oph.fi

.fi crawl

First seen 2026-05-14 · Last seen 2026-05-19 · ok HTTP/1.1 200 361 ms crawled 2026-05-19

SE · 13.51.62.86 · AS16509 Amazon.com, Inc.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Opetushallitus
Language
fi
Generator
Drupal 11 (https://www.drupal.org)
Canonical
https://www.oph.fi/fi
Translations
  • en
  • fi
  • sv

Open Graph

url
https://www.oph.fi/fi
title
Etusivu
site name
Opetushallitus
description
Opetushallitus on kansallinen varhaiskasvatuksen, koulutuksen, elinikäisen oppimisen ja kansainvälistymisen asiantuntija, kehittäjä ja palveluntuottaja.

Technology

CMS
Drupal

Third-party hosts loaded (2)

  • cdnjs.cloudflare.com×1
  • cookiehub.net×1

Social

Contact

Phone

Registration

Created
1990-12-31
Name servers
  • ns.funet.fi [128.214.46.64] [2001:708:10:54::53] [ok]
  • ns-secondary.funet.fi [128.214.248.132] [2001:708:10:55::53] [ok]
  • ns2.funet.fi [128.214.46.66] [2001:708::53:66] [ok]

DNS records live

NS
  • ns-secondary.funet.fi
  • ns.funet.fi
  • ns2.funet.fi
MX
  • 10 mail.valtori.fi
TXT
  • fef6a916591743649c102886a7209c33
  • SQaGFWhFaN3p36pp82niLVb1CbZhCw7UtAeRtaQSz1UqpygHsfqrmr8dQHWoByicIbD46imlTmJdxBPfoHh4aQ==
Verified for
  • HARICA
  • Microsoft 365
  • Miro

Email authentication partial

SPF
v=spf1 include:_spf.vy-verkko.fi include:_spf1.oph.fi include:_spf2.oph.fi ip4:81.22.248.0/25 include:spf.epressi.com include:mail.webropolsurveys.com include:spf.protection.outlook.com ip4:158.37.161.216 include:hosted-at.csc.fi include:spf.lianamailer.com -all
strict (-all)
DMARC
v=DMARC1; p=none; rua=mailto:lf34inpo@ag.eu.dmarcadvisor.com;
policy: none (monitoring only)
DKIM
Show 4 DKIM selectors
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA1U9PqCsWTQgurSahu3LjRSCoJEu64E8BVIRCuQboAonRbekrQ0ta9R2VLWVBJpI8XDgWb0OTLZ4x9q…
  • selector2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArEFo4wXX8vHEGDhqLHSWdabulwqfdb2C5bohsS+niVfWkIh1Q1b8+ro4d/xl2vpaftaQv+g1w1bRhB…
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvP9K7pXCWQ2XlMORBUdlhcowTYm+Hvhlak007QH961PkIuYyQrJ5CveSGB1S+XJOOqgf45Lrq8GzAuAqw6…
  • s2: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCz72RDPejMBhcXiBZ0wMzISDm1bWuthiIhpZc7Vloa2bF8cmxtcRY5v/K/pGkKZIKqV7LXxGB0/guvFOblY/smWE…
selectors probed

Certificate (current)

E7
from 2026-05-12 to 2026-08-10
Expires in 82 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://www.oph.fi/fi

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src 'self'; connect-src 'self' cdnjs.cloudflare.com tracking.oph.fi cookiehub.net *.cookiehub.net *.cookiehub.eu *.cookiehub.com *.askem.com *.addtoany.com *.soundcloud.com *.sttinfo.fi *.efectecloud.com; font-src 'self' *.cloudflare.com *.askem.com fonts.gstatic.com; frame-src *; img-src 'self' data: *.ytimg.com *.vimeocdn.com *.siteimproveanalytics.io; object-src 'none'; script-src 'self' 'report-sample' 'unsafe-inline' blob: siteimproveanalytics.com tracking.oph.fi cookiehub.net *.cookiehub.net *.cookiehub.eu *.cookiehub.com *.askem.com *.addtoany.com *.youtube.com *.soundcloud.com *.sttinfo.fi *.efectecloud.com cdn.jsdelivr.net; style-src 'self' 'report-sample' 'unsafe-inline' cookiehub.net *.cookiehub.net *.cookiehub.eu *.cookiehub.com *.askem.com *.addtoany.com *.efectecloud.com fonts.googleapis.com cdn.jsdelivr.net cdnjs.cloudflare.com; webrtc 'block'; worker-src 'self'; base-uri 'self'; form-action 'self'; frame-ancestors 'self'; upgrade-insecure-requests
strict-transport-security
max-age=31557600

Links to (6)

Linked from (2)