHE and DHE at the same time gaining 0.3%.

As usual, most of the gains are caused by the P-256 curve, with it increasing by 0.65%.

We’re now at 85% mark for servers which prefer forward secure ciphersuites, an increase of 1.11% since last month.

Hash and signature algorithms

Support for the obsolete RSA-MD5 signature algorithm continues to drop, but rather slowly, loosing just 1.1% since previous survey.

Fortunately, servers which are limited to just RSA-SHA1 signatures are also dropping, showing 0.3% fewer servers which do force this mechanism on clients. Support for stronger algorithms like SHA256 is still rather slow on the up tick, gaining just 0.7%.

Vulnerabilities

Little changes here, still 3.5% of servers vulnerable to insecure renegotiation attacks and just under 2% vulnerable to CRIME attack.

Certificates

Use of SHA-256 signatures in certificates continues its rise as de facto the signature standard, gaining 1.5% since last month.

This is also the first time when signatures with ECDSA certificates broke double digits, through an increase of 0.6%. We are less than 5% away from two most popular signature methods both using SHA-256.

Only minimal changes in the key sizes department, just that the ECDSA 256 bit keys have also increased by 0.6%, gaining a double digit market share.

At the same time, 2.6% of servers use configuration in which they support both of those public key standards.

Protocols

Little to no changes here. SSLv2 and SSLv3 are loosing, TLSv1.0 more or less stable, TLSv1.1 and TLSv1.2 gaining. All changes below 0.5% mark.

Results

SSL/TLS survey of 530912 websites from Alexa's top 1 million
Stats only from connections that did provide valid certificates
(or anonymous DH from servers that do also have valid certificate installed)


Supported Ciphers         Count     Percent
-------------------------+---------+-------
3DES                      457179    86.112
3DES Only                 577       0.1087
AES                       523844    98.6687
AES Only                  40463     7.6214
AES-CBC                   523220    98.5512
AES-CBC Only              10280     1.9363
AES-GCM                   398334    75.0283
AES-GCM Only              481       0.0906
CAMELLIA                  217685    41.0021
CAMELLIA Only             1         0.0002
CHACHA20                  67665     12.7451
CHACHA20 Only             2         0.0004
Insecure                  60479     11.3915
RC4                       191727    36.1128
RC4 Only                  977       0.184
RC4 Preferred             21462     4.0425
RC4 forced in TLS1.1+     11194     2.1084
x:FF 29 RC4 Only          1213      0.2285
x:FF 29 RC4 Preferred     23754     4.4742
x:FF 29 incompatible      400       0.0753
x:FF 35 RC4 Only          1476      0.278
x:FF 35 RC4 Preferred     23839     4.4902
x:FF 35 incompatible      402       0.0757
y:DHE-RSA-SEED-SHA        65003     12.2436
y:IDEA-CBC-SHA            59414     11.1909
y:SEED-SHA                76068     14.3278
z:ADH-AES128-GCM-SHA256   396       0.0746
z:ADH-AES128-SHA          744       0.1401
z:ADH-AES128-SHA256       292       0.055
z:ADH-AES256-GCM-SHA384   408       0.0768
z:ADH-AES256-SHA          756       0.1424
z:ADH-AES256-SHA256       293       0.0552
z:ADH-CAMELLIA128-SHA     374       0.0704
z:ADH-CAMELLIA256-SHA     382       0.072
z:ADH-DES-CBC-SHA         303       0.0571
z:ADH-DES-CBC3-SHA        756       0.1424
z:ADH-RC4-MD5             616       0.116
z:ADH-SEED-SHA            305       0.0574
z:AECDH-AES128-SHA        10719     2.019
z:AECDH-AES256-SHA        10755     2.0258
z:AECDH-DES-CBC3-SHA      10685     2.0126
z:AECDH-NULL-SHA          63        0.0119
z:AECDH-RC4-SHA           10125     1.9071
z:DES-CBC-MD5             11270     2.1228
z:DES-CBC-SHA             36559     6.8861
z:DES-CBC3-MD5            23236     4.3766
z:ECDHE-RSA-NULL-SHA      68        0.0128
z:EDH-RSA-DES-CBC-SHA     31274     5.8906
z:EXP-ADH-DES-CBC-SHA     203       0.0382
z:EXP-ADH-RC4-MD5         199       0.0375
z:EXP-DES-CBC-SHA         14643     2.7581
z:EXP-EDH-RSA-DES-CBC-SHA 11812     2.2249
z:EXP-RC2-CBC-MD5         17779     3.3488
z:EXP-RC4-MD5             18577     3.4991
z:EXP1024-DES-CBC-SHA     4531      0.8534
z:EXP1024-RC4-SHA         4613      0.8689
z:IDEA-CBC-MD5            2255      0.4247
z:NULL-MD5                237       0.0446
z:NULL-SHA                236       0.0445
z:NULL-SHA256             32        0.006
z:RC2-CBC-MD5             11512     2.1683
z:RC4-64-MD5              922       0.1737

Cipher ordering           Count     Percent
-------------------------+---------+-------
Client side               134022    25.2437
Server side               396890    74.7563

Supported Handshakes      Count     Percent
-------------------------+---------+-------
ADH                       896       0.1688
AECDH                     10782     2.0308
DHE                       289298    54.4908
ECDH                      3         0.0006
ECDHE                     425231    80.0944
ECDHE and DHE             223210    42.0427
RSA                       458647    86.3885

Supported PFS             Count     Percent  PFS Percent
-------------------------+---------+--------+-----------
DH,1024bits               159457    30.0345  55.1186
DH,1536bits               1         0.0002   0.0003
DH,2048bits               121879    22.9565  42.1292
DH,2236bits               14        0.0026   0.0048
DH,3072bits               108       0.0203   0.0373
DH,3092bits               1         0.0002   0.0003
DH,4096bits               7458      1.4048   2.578
DH,512bits                40        0.0075   0.0138
DH,6144bits               1         0.0002   0.0003
DH,768bits                439       0.0827   0.1517
DH,8192bits               2         0.0004   0.0007
ECDH,B-571,570bits        1680      0.3164   0.3951
ECDH,K-571,570bits        1         0.0002   0.0002
ECDH,P-192,192bits        11        0.0021   0.0026
ECDH,P-224,224bits        81        0.0153   0.019
ECDH,P-256,256bits        411892    77.582   96.8631
ECDH,P-384,384bits        3589      0.676    0.844
ECDH,P-521,521bits        9333      1.7579   2.1948
Prefer DH,1024bits        58262     10.9739  20.1391
Prefer DH,1536bits        1         0.0002   0.0003
Prefer DH,2048bits        10378     1.9547   3.5873
Prefer DH,2236bits        1         0.0002   0.0003
Prefer DH,3072bits        13        0.0024   0.0045
Prefer DH,4096bits        392       0.0738   0.1355
Prefer DH,768bits         66        0.0124   0.0228
Prefer ECDH,B-571,570bits 1478      0.2784   0.3476
Prefer ECDH,K-571,570bits 1         0.0002   0.0002
Prefer ECDH,P-224,224bits 78        0.0147   0.0183
Prefer ECDH,P-256,256bits 370937    69.8679  87.2319
Prefer ECDH,P-384,384bits 3291      0.6199   0.7739
Prefer ECDH,P-521,521bits 8426      1.5871   1.9815
Prefer PFS                453324    85.3859  0
Support PFS               491319    92.5425  0

Supported ECC curves      Count     Percent 
-------------------------+---------+--------
brainpoolP256r1           2073      0.3905   
brainpoolP384r1           2074      0.3906   
brainpoolP512r1           2074      0.3906   
prime192v1                1449      0.2729   
prime256v1                422425    79.5659  
prime256v1 Only           368568    69.4217  
secp160k1                 1406      0.2648   
secp160r1                 1411      0.2658   
secp160r2                 1406      0.2648   
secp192k1                 1423      0.268    
secp224k1                 1491      0.2808   
secp224r1                 4011      0.7555   
secp256k1                 3482      0.6559   
secp384r1                 54256     10.2194  
secp384r1 Only            444       0.0836   
secp521r1                 23612     4.4474   
secp521r1 Only            128       0.0241   
sect163k1                 1415      0.2665   
sect163k1 Only            2         0.0004   
sect163r1                 1413      0.2661   
sect163r2                 1409      0.2654   
sect193r1                 1409      0.2654   
sect193r2                 1407      0.265    
sect233k1                 1486      0.2799   
sect233r1                 1486      0.2799   
sect239k1                 1486      0.2799   
sect283k1                 3447      0.6493   
sect283k1 Only            2         0.0004   
sect283r1                 3442      0.6483   
sect409k1                 3444      0.6487   
sect409r1                 3443      0.6485   
sect571k1                 3454      0.6506   
sect571r1                 3454      0.6506   

Unsupported curve fallback     Count     Percent 
------------------------------+---------+--------
False                          69315     13.0558  
True                           299493    56.411   
order-specific                 82        0.0154   
unknown                        162022    30.5177  

ECC curve ordering        Count     Percent 
-------------------------+---------+--------
client                    5116      0.9636   
inconclusive-noecc        8         0.0015   
server                    417915    78.7164  
unknown                   107873    20.3184  

TLSv1.2 PFS supported sigalgs  Count     Percent 
------------------------------+---------+--------
ECDSA-SHA1                     39752     7.4875   
ECDSA-SHA1 Only                2         0.0004   
ECDSA-SHA224                   39755     7.4881   
ECDSA-SHA256                   53701     10.1149  
ECDSA-SHA384                   53712     10.1169  
ECDSA-SHA512                   53734     10.1211  
ECDSA-SHA512 Only              22        0.0041   
RSA-MD5                        164964    31.0718  
RSA-SHA1                       368019    69.3183  
RSA-SHA1 Only                  42674     8.0379   
RSA-SHA224                     303273    57.123   
RSA-SHA256                     332849    62.6938  
RSA-SHA256 Only                6204      1.1686   
RSA-SHA384                     304966    57.4419  
RSA-SHA384 Only                1         0.0002   
RSA-SHA512                     305210    57.4879  
RSA-SHA512 Only                277       0.0522   

TLSv1.2 PFS ordering           Count     Percent 
------------------------------+---------+--------
client                         233407    43.9634  
indeterminate                  45        0.0085   
intolerant                     4576      0.8619   
order-fallback                 8         0.0015   
server                         177923    33.5127  
unsupported                    21601     4.0687   

TLSv1.2 PFS sigalg fallback    Count     Percent 
------------------------------+---------+--------
ECDSA SHA1                     39724     7.4822   
ECDSA intolerant               116       0.0218   
ECDSA pfs-rsa-SHA512           13917     2.6213   
ECDSA soft-nopfs               3         0.0006   
RSA False                      163706    30.8349  
RSA SHA1                       176523    33.249   
RSA intolerant                 35829     6.7486   
RSA pfs-ecdsa-SHA512           27        0.0051   
RSA soft-nopfs                 1308      0.2464   

Renegotiation             Count     Percent 
-------------------------+---------+--------
False                     6621      1.2471   
insecure                  18673     3.5172   
secure                    505618    95.2357  

Compression               Count     Percent 
-------------------------+---------+--------
1 (zlib compression)      9772      1.8406   
False                     6621      1.2471   
NONE                      514519    96.9123  

TLS session ticket hint   Count     Percent 
-------------------------+---------+--------
1                         4         0.0008   
1 only                    4         0.0008   
2                         2         0.0004   
2 only                    2         0.0004   
10                        11        0.0021   
10 only                   11        0.0021   
15                        10        0.0019   
15 only                   10        0.0019   
30                        10        0.0019   
30 only                   9         0.0017   
60                        97        0.0183   
60 only                   90        0.017    
65                        2         0.0004   
65 only                   2         0.0004   
70                        6         0.0011   
100                       15        0.0028   
100 only                  15        0.0028   
120                       27        0.0051   
120 only                  27        0.0051   
128                       2         0.0004   
128 only                  2         0.0004   
150                       2         0.0004   
180                       41        0.0077   
180 only                  38        0.0072   
240                       5         0.0009   
240 only                  5         0.0009   
300                       244735    46.0971  
300 only                  240267    45.2555  
302                       3         0.0006   
302 only                  3         0.0006   
360                       2         0.0004   
360 only                  1         0.0002   
400                       8         0.0015   
400 only                  8         0.0015   
420                       124       0.0234   
420 only                  97        0.0183   
450                       1         0.0002   
450 only                  1         0.0002   
480                       13        0.0024   
480 only                  13        0.0024   
500                       3         0.0006   
500 only                  3         0.0006   
540                       1         0.0002   
540 only                  1         0.0002   
600                       26475     4.9867   
600 only                  26305     4.9547   
700                       1         0.0002   
700 only                  1         0.0002   
720                       1         0.0002   
720 only                  1         0.0002   
840                       1         0.0002   
840 only                  1         0.0002   
900                       878       0.1654   
900 only                  861       0.1622   
960                       2         0.0004   
960 only                  2         0.0004   
1200                      2334      0.4396   
1200 only                 2330      0.4389   
1320                      1         0.0002   
1320 only                 1         0.0002   
1500                      9         0.0017   
1500 only                 8         0.0015   
1800                      499       0.094    
1800 only                 490       0.0923   
1980                      1         0.0002   
1980 only                 1         0.0002   
2100                      1         0.0002   
2100 only                 1         0.0002   
2400                      8         0.0015   
2400 only                 8         0.0015   
2700                      10        0.0019   
2700 only                 10        0.0019   
3000                      26        0.0049   
3000 only                 26        0.0049   
3600                      573       0.1079   
3600 only                 560       0.1055   
3900                      3         0.0006   
3900 only                 3         0.0006   
4200                      1         0.0002   
5160                      1         0.0002   
5160 only                 1         0.0002   
5400                      13        0.0024   
5400 only                 6         0.0011   
6000                      179       0.0337   
6000 only                 179       0.0337   
7200                      15645     2.9468   
7200 only                 15623     2.9427   
10800                     3114      0.5865   
10800 only                3110      0.5858   
14400                     99        0.0186   
14400 only                99        0.0186   
18000                     8         0.0015   
18000 only                8         0.0015   
21600                     4849      0.9133   
21600 only                4637      0.8734   
25200                     1         0.0002   
25200 only                1         0.0002   
28800                     3555      0.6696   
28800 only                3543      0.6673   
36000                     1157      0.2179   
36000 only                1150      0.2166   
43200                     40        0.0075   
43200 only                40        0.0075   
60000                     1         0.0002   
60000 only                1         0.0002   
64800                     51789     9.7547   
64800 only                51762     9.7496   
72000                     29        0.0055   
72000 only                29        0.0055   
84600                     1         0.0002   
84600 only                1         0.0002   
86000                     39        0.0073   
86000 only                39        0.0073   
86400                     3482      0.6559   
86400 only                3471      0.6538   
100800                    10699     2.0152   
100800 only               10688     2.0131   
129600                    10        0.0019   
129600 only               10        0.0019   
172800                    9         0.0017   
172800 only               9         0.0017   
216000                    2         0.0004   
216000 only               2         0.0004   
432000                    2         0.0004   
432000 only               2         0.0004   
604800                    5         0.0009   
604800 only               3         0.0006   
864000                    3         0.0006   
864000 only               3         0.0006   
None                      165273    31.13    
None only                 160236    30.1813  

Certificate sig alg     Count     Percent 
-------------------------+---------+--------
None                      11419     2.1508   
ecdsa-with-SHA256         53709     10.1164  
sha1WithRSAEncryption     79229     14.9232  
sha256WithRSAEncryption   413158    77.8204  
sha384WithRSAEncryption   6         0.0011   
sha512WithRSAEncryption   33        0.0062   

Certificate key size    Count     Percent 
-------------------------+---------+--------
ECDSA 256                 53748     10.1237  
ECDSA 384                 12        0.0023   
ECDSA 521                 1         0.0002   
RSA 1024                  38        0.0072   
RSA 10240                 8         0.0015   
RSA 2048                  470388    88.6     
RSA 2049                  4         0.0008   
RSA 2056                  1         0.0002   
RSA 2058                  2         0.0004   
RSA 2064                  1         0.0002   
RSA 2084                  3         0.0006   
RSA 2096                  1         0.0002   
RSA 2408                  2         0.0004   
RSA 2432                  2         0.0004   
RSA 2480                  1         0.0002   
RSA 3071                  1         0.0002   
RSA 3072                  144       0.0271   
RSA 3096                  2         0.0004   
RSA 3120                  2         0.0004   
RSA 3248                  2         0.0004   
RSA 4042                  1         0.0002   
RSA 4048                  1         0.0002   
RSA 4056                  22        0.0041   
RSA 4069                  1         0.0002   
RSA 4086                  1         0.0002   
RSA 4092                  6         0.0011   
RSA 4094                  1         0.0002   
RSA 4096                  20509     3.863    
RSA 4098                  1         0.0002   
RSA 4196                  1         0.0002   
RSA 8192                  3         0.0006   
RSA/ECDSA Dual Stack      13986     2.6343

OCSP stapling             Count     Percent 
-------------------------+---------+--------
Supported                 115313    21.7198  
Unsupported               415599    78.2802  

Supported Protocols       Count     Percent
-------------------------+---------+-------
SSL2                      23492     4.4248
SSL2 Only                 19        0.0036
SSL3                      121502    22.8855
SSL3 Only                 470       0.0885
SSL3 or TLS1 Only         68017     12.8114
SSL3 or lower Only        487       0.0917
TLS1                      525297    98.9424
TLS1 Only                 40462     7.6212
TLS1 or lower Only        89960     16.9444
TLS1.1                    427273    80.4791
TLS1.1 Only               312       0.0588
TLS1.1 or up Only         4757      0.896
TLS1.2                    437543    82.4135
TLS1.2 Only               2067      0.3893
TLS1.2, 1.0 but not 1.1   11005     2.0728



Statistics from 566530 chains provided by 702674 hosts

Server provided chains    Count     Percent
-------------------------+---------+-------
complete                  500948    71.2917
incomplete                27324     3.8886
untrusted                 174402    24.8198

Trusted chain statistics
========================

Chain length              Count     Percent
-------------------------+---------+-------
2                         40        0.0071
3                         564250    99.5975
4                         2220      0.3919
5                         20        0.0035

CA key size in chains     Count
-------------------------+---------
ECDSA 256                 53700     
ECDSA 384                 53703     
RSA 1024                  38        
RSA 2045                  3         
RSA 2048                  886848    
RSA 4096                  140988    

Chains with CA key        Count     Percent
-------------------------+---------+-------
ECDSA 256                 53700     9.4788
ECDSA 384                 53703     9.4793
RSA 1024                  36        0.0064
RSA 2045                  3         0.0005
RSA 2048                  512489    90.4611
RSA 4096                  140488    24.798

Signature algorithm (ex. root) Count
------------------------------+---------
ecdsa-with-SHA384              53695     
sha1WithRSAEncryption          87476     
sha256WithRSAEncryption        301918    
sha384WithRSAEncryption        125587    
sha512WithRSAEncryption        74        

Eff. host cert chain LoS  Count     Percent
-------------------------+---------+-------
80                        87515     15.4475
112                       425304    75.0718
128                       53711     9.4807

Root CAs                                      Count     Percent
---------------------------------------------+---------+-------
(d6325660) COMODO RSA Certification Authority 116038    20.4822
(2c543cd1) GeoTrust Global CA                 109648    19.3543
(eed8c118) COMODO ECC Certification Authority 53687     9.4765
(cbf06781) Go Daddy Root Certificate Authorit 48182     8.5048
(5ad8a5d6) GlobalSign Root CA                 44132     7.7899
(b204d74a) VeriSign Class 3 Public Primary Ce 32386     5.7166
(244b5494) DigiCert High Assurance EV Root CA 26649     4.7039
(2e4eed3c) thawte Primary Root CA             22839     4.0314
(157753a5) AddTrust External CA Root          21671     3.8252
(653b494a) Baltimore CyberTrust Root          12055     2.1279
(fc5a8f99) USERTrust RSA Certification Author 9450      1.668
(ae8153b9) StartCom Certification Authority   9327      1.6463
(4bfab552) Starfield Root Certificate Authori 9162      1.6172
(3513523f) DigiCert Global Root CA            8636      1.5244

Scan performed between 22nd November and 3rd of December 2015