htwsaar.de
HTML metadata
Technology
- Server
- nginx
Social
Contact
- Phone
Registration
- Updated
- 2017-11-29
- Name servers
-
- dns-1.dfn.de.
- ns1.htw-saarland.de.
- ns.htw-saarland.de.
- ns.rz.uni-saarland.de.
DNS records live
- NS
-
- dns-1.dfn.de
- ns.htw-saarland.de
- ns.rz.uni-saarland.de
- ns1.htw-saarland.de
- MX
-
- 30 mx-gate1.mail.hiz-saarland.de
- 40 mx-gate2.mail.hiz-saarland.de
- 50 m-relay.rz.uni-saarland.de
- 50 m-relay2.rz.uni-saarland.de
- TXT
-
Show 4 TXT records
qzCxpSarCHRbgnjLv9xUzB5aRPu1S53AaMCxGfIosovB7ip9eGzF6lXGMrhWcrYbv0fryMcyhg1shMGmXwtQbw==autodesk-domain-verification=8IcSR0CBTytxaS1rCDOtF37-KG8-n02MS=B15777860A2752F9179590E0629A6D35DB7F8564
- Verified for
-
- Adobe
- Apple
- HARICA
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 a mx ip4:134.96.7.0/24 ip4:134.96.40.64/28 ip6:2001:638:200:853F:0:1::/112 ~allsoftfail (~all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
GEANT TLS RSA 1
Expires in 111 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin- x-frame-options
sameorigin- permissions-policy
camera=(), microphone=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; media-src 'self' data: http: file:; script-src 'unsafe-inline' 'unsafe-eval' 'self' *.htwsaar.de www.googletagmanager.com; style-src-elem 'unsafe-inline' 'self' *.googletagmanager.com; style-src 'unsafe-inline' 'self'; img-src data: blob: 'self' a.tile.openstreetmap.de *.ytimg.com *.kununu.com *.googletagmanager.com; font-src 'self';frame-src 'self' eveeno.com *.youtube-nocookie.com *.htwsaar.de *.vimeo.com *.blitzvideoserver.de intocities.com; connect-src 'self' *.htwsaar.de *.google.com *.googletagmanager.com- strict-transport-security
max-age=31536000; includeSubDomains, max-age=2592000