SSL check results of favicons.nextdns.io

NEW You can also bulk check multiple servers.

Discover if the webservers of favicons.nextdns.io can be reached through a secure connection.

Summary

Report created Wed, 02 Sep 2026 13:40:09 +0000

The webservers of favicons.nextdns.io can be reached through a secure connection.

Servers

Hostname / IP address Certificates Protocol
favicons.nextdns.io
104.26.10.186
favicons.nextdns.io
HSTS
unexpected EOF
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s
favicons.nextdns.io
172.67.68.89
favicons.nextdns.io
HSTS
unexpected EOF
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s
favicons.nextdns.io
104.26.11.186
favicons.nextdns.io
HSTS
unexpected EOF
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s
favicons.nextdns.io
2606:4700:20::681a:aba
favicons.nextdns.io
HSTS
unexpected EOF
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s
favicons.nextdns.io
2606:4700:20::ac43:4459
favicons.nextdns.io
HSTS
unexpected EOF
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s
favicons.nextdns.io
2606:4700:20::681a:bba
favicons.nextdns.io
HSTS
unexpected EOF
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s

Certificates

First seen at:

CN=favicons.nextdns.io

Certificate chain
  • favicons.nextdns.io
    • remaining
    • 256 bit
    • ecdsa-with-SHA384

      • YE2
        • remaining
        • 384 bit
        • ecdsa-with-SHA384

          • Root YE
            • remaining
            • 384 bit
            • ecdsa-with-SHA384

              • ISRG Root X2 (Certificate is self-signed.)
                • remaining
                • 384 bit
                • ecdsa-with-SHA384

Subject
Common Name (CN)
  • favicons.nextdns.io
Alternative Names
  • favicons.nextdns.io
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • YE2
validity period
Not valid before
2026-08-26
Not valid after
2026-11-24
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
Fingerprints
SHA256
40:B1:30:A2:E8:08:B3:9A:D4:C4:0E:91:2A:3C:D8:F5:07:0D:3D:3A:D9:AB:7E:B2:6E:32:2E:68:F0:9F:A7:A1
SHA1
6E:F3:F7:93:B6:67:38:AF:02:9D:F9:8B:D8:0C:D6:25:2A:34:CA:47
X509v3 extensions
subjectKeyIdentifier
  • 8A:79:52:05:DA:E1:52:80:20:21:35:04:54:4D:59:B5:70:33:C4:BE
authorityKeyIdentifier
  • keyid:B9:59:F2:8E:CF:22:F0:86:D3:37:48:FF:76:14:18:BA:82:D8:55:87
authorityInfoAccess
  • CA Issuers - URI:http://ye2.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://ye2.c.lencr.org/52.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : D8:09:55:3B:94:4F:7A:FF:C8:16:19:6F:94:4F:85:AB:
  • B0:F8:FC:5E:87:55:26:0F:15:D1:2E:72:BB:45:4B:14
  • Timestamp : Aug 26 21:32:11.207 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:09:A6:E3:A9:10:CC:24:84:2B:D6:EF:F6:
  • 4A:44:08:B9:4A:46:94:A5:62:1F:77:55:4E:1E:5B:2B:
  • 7F:6B:05:D8:02:20:0A:86:60:83:72:EC:E5:81:64:6F:
  • B5:18:07:E4:27:64:0A:F6:87:FE:89:7D:14:45:89:8C:
  • 68:49:A3:3F:C5:95
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 1A:8B:9D:6B:0F:FE:BF:81:B4:79:39:C6:D2:31:0A:86:
  • D6:D1:02:D4:F0:46:E2:18:2C:9D:E3:5F:5E:26:25:EF
  • Timestamp : Aug 26 21:32:11.367 2026 GMT
  • Extensions: 00:00:05:00:39:25:F9:09
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:81:E6:0F:BD:AF:6B:19:BE:A1:68:A7:
  • 1F:E5:15:79:5F:A8:FA:CA:68:68:06:41:CD:44:9E:E7:
  • 18:2E:06:7C:52:02:20:7F:EF:37:93:28:E7:4C:59:B6:
  • 12:29:62:BE:E5:5E:92:C0:A9:C1:35:38:13:D6:78:76:
  • 7A:5C:F8:B0:E6:EA:3D