ceia.net
HTML metadata
Technology
- CDN
- Azure Front Door
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Iubenda
Third-party hosts loaded (3)
- cdn.iubenda.com×2
- cs.iubenda.com×1
- www.googletagmanager.com×1
Contact
- Phone
Registration
- Registrar
- Network Solutions, LLC
- Created
- 1998-03-18
- Expires
- 2027-03-17 301 days left
- Updated
- 2024-01-17
- Name servers
-
- ns1-02.azure-dns.com
- ns2-02.azure-dns.net
- ns3-02.azure-dns.org
- ns4-02.azure-dns.info
DNS records live
- NS
-
- ns1-02.azure-dns.com
- ns2-02.azure-dns.net
- ns3-02.azure-dns.org
- ns4-02.azure-dns.info
- MX
-
- 10 ceiaspa.in.tmes.trendmicro.eu
- TXT
-
Show 5 TXT records
ldk4hhjd3b1wz97r824rmfjcltldpv6ftmes=63675859b86148a2ddbc189ce1fb3539google-site-verification=NzJFtFKCQUxzNaF5PCLuy0D0ppU5siZYtv93GrT1HRE_tltd9c3kjkr85mh6iajv8vd9tfimd1t_ilxuloixymyr94m8hde3ktohp6flwj0
Email authentication strong
- SPF
-
v=spf1 a mx include:ceia-spa.com include:spf.tmes.trendmicro.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:ceiaspa@dmarcrua.tmes.trendmicro.eu; pct=100policy: quarantine - DKIM
- no key found at common selectors
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 80 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' *.ceia.net *.ceia-usa.com *.ceia-pacific.com *.ceia-international.com *.emc-lace.com ceiastorage01.blob.core.windows.net *.vo.msecnd.net; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.ceia.net www.gstatic.com *.google.com www.googletagmanager.com *.google-analytics.com *.iubenda.com crm.zoho.com cdn-cookieyes.com *.doubleclick.net *.googleadservices.com *.services.visualstudio.com js.monitor.azure.com; style-src 'self' 'unsafe-inline' *.ceia.net fonts.googleapis.com;font-src 'self' *.ceia.net fonts.gstatic.com data:; img-src 'self' data: *.ceia.net ceiastorage01.blob.core.windows.net www.google.com www.google.it *.google-analytics.com *.doubleclick.net *.googleadservices.com; connect-src 'self' *.ceia.net js.monitor.azure.com *.visualstudio.com *.in.applicationinsights.azure.com *.google-analytics.com *.iubenda.com idb.iubenda.com www.google.com; frame-src 'self' *.google.com www.youtube.com forms.zohopublic.com *.iubenda.com; frame-ancestors 'self';- strict-transport-security
max-age=31536000; includeSubDomains; preload