Month: July 2015

July 2015 scan results

Number of servers with trusted certificates is rising again, but it’s not yet at they May levels. Mostly just continuation of established trends. One significant change is that I’ve used most recent Mozilla trust list, with few 1024 bit root CAs removed, causing the average length of certificate chain to drop significantly.

Cipher suites

A bit surprisingly 3DES use has grown by a 1%, likely as a result of servers still worrying about compatibility with Windows XP when deprecating RC4 ciphers (those are down by nearly 3%).

Support for AES remains strong, with CBC mode of it does’t have much space to grow, continuing to hover at around 98%. GCM mode has grown by just under 3%.

RC4 cipher market share is just over 50% mark due to a nearly 3% drop since last month. Count of servers that support only this cipher has also gone down, with just 1484 servers supporting only this cipher in Alexa top 1 million. Unfortunately the amount of servers which prefer RC4 and which use it even in TLS1.1 or later is largely unchanged, falling by just 0.4% and 0.2% respectively.

Completely insecure ciphers also remain unchanged, with a decrease of just 0.5%.

Nearly 7% of servers still support the Logjam vulnerable export grade ciphersuites, a decrease of less than 0.2%.

Key exchange

ECDHE support is still growing, this month increasing by over 2.2% and reaching nearly 75%. As usual, the change is due to increased support for NIST P-256 curve, both in general as well as for preferred ciphersuites.

DHE support remains unchanged.

Nearly 80% of servers now prefer PFS key exchange and just over 90% support it.

This is also the first month where there are no servers which prefer key exchange with 512bit DHE! (last month there were just two, so it’s not a bit change…)

Hash and signature algorithms

No landslides here either. Both support for RSA-MD5 as well as RSA-MD5 keeps growing (by just under 1% and 2% respectively), while support for the more secure RSA-SHA256 is much slower, with just 1.3% increase.

Vulnerabilities

Servers missing secure renegotiation indication and vulnerable to CRIME are falling rather slowly, decreasing nearly insignificantly.

Certificates

Certificates signed with SHA256 are clearly gaining, with a 3% increase since last month. SHA-1 is also nicely falling, reaching a 30% mark now.

Still, most of those newly deployed certificates are using 2048 bit RSA keys, as those have decreased by just 0.3%.

We will also most likely see the first time when less than 100 servers use just 1024 bit RSA certificates.

As I’ve updated the Mozilla trust store, the average length of trust chain has decreased, with over 99% servers using just one intermediate certificate. At the same time the number of CAs above the 1% mark has grown by 4.

Protocols

SSLv3 and SSLv2 protocol keep their slow depreciation walk, with decreases of just 1% and 0.2% respectively. Thankfully, the vast majority of them supports at least TLSv1.0, with just 735 servers supporting SSLv3 at most (decrease of 0.04% since last month).

TLS1.2 market penetration is also reaching new heights, with 78% of servers supporting this protocol, its adoption is also rather slow, with increase of just 1.1%.

Results

SSL/TLS survey of 501992 websites from Alexa's top 1 million
Stats only from connections that did provide valid certificates
(or anonymous DH from servers that do also have valid certificate installed)


Supported Ciphers         Count     Percent
-------------------------+---------+-------
3DES                      424054    84.4743
3DES Only                 812       0.1618
AES                       492491    98.1073
AES Only                  17862     3.5582
AES-CBC                   492390    98.0872
AES-CBC Only              9258      1.8443
AES-GCM                   347128    69.1501
AES-GCM Only              41        0.0082
CAMELLIA                  223605    44.5435
CAMELLIA Only             1         0.0002
CHACHA20                  60925     12.1366
Insecure                  74098     14.7608
RC4                       254399    50.6779
RC4 Only                  1484      0.2956
RC4 Preferred             31098     6.1949
RC4 forced in TLS1.1+     17264     3.4391
x:FF 29 RC4 Only          1823      0.3632
x:FF 29 RC4 Preferred     35210     7.0141
x:FF 29 incompatible      101       0.0201
x:FF 35 RC4 Only          2132      0.4247
x:FF 35 RC4 Preferred     35335     7.039
x:FF 35 incompatible      103       0.0205
y:DHE-RSA-SEED-SHA        90992     18.1262
y:IDEA-CBC-SHA            79674     15.8716
y:SEED-SHA                97028     19.3286
z:ADH-AES128-GCM-SHA256   289       0.0576
z:ADH-AES128-SHA          1315      0.262
z:ADH-AES128-SHA256       198       0.0394
z:ADH-AES256-GCM-SHA384   302       0.0602
z:ADH-AES256-SHA          1320      0.263
z:ADH-AES256-SHA256       200       0.0398
z:ADH-CAMELLIA128-SHA     897       0.1787
z:ADH-CAMELLIA256-SHA     902       0.1797
z:ADH-DES-CBC-SHA         338       0.0673
z:ADH-DES-CBC3-SHA        1333      0.2655
z:ADH-RC4-MD5             1206      0.2402
z:ADH-SEED-SHA            827       0.1647
z:AECDH-AES128-SHA        17845     3.5548
z:AECDH-AES256-SHA        17865     3.5588
z:AECDH-DES-CBC3-SHA      17799     3.5457
z:AECDH-NULL-SHA          50        0.01
z:AECDH-RC4-SHA           17077     3.4018
z:DES-CBC-MD5             13569     2.703
z:DES-CBC-SHA             40067     7.9816
z:DES-CBC3-MD5            26983     5.3752
z:ECDHE-RSA-NULL-SHA      61        0.0122
z:EDH-RSA-DES-CBC-SHA     34341     6.8409
z:EXP-ADH-DES-CBC-SHA     240       0.0478
z:EXP-ADH-RC4-MD5         240       0.0478
z:EXP-DES-CBC-SHA         18671     3.7194
z:EXP-EDH-RSA-DES-CBC-SHA 15391     3.066
z:EXP-RC2-CBC-MD5         22650     4.512
z:EXP-RC4-MD5             23797     4.7405
z:EXP1024-DES-CBC-SHA     5785      1.1524
z:EXP1024-RC4-SHA         5862      1.1677
z:IDEA-CBC-MD5            2484      0.4948
z:NULL-MD5                265       0.0528
z:NULL-SHA                267       0.0532
z:NULL-SHA256             19        0.0038
z:RC2-CBC-MD5             13857     2.7604
z:RC4-64-MD5              1138      0.2267

Cipher ordering           Count     Percent
-------------------------+---------+-------
Client side               130910    26.0781
Server side               371082    73.9219

Supported Handshakes      Count     Percent
-------------------------+---------+-------
ADH                       1436      0.2861
AECDH                     17905     3.5668
DHE                       283230    56.4212
ECDH                      1         0.0002
ECDHE                     373639    74.4313
ECDHE and DHE             201985    40.2367
RSA                       459592    91.5537

Supported PFS             Count     Percent  PFS Percent
-------------------------+---------+--------+-----------
DH,1024bits               204984    40.8341  72.3737
DH,1536bits               2         0.0004   0.0007
DH,2048bits               70215     13.9873  24.7908
DH,2236bits               3         0.0006   0.0011
DH,2430bits               1         0.0002   0.0004
DH,2432bits               1         0.0002   0.0004
DH,3072bits               2679      0.5337   0.9459
DH,4096bits               4693      0.9349   1.657
DH,512bits                76        0.0151   0.0268
DH,768bits                622       0.1239   0.2196
DH,8192bits               1         0.0002   0.0004
ECDH,B-163,163bits        1         0.0002   0.0003
ECDH,B-571,570bits        1404      0.2797   0.3758
ECDH,K-571,570bits        1         0.0002   0.0003
ECDH,P-192,192bits        2         0.0004   0.0005
ECDH,P-224,224bits        72        0.0143   0.0193
ECDH,P-256,256bits        363944    72.5     97.4052
ECDH,P-384,384bits        3765      0.75     1.0077
ECDH,P-521,521bits        6951      1.3847   1.8604
Prefer DH,1024bits        78380     15.6138  27.6736
Prefer DH,1536bits        1         0.0002   0.0004
Prefer DH,2048bits        3926      0.7821   1.3862
Prefer DH,2236bits        1         0.0002   0.0004
Prefer DH,3072bits        31        0.0062   0.0109
Prefer DH,4096bits        150       0.0299   0.053
Prefer DH,768bits         228       0.0454   0.0805
Prefer ECDH,B-163,163bits 1         0.0002   0.0003
Prefer ECDH,B-571,570bits 1210      0.241    0.3238
Prefer ECDH,K-571,570bits 1         0.0002   0.0003
Prefer ECDH,P-224,224bits 42        0.0084   0.0112
Prefer ECDH,P-256,256bits 308148    61.385   82.4721
Prefer ECDH,P-384,384bits 2291      0.4564   0.6132
Prefer ECDH,P-521,521bits 6402      1.2753   1.7134
Prefer PFS                400812    79.8443  0
Support PFS               454884    90.6158  0

Supported ECC curves      Count     Percent 
-------------------------+---------+--------
brainpoolP256r1           405       0.0807   
brainpoolP384r1           405       0.0807   
brainpoolP512r1           405       0.0807   
prime192v1                1373      0.2735   
prime256v1                372791    74.2623  
prime256v1 Only           323403    64.4239  
secp160k1                 1334      0.2657   
secp160r1                 1338      0.2665   
secp160r2                 1334      0.2657   
secp192k1                 1358      0.2705   
secp224k1                 1414      0.2817   
secp224r1                 2898      0.5773   
secp224r1 Only            2         0.0004   
secp256k1                 1708      0.3402   
secp384r1                 49700     9.9006   
secp384r1 Only            314       0.0626   
secp521r1                 17736     3.5331   
secp521r1 Only            116       0.0231   
sect163k1                 1337      0.2663   
sect163k1 Only            2         0.0004   
sect163r1                 1335      0.2659   
sect163r2                 1336      0.2661   
sect163r2 Only            1         0.0002   
sect193r1                 1334      0.2657   
sect193r2                 1333      0.2655   
sect233k1                 1402      0.2793   
sect233r1                 1402      0.2793   
sect239k1                 1401      0.2791   
sect283k1                 1678      0.3343   
sect283r1                 1678      0.3343   
sect409k1                 1678      0.3343   
sect409r1                 1678      0.3343   
sect571k1                 1692      0.3371   
sect571r1                 1691      0.3369   

Unsupported curve fallback     Count     Percent 
------------------------------+---------+--------
False                          83042     16.5425  
True                           242989    48.405   
order-specific                 27        0.0054   
unknown                        175934    35.0472  

ECC curve ordering        Count     Percent 
-------------------------+---------+--------
client                    3093      0.6161   
inconclusive-noecc        24        0.0048   
server                    370124    73.7311  
unknown                   128751    25.648   

TLSv1.2 PFS supported sigalgs  Count     Percent 
------------------------------+---------+--------
ECDSA-SHA1                     33890     6.7511   
ECDSA-SHA1 Only                2         0.0004   
ECDSA-SHA224                   33884     6.7499   
ECDSA-SHA256                   33890     6.7511   
ECDSA-SHA384                   33889     6.7509   
ECDSA-SHA512                   33893     6.7517   
ECDSA-SHA512 Only              4         0.0008   
RSA-MD5                        157874    31.4495  
RSA-SHA1                       329494    65.6373  
RSA-SHA1 Only                  48447     9.651    
RSA-SHA224                     265179    52.8253  
RSA-SHA256                     286453    57.0633  
RSA-SHA256 Only                4521      0.9006   
RSA-SHA384                     266091    53.007   
RSA-SHA512                     266166    53.022   
RSA-SHA512 Only                71        0.0141   

TLSv1.2 PFS ordering           Count     Percent 
------------------------------+---------+--------
client                         233019    46.4189  
indeterminate                  10        0.002    
intolerant                     3229      0.6432   
order-fallback                 23        0.0046   
server                         132720    26.4387  
unsupported                    23607     4.7027   

TLSv1.2 PFS sigalg fallback    Count     Percent 
------------------------------+---------+--------
ECDSA SHA1                     33882     6.7495   
ECDSA intolerant               21        0.0042   
RSA False                      153463    30.5708  
RSA SHA1                       148645    29.611   
RSA intolerant                 28673     5.7118   
RSA pfs-ecdsa-SHA512           1         0.0002   
RSA soft-nopfs                 4517      0.8998   

Renegotiation             Count     Percent 
-------------------------+---------+--------
False                     7266      1.4474   
insecure                  21303     4.2437   
secure                    473423    94.3089  

Compression               Count     Percent 
-------------------------+---------+--------
1 (zlib compression)      11567     2.3042   
False                     7266      1.4474   
NONE                      483159    96.2483  

TLS session ticket hint   Count     Percent 
-------------------------+---------+--------
1                         2         0.0004   
1 only                    2         0.0004   
2                         2         0.0004   
2 only                    2         0.0004   
5                         2         0.0004   
5 only                    2         0.0004   
10                        7         0.0014   
10 only                   7         0.0014   
15                        9         0.0018   
15 only                   9         0.0018   
30                        12        0.0024   
30 only                   12        0.0024   
60                        106       0.0211   
60 only                   99        0.0197   
70                        7         0.0014   
100                       12        0.0024   
100 only                  12        0.0024   
120                       28        0.0056   
120 only                  28        0.0056   
128                       3         0.0006   
128 only                  3         0.0006   
150                       2         0.0004   
180                       47        0.0094   
180 only                  45        0.009    
240                       10        0.002    
240 only                  10        0.002    
300                       220792    43.9832  
300 only                  215544    42.9377  
400                       8         0.0016   
400 only                  8         0.0016   
420                       117       0.0233   
420 only                  79        0.0157   
480                       13        0.0026   
480 only                  13        0.0026   
500                       5         0.001    
500 only                  5         0.001    
540                       1         0.0002   
540 only                  1         0.0002   
600                       22097     4.4019   
600 only                  21925     4.3676   
720                       3         0.0006   
720 only                  2         0.0004   
900                       597       0.1189   
900 only                  577       0.1149   
960                       2         0.0004   
960 only                  2         0.0004   
1200                      1891      0.3767   
1200 only                 1887      0.3759   
1440                      1         0.0002   
1440 only                 1         0.0002   
1500                      9         0.0018   
1500 only                 8         0.0016   
1800                      414       0.0825   
1800 only                 407       0.0811   
2400                      6         0.0012   
2400 only                 5         0.001    
2700                      6         0.0012   
2700 only                 6         0.0012   
3000                      21        0.0042   
3000 only                 21        0.0042   
3300                      1         0.0002   
3300 only                 1         0.0002   
3600                      428       0.0853   
3600 only                 415       0.0827   
3900                      2         0.0004   
3900 only                 2         0.0004   
4200                      1         0.0002   
5400                      18        0.0036   
5400 only                 3         0.0006   
6000                      4         0.0008   
6000 only                 4         0.0008   
7200                      15459     3.0795   
7200 only                 12872     2.5642   
10800                     2078      0.414    
10800 only                2074      0.4132   
14400                     77        0.0153   
14400 only                77        0.0153   
18000                     17        0.0034   
18000 only                17        0.0034   
21600                     5026      1.0012   
21600 only                5024      1.0008   
28800                     2346      0.4673   
28800 only                1578      0.3143   
36000                     1236      0.2462   
36000 only                1230      0.245    
43200                     26        0.0052   
43200 only                26        0.0052   
60000                     1         0.0002   
60000 only                1         0.0002   
64800                     47900     9.542    
64800 only                47888     9.5396   
72000                     12        0.0024   
72000 only                12        0.0024   
86000                     41        0.0082   
86000 only                41        0.0082   
86400                     3432      0.6837   
86400 only                3430      0.6833   
100800                    12605     2.511    
100800 only               12595     2.509    
115200                    1         0.0002   
115200 only               1         0.0002   
129600                    7         0.0014   
129600 only               7         0.0014   
172800                    8         0.0016   
172800 only               8         0.0016   
604800                    2         0.0004   
604800 only               2         0.0004   
864000                    2         0.0004   
864000 only               2         0.0004   
None                      173956    34.6531  
None only                 165035    32.876   

Certificate sig alg     Count     Percent 
-------------------------+---------+--------
None                      18593     3.7038   
ecdsa-with-SHA256         33851     6.7433   
sha1WithRSAEncryption     147349    29.3529  
sha256WithRSAEncryption   320910    63.9273  
sha384WithRSAEncryption   4         0.0008   
sha512WithRSAEncryption   9         0.0018   

Certificate key size    Count     Percent 
-------------------------+---------+--------
ECDSA 256                 33898     6.7527   
ECDSA 384                 7         0.0014   
RSA 1024                  106       0.0211   
RSA 10240                 5         0.001    
RSA 2047                  1         0.0002   
RSA 2048                  450327    89.708   
RSA 2049                  3         0.0006   
RSA 2056                  2         0.0004   
RSA 2058                  2         0.0004   
RSA 2064                  1         0.0002   
RSA 2080                  2         0.0004   
RSA 2084                  6         0.0012   
RSA 2096                  1         0.0002   
RSA 2408                  1         0.0002   
RSA 2432                  4         0.0008   
RSA 2612                  2         0.0004   
RSA 2848                  1         0.0002   
RSA 3024                  1         0.0002   
RSA 3071                  1         0.0002   
RSA 3072                  118       0.0235   
RSA 3096                  1         0.0002   
RSA 3102                  1         0.0002   
RSA 3248                  3         0.0006   
RSA 4042                  1         0.0002   
RSA 4048                  1         0.0002   
RSA 4056                  22        0.0044   
RSA 4069                  1         0.0002   
RSA 4086                  1         0.0002   
RSA 4092                  6         0.0012   
RSA 4094                  1         0.0002   
RSA 4096                  17521     3.4903   
RSA 8192                  7         0.0014   
RSA/ECDSA Dual Stack      56        0.0112

OCSP stapling             Count     Percent 
-------------------------+---------+--------
Supported                 101152    20.1501  
Unsupported               400840    79.8499  

Supported Protocols       Count     Percent
-------------------------+---------+-------
SSL2                      27268     5.432
SSL2 Only                 24        0.0048
SSL3                      136796    27.2506
SSL3 Only                 707       0.1408
SSL3 or TLS1 Only         80735     16.0829
SSL3 or lower Only        735       0.1464
TLS1                      498809    99.3659
TLS1 Only                 47086     9.3798
TLS1 or lower Only        106223    21.1603
TLS1.1                    382607    76.2177
TLS1.1 Only               28        0.0056
TLS1.1 or up Only         2220      0.4422
TLS1.2                    392594    78.2072
TLS1.2 Only               994       0.198
TLS1.2, 1.0 but not 1.1   11334     2.2578

Statistics from 526034 chains provided by 685991 hosts

Server provided chains    Count     Percent
-------------------------+---------+-------
complete                  475051    69.2503
incomplete                24873     3.6258
untrusted                 186067    27.1238

Trusted chain statistics
========================

Chain length              Count     Percent
-------------------------+---------+-------
2                         327       0.0622
3                         523536    99.5251
4                         2138      0.4064
5                         33        0.0063

CA key size in chains     Count
-------------------------+---------
ECDSA 256                 33853     
ECDSA 384                 33855     
RSA 1024                  308       
RSA 2045                  1         
RSA 2048                  866336    
RSA 4096                  119592    

Chains with CA key        Count     Percent
-------------------------+---------+-------
ECDSA 256                 33853     6.4355
ECDSA 384                 33855     6.4359
RSA 1024                  306       0.0582
RSA 2045                  1         0.0002
RSA 2048                  491599    93.4538
RSA 4096                  119050    22.6316

Signature algorithm (ex. root) Count
------------------------------+---------
ecdsa-with-SHA384              33853     
sha1WithRSAEncryption          162869    
sha256WithRSAEncryption        225699    
sha384WithRSAEncryption        105464    
sha512WithRSAEncryption        26        

Eff. host cert chain LoS  Count     Percent
-------------------------+---------+-------
80                        163116    31.0086
112                       329059    62.5547
128                       33859     6.4367

Root CAs                                      Count     Percent
---------------------------------------------+---------+-------
(2c543cd1) GeoTrust Global CA                 112037    21.2984
(d6325660) COMODO RSA Certification Authority 98541     18.7328
(5ad8a5d6) GlobalSign Root CA                 51559     9.8015
(cbf06781) Go Daddy Root Certificate Authorit 47005     8.9357
(eed8c118) COMODO ECC Certification Authority 33844     6.4338
(b204d74a) VeriSign Class 3 Public Primary Ce 30749     5.8454
(2e4eed3c) thawte Primary Root CA             25383     4.8254
(244b5494) DigiCert High Assurance EV Root CA 25365     4.8219
(157753a5) AddTrust External CA Root          15024     2.8561
(653b494a) Baltimore CyberTrust Root          11832     2.2493
(ae8153b9) StartCom Certification Authority   9405      1.7879
(3513523f) DigiCert Global Root CA            6987      1.3282
(fc5a8f99) USERTrust RSA Certification Author 6820      1.2965
(f081611a) The Go Daddy Group, Inc.           6456      1.2273
(480720ec) GeoTrust Primary Certification Aut 5857      1.1134
(f387163d) Starfield Technologies, Inc.       5842      1.1106
(4bfab552) Starfield Root Certificate Authori 5499      1.0454


Scan performed between 14th and 24th of July 2015.


June 2015 scan results

This month we have a small decrease in overall number of servers which support TLS protocol, down by 1.5%. Giving less than half a million of servers supporting secure communication in the Alex top 1 million sites.

Cipher suites

We have very small changes in used ciphers, all secure cipher types have gained below 0.5% each.

Surprisingly, there have been 22 servers which supported just ChaCha20 based ciphers.

Use of insecure ciphers is also mostly constant, loosing about 0.2%. RC4 use has also decreased, with 2% fewer servers supporting this cipher and server which support only this cipher has fallen by another 328 servers, bringing the overall number to just over 1.7 thousand servers. Servers which prefer RC4 ciphers have also decreased by 1.1%, most of it – 0.8% – driven by servers which no longer prefer RC4 with TLS1.1 and later protocol.

Cipher ordering remains unchanged, with server side ordering gaining less than 0.1%.

Key  exchange

Support for ECDHE key exchange grown by over 2.2%, nearly all of it caused by added support and preference for NIST P-256 curve.

The net effect was an increase of 1.2% in ciphersuites providing forward secrecy.

Hash and signature algorithms

Overall the changes were not drastic. Support for the MD5-RSA unfortunately keeps rising, this month by 1.3%. Support for SHA1-RSA has also increased by 2%. Support for the secure SHA256-RSA has grown by 2.3% so at least it’s growing faster than the others.

Client ordering of signature algorithms has grown by 2.4%, while server side ordering has lost 0.8%.

Majority of servers still either force use of SHA1 or abort connection in case the client didn’t advertise acceptable signature algorithms.

Vulnerabilities

Support for both insecure renegotiation and compression is still relatively high, at 4.44% and 2.45% respectively, falling by less than 0.4 and 0.1% month-on-month.

Many servers are also still vulnerable to Logjam, with still over 3.2% of servers using export grade DHE ciphersuites. Decrease of only 0.22%

Certificates

SHA-1 use keeps falling, but with a slightly less vigour – this month saw just 5.1% decrease.

Vast majority of those certificates were replaced by SHA-256 RSA signatures, bringing the overall market share of it to just above 60%.

2048 bit RSA still remains the chosen type of server key type, with just under 90% of server administrators opting for it.

Protocols

Use of SSL 2 and SSL 3 despite their insecurity still remains high, with 5.7% supporting the former and 28.2% the latter, decrease of 0.16% and 0.04% respectively.

Fortunately, just 919 servers (0.18% of total) support just those two protocols.

TLS1.0 support keeps dropping, albeit at a very slow pace (0.1% decrease), and still is above 99%.

TLS1.2 support increased by 0.8%, reaching 77%.

Results

SSL/TLS survey of 496355 websites from Alexa's top 1 million
Stats only from connections that did provide valid certificates
(or anonymous DH from servers that do also have valid certificate installed)


Supported Ciphers         Count     Percent
-------------------------+---------+-------
3DES                      414245    83.4574
3DES Only                 840       0.1692
AES                       485964    97.9065
AES Only                  17816     3.5894
AES-CBC                   485837    97.881
AES-CBC Only              9490      1.9119
AES-GCM                   331682    66.8235
AES-GCM Only              32        0.0064
CAMELLIA                  216922    43.703
CAMELLIA Only             4         0.0008
CHACHA20                  58723     11.8308
CHACHA20 Only             22        0.0044
Insecure                  75670     15.2451
RC4                       263495    53.086
RC4 Only                  1710      0.3445
RC4 Preferred             33485     6.7462
RC4 forced in TLS1.1+     18129     3.6524
x:FF 29 RC4 Only          2047      0.4124
x:FF 29 RC4 Preferred     37569     7.569
x:FF 29 incompatible      124       0.025
x:FF 35 RC4 Only          2377      0.4789
x:FF 35 RC4 Preferred     37715     7.5984
x:FF 35 incompatible      128       0.0258
y:DHE-RSA-SEED-SHA        101229    20.3945
y:IDEA-CBC-SHA            85830     17.2921
y:SEED-SHA                103066    20.7646
z:ADH-AES128-GCM-SHA256   311       0.0627
z:ADH-AES128-SHA          1107      0.223
z:ADH-AES128-SHA256       213       0.0429
z:ADH-AES256-GCM-SHA384   318       0.0641
z:ADH-AES256-SHA          1115      0.2246
z:ADH-AES256-SHA256       215       0.0433
z:ADH-CAMELLIA128-SHA     669       0.1348
z:ADH-CAMELLIA256-SHA     677       0.1364
z:ADH-DES-CBC-SHA         349       0.0703
z:ADH-DES-CBC3-SHA        1128      0.2273
z:ADH-RC4-MD5             1007      0.2029
z:ADH-SEED-SHA            605       0.1219
z:AECDH-AES128-SHA        17615     3.5489
z:AECDH-AES256-SHA        17629     3.5517
z:AECDH-DES-CBC3-SHA      17568     3.5394
z:AECDH-NULL-SHA          41        0.0083
z:AECDH-RC4-SHA           16900     3.4048
z:DES-CBC-MD5             14286     2.8782
z:DES-CBC-SHA             40810     8.2219
z:DES-CBC3-MD5            28088     5.6589
z:ECDHE-RSA-NULL-SHA      53        0.0107
z:EDH-RSA-DES-CBC-SHA     34934     7.0381
z:EXP-ADH-DES-CBC-SHA     252       0.0508
z:EXP-ADH-RC4-MD5         252       0.0508
z:EXP-DES-CBC-SHA         19650     3.9589
z:EXP-EDH-RSA-DES-CBC-SHA 16259     3.2757
z:EXP-RC2-CBC-MD5         23866     4.8083
z:EXP-RC4-MD5             25158     5.0685
z:EXP1024-DES-CBC-SHA     6288      1.2668
z:EXP1024-RC4-SHA         6374      1.2842
z:IDEA-CBC-MD5            2558      0.5154
z:NULL-MD5                259       0.0522
z:NULL-SHA                261       0.0526
z:NULL-SHA256             20        0.004
z:RC2-CBC-MD5             14614     2.9443
z:RC4-64-MD5              1161      0.2339

Cipher ordering           Count     Percent
-------------------------+---------+-------
Client side               132994    26.7941
Server side               363361    73.2059

Supported Handshakes      Count     Percent
-------------------------+---------+-------
ADH                       1238      0.2494
AECDH                     17668     3.5595
DHE                       280798    56.572
ECDH                      1         0.0002
ECDHE                     358229    72.1719
ECDHE and DHE             196228    39.5338
RSA                       455866    91.8427

Supported PFS             Count     Percent  PFS Percent
-------------------------+---------+--------+-----------
DH,1024bits               210208    42.3503  74.8609
DH,1536bits               2         0.0004   0.0007
DH,2048bits               62891     12.6706  22.3972
DH,2236bits               3         0.0006   0.0011
DH,3072bits               2689      0.5417   0.9576
DH,4096bits               4249      0.856    1.5132
DH,512bits                73        0.0147   0.026
DH,6144bits               1         0.0002   0.0004
DH,768bits                729       0.1469   0.2596
ECDH,B-163,163bits        1         0.0002   0.0003
ECDH,B-571,570bits        1330      0.268    0.3713
ECDH,K-571,570bits        1         0.0002   0.0003
ECDH,P-192,192bits        2         0.0004   0.0006
ECDH,P-224,224bits        67        0.0135   0.0187
ECDH,P-256,256bits        349478    70.4089  97.5571
ECDH,P-384,384bits        3644      0.7342   1.0172
ECDH,P-521,521bits        6198      1.2487   1.7302
Prefer DH,1024bits        81235     16.3663  28.93
Prefer DH,1536bits        1         0.0002   0.0004
Prefer DH,2048bits        3908      0.7873   1.3917
Prefer DH,2236bits        1         0.0002   0.0004
Prefer DH,3072bits        27        0.0054   0.0096
Prefer DH,4096bits        120       0.0242   0.0427
Prefer DH,512bits         2         0.0004   0.0007
Prefer DH,768bits         347       0.0699   0.1236
Prefer ECDH,B-163,163bits 1         0.0002   0.0003
Prefer ECDH,B-571,570bits 1124      0.2265   0.3138
Prefer ECDH,K-571,570bits 1         0.0002   0.0003
Prefer ECDH,P-224,224bits 40        0.0081   0.0112
Prefer ECDH,P-256,256bits 293410    59.1129  81.9057
Prefer ECDH,P-384,384bits 2068      0.4166   0.5773
Prefer ECDH,P-521,521bits 5823      1.1732   1.6255
Prefer PFS                388108    78.1916  0
Support PFS               442799    89.2101  0

Supported ECC curves      Count     Percent 
-------------------------+---------+--------
brainpoolP256r1           364       0.0733   
brainpoolP384r1           364       0.0733   
brainpoolP512r1           364       0.0733   
prime192v1                1331      0.2682   
prime256v1                357188    71.9622  
prime256v1 Only           311537    62.765   
secp160k1                 1298      0.2615   
secp160r1                 1303      0.2625   
secp160r2                 1298      0.2615   
secp192k1                 1315      0.2649   
secp224k1                 1370      0.276    
secp224r1                 2711      0.5462   
secp224r1 Only            2         0.0004   
secp256k1                 1587      0.3197   
secp384r1                 45900     9.2474   
secp384r1 Only            249       0.0502   
secp521r1                 13918     2.804    
secp521r1 Only            115       0.0232   
sect163k1                 1300      0.2619   
sect163k1 Only            3         0.0006   
sect163r1                 1297      0.2613   
sect163r2                 1298      0.2615   
sect163r2 Only            1         0.0002   
sect193r1                 1297      0.2613   
sect193r2                 1297      0.2613   
sect233k1                 1362      0.2744   
sect233r1                 1361      0.2742   
sect239k1                 1360      0.274    
sect283k1                 1566      0.3155   
sect283r1                 1566      0.3155   
sect409k1                 1566      0.3155   
sect409r1                 1565      0.3153   
sect571k1                 1575      0.3173   
sect571r1                 1574      0.3171   

Unsupported curve fallback     Count     Percent 
------------------------------+---------+--------
False                          80483     16.2148  
True                           231859    46.7123  
order-specific                 16        0.0032   
unknown                        183997    37.0696  

ECC curve ordering        Count     Percent 
-------------------------+---------+--------
client                    2665      0.5369   
inconclusive-noecc        16        0.0032   
server                    354894    71.5     
unknown                   138780    27.9598  

TLSv1.2 PFS supported sigalgs  Count     Percent 
------------------------------+---------+--------
ECDSA-SHA1                     31932     6.4333   
ECDSA-SHA1 Only                1         0.0002   
ECDSA-SHA224                   31953     6.4375   
ECDSA-SHA256                   31989     6.4448   
ECDSA-SHA384                   32035     6.4541   
ECDSA-SHA512                   32097     6.4665   
ECDSA-SHA512 Only              62        0.0125   
RSA-MD5                        151912    30.6055  
RSA-SHA1                       316124    63.6891  
RSA-SHA1 Only                  44717     9.0091   
RSA-SHA224                     256857    51.7486  
RSA-SHA256                     276593    55.7248  
RSA-SHA256 Only                4237      0.8536   
RSA-SHA384                     257841    51.9469  
RSA-SHA512                     258008    51.9805  
RSA-SHA512 Only                160       0.0322   

TLSv1.2 PFS ordering           Count     Percent 
------------------------------+---------+--------
client                         237214    47.7912  
indeterminate                  8         0.0016   
intolerant                     3109      0.6264   
order-fallback                 18        0.0036   
server                         113482    22.8631  
unsupported                    28681     5.7783   

TLSv1.2 PFS sigalg fallback    Count     Percent 
------------------------------+---------+--------
ECDSA SHA1                     31910     6.4289   
ECDSA intolerant               295       0.0594   
ECDSA soft-nopfs               1         0.0002   
RSA False                      147535    29.7237  
RSA SHA1                       141919    28.5922  
RSA intolerant                 28072     5.6556   
RSA soft-nopfs                 4494      0.9054   

Renegotiation             Count     Percent 
-------------------------+---------+--------
False                     7988      1.6093   
insecure                  22086     4.4496   
secure                    466281    93.941   

Compression               Count     Percent 
-------------------------+---------+--------
1 (zlib compression)      12174     2.4527   
False                     7988      1.6093   
NONE                      476193    95.938   

TLS session ticket hint   Count     Percent 
-------------------------+---------+--------
1                         3         0.0006   
1 only                    3         0.0006   
2                         2         0.0004   
2 only                    2         0.0004   
5                         2         0.0004   
5 only                    2         0.0004   
10                        7         0.0014   
10 only                   7         0.0014   
15                        10        0.002    
15 only                   10        0.002    
30                        11        0.0022   
30 only                   11        0.0022   
60                        95        0.0191   
60 only                   90        0.0181   
70                        6         0.0012   
100                       15        0.003    
100 only                  15        0.003    
120                       31        0.0062   
120 only                  31        0.0062   
128                       2         0.0004   
128 only                  2         0.0004   
150                       2         0.0004   
180                       52        0.0105   
180 only                  50        0.0101   
240                       9         0.0018   
240 only                  9         0.0018   
300                       215043    43.3244  
300 only                  209657    42.2393  
400                       7         0.0014   
400 only                  7         0.0014   
420                       112       0.0226   
420 only                  68        0.0137   
480                       12        0.0024   
480 only                  12        0.0024   
500                       3         0.0006   
500 only                  3         0.0006   
540                       1         0.0002   
540 only                  1         0.0002   
600                       21511     4.3338   
600 only                  21353     4.302    
720                       2         0.0004   
720 only                  1         0.0002   
900                       604       0.1217   
900 only                  585       0.1179   
960                       2         0.0004   
960 only                  2         0.0004   
1200                      1894      0.3816   
1200 only                 1888      0.3804   
1440                      1         0.0002   
1440 only                 1         0.0002   
1500                      11        0.0022   
1500 only                 10        0.002    
1800                      411       0.0828   
1800 only                 405       0.0816   
2400                      6         0.0012   
2400 only                 6         0.0012   
2700                      8         0.0016   
2700 only                 8         0.0016   
3000                      14        0.0028   
3000 only                 13        0.0026   
3300                      1         0.0002   
3300 only                 1         0.0002   
3600                      424       0.0854   
3600 only                 409       0.0824   
3900                      2         0.0004   
3900 only                 2         0.0004   
4200                      1         0.0002   
5400                      15        0.003    
5400 only                 3         0.0006   
6000                      4         0.0008   
6000 only                 4         0.0008   
7200                      15262     3.0748   
7200 only                 10520     2.1195   
10800                     1975      0.3979   
10800 only                1968      0.3965   
14400                     74        0.0149   
14400 only                73        0.0147   
18000                     11        0.0022   
18000 only                11        0.0022   
21600                     4863      0.9797   
21600 only                4863      0.9797   
28800                     2439      0.4914   
28800 only                2009      0.4048   
36000                     1142      0.2301   
36000 only                1136      0.2289   
43200                     28        0.0056   
43200 only                26        0.0052   
60000                     1         0.0002   
60000 only                1         0.0002   
64800                     45917     9.2508   
64800 only                45644     9.1958   
72000                     10        0.002    
72000 only                10        0.002    
86000                     43        0.0087   
86000 only                43        0.0087   
86400                     3392      0.6834   
86400 only                3391      0.6832   
100800                    12408     2.4998   
100800 only               12385     2.4952   
129600                    7         0.0014   
129600 only               7         0.0014   
172800                    5         0.001    
172800 only               5         0.001    
216000                    1         0.0002   
216000 only               1         0.0002   
432000                    1         0.0002   
432000 only               1         0.0002   
604800                    2         0.0004   
604800 only               2         0.0004   
864000                    1         0.0002   
864000 only               1         0.0002   
None                      179585    36.1808  
None only                 168439    33.9352  

Certificate sig alg     Count     Percent 
-------------------------+---------+--------
None                      18390     3.705    
ecdsa-with-SHA256         32196     6.4865   
sha1WithRSAEncryption     162789    32.7969  
sha256WithRSAEncryption   301606    60.7642  
sha384WithRSAEncryption   3         0.0006   
sha512WithRSAEncryption   7         0.0014   

Certificate key size    Count     Percent 
-------------------------+---------+--------
ECDSA 256                 32226     6.4925   
ECDSA 384                 7         0.0014   
ECDSA 521                 1         0.0002   
RSA 1024                  139       0.028    
RSA 10240                 4         0.0008   
RSA 2047                  1         0.0002   
RSA 2048                  446454    89.9465  
RSA 2049                  3         0.0006   
RSA 2056                  3         0.0006   
RSA 2058                  2         0.0004   
RSA 2064                  1         0.0002   
RSA 2080                  2         0.0004   
RSA 2084                  9         0.0018   
RSA 2096                  1         0.0002   
RSA 2345                  1         0.0002   
RSA 2408                  3         0.0006   
RSA 2432                  5         0.001    
RSA 2612                  2         0.0004   
RSA 3071                  1         0.0002   
RSA 3072                  96        0.0193   
RSA 3096                  1         0.0002   
RSA 3102                  1         0.0002   
RSA 3248                  2         0.0004   
RSA 4042                  1         0.0002   
RSA 4048                  2         0.0004   
RSA 4056                  26        0.0052   
RSA 4069                  1         0.0002   
RSA 4086                  2         0.0004   
RSA 4092                  7         0.0014   
RSA 4096                  17401     3.5058   
RSA 8192                  5         0.001    
RSA/ECDSA Dual Stack      45        0.0091

OCSP stapling             Count     Percent 
-------------------------+---------+--------
Supported                 97129     19.5685  
Unsupported               399226    80.4315  

Supported Protocols       Count     Percent
-------------------------+---------+-------
SSL2                      28373     5.7163
SSL2 Only                 30        0.006
SSL3                      139997    28.205
SSL3 Only                 891       0.1795
SSL3 or TLS1 Only         84026     16.9286
SSL3 or lower Only        919       0.1851
TLS1                      493251    99.3746
TLS1 Only                 48794     9.8305
TLS1 or lower Only        110400    22.2421
TLS1.1                    372212    74.9891
TLS1.1 Only               33        0.0066
TLS1.1 or up Only         1982      0.3993
TLS1.2                    382499    77.0616
TLS1.2 Only               916       0.1845
TLS1.2, 1.0 but not 1.1   11830     2.3834


Statistics from 517131 chains provided by 680456 hosts

Server provided chains    Count     Percent
-------------------------+---------+-------
complete                  470323    69.1188
incomplete                19965     2.9341
untrusted                 190168    27.9471

Trusted chain statistics
========================

Chain length              Count     Percent
-------------------------+---------+-------
2                         328       0.0634
3                         262695    50.7985
4                         249615    48.2692
5                         4493      0.8688

CA key size in chains     Count
-------------------------+---------
ECDSA 256                 32189     
ECDSA 384                 32184     
RSA 1024                  65659     
RSA 2045                  1         
RSA 2048                  1046763   
RSA 4096                  115739    

Chains with CA key        Count     Percent
-------------------------+---------+-------
ECDSA 256                 32189     6.2245
ECDSA 384                 32184     6.2236
RSA 1024                  65657     12.6964
RSA 2045                  1         0.0002
RSA 2048                  484420    93.6745
RSA 4096                  114849    22.2089

Signature algorithm (ex. root) Count
------------------------------+---------
ecdsa-with-SHA384              32189     
sha1WithRSAEncryption          287125    
sha256WithRSAEncryption        256796    
sha384WithRSAEncryption        199294    

Eff. host cert chain LoS  Count     Percent
-------------------------+---------+-------
80                        236752    45.7818
112                       248197    47.995
128                       32182     6.2232

Root CAs                                      Count     Percent
---------------------------------------------+---------+-------
(861a399d) AddTrust Class 1 CA Root           126586    24.4785
(2c543cd1) GeoTrust Global CA                 111618    21.5841
(f081611a) The Go Daddy Group, Inc.           52765     10.2034
(5ad8a5d6) GlobalSign Root CA                 52501     10.1524
(eed8c118) COMODO ECC Certification Authority 32182     6.2232
(415660c1) VeriSign, Inc.                     30856     5.9668
(aee5f10d) Entrust.net Certification Authorit 28570     5.5247
(6cc3c4c3) Thawte Server CA                   25221     4.8771
(f387163d) Starfield Technologies, Inc.       11117     2.1497
(ae8153b9) StartCom Certification Authority   9414      1.8204
(653b494a) Baltimore CyberTrust Root          8928      1.7264
(578d5c04) Equifax                            6563      1.2691
(244b5494) DigiCert High Assurance EV Root CA 6432      1.2438

Scan performed between 18th and 28th of June 2015.