ncsc.nl
HTML metadata
Technology
- CMS
- Drupal
Registration
- Registrar
- Rijksoverheid
- Created
- 2011-02-02
- Updated
- 2021-10-02
- Name servers
-
- ns0.rijksoverheidnl.com
- ns2.rijksoverheidnl.eu
- ns3.rijksoverheidnl.org
- ns1.rijksoverheidnl.nl
DNS records live
- NS
-
- ns0.rijksoverheidnl.com
- ns1.rijksoverheidnl.nl
- ns2.rijksoverheidnl.eu
- ns3.rijksoverheidnl.org
- MX
-
- 15 mx1.ncsc.nl
- 20 mx2.ncsc.nl
- 5 mx.ncsc.nl
- Verified for
-
- Cisco
Email authentication strong
- SPF
-
v=spf1 a mx include:_spf-jb3.minjenv.nl include:_dto.ncsc.nl include:_apps.ncsc.nl -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:dmarc-reports@ncsc.nl; rf=afrf; pct=100;policy: reject (enforced) - DKIM
- no key found at common selectors
Certificate (current)
DigiCert QuoVadis G3 Qualified TLS RSA4096 SHA256 2023 CA1
Expires in 153 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- findings
-
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
default-src 'self'; script-src 'self' 'nonce-ZWE0MWZiNzItMzBlNS00MDJhLWE4YWQtZGRhN2IwNTlmODZi' 'unsafe-eval' https://statistiek.rijksoverheid.nl; style-src 'self' 'nonce-ZWE0MWZiNzItMzBlNS00MDJhLWE4YWQtZGRhN2IwNTlmODZi' 'unsafe-hashes' 'sha256-zlqnbDt84zf1iSefLU/ImC54isoprH/MRiVZGskwexk=' 'sha256-ZDrxqUOB4m/L0JWL/+gS52g1CRH0l/qwMhjTw5Z/Fsc='; img-src 'self' blob: data:; media-src 'self' *.rovid.nl; font-src 'self'; object-src 'none'; base-uri 'self'; form-action 'self'; frame-ancestors 'self' https://www.cms.ncsc.nl; connect-src 'self' sentry.dtnr.nl *.rovid.nl https://statistiek.rijksoverheid.nl;- strict-transport-security
max-age=63072000; includeSubDomains; preload