Question: Perform Transport Encryption Analysis by completing the steps below. Go to https: / / www . ssllabs.com / ssltest / analyze . html CLICK on

Perform Transport Encryption Analysis by completing the steps below. Go to https://www.ssllabs.com/ssltest/analyze.html CLICK on one of the "Recent Worst" websites listed in the bottom right EVALUATE the report. From the following report how do I determine Which cryptographic protocols (if any) are weak and why? Which cryptographic protocols would you recommend and why? Certificate #1: RSA 2048 bits (SHA256withRSA) Server Key and Certificate #1 Subject www.intervialchile.cl Fingerprint SHA256: 369c0775969599053e064e755ef96a3bc41eca0eaf67fa599de1233c06b2fb8a Pin SHA256: DhrWW0bKsW4wRD4FwUwtpjuw9s7yRqfQiSYV1IMe5x8= Common names www.intervialchile.cl Alternative names www.intervialchile.cl www.rutarios.cl www.rutaaraucania.cl www.rutaloa.cl fs.intervialchile.cl rutanet.intervialchile.cl apps.intervialchile.cl www.rutamaipo.cl encuestacovid.intervialchile.cl etempo.intervialchile.cl disfrutalaruta.cl iam.intervialchile.cl Serial Number 04b9b3850d5829be5f2ca4d3c1101f61 Valid from Tue, 27 Jun 202300:00:00 UTC Valid until Sat, 27 Jul 202423:59:59 UTC (expires in 4 days, 9 hours) Key RSA 2048 bits (e 65537) Weak key (Debian) No Issuer GeoTrust RSA CA 2018 AIA: http://cacerts.geotrust.com/GeoTrustRSACA2018.crt Signature algorithm SHA256withRSA Extended Validation No Certificate Transparency Yes (certificate) OCSP Must Staple No Revocation information CRL, OCSP CRL: http://cdp.geotrust.com/GeoTrustRSACA2018.crl OCSP: http://status.geotrust.com Revocation status Revoked INSECURE CRL ERROR: IOException occurred DNS CAA No (more info) Trusted No NOT TRUSTED (Why?) Mozilla Apple Android Java Windows Additional Certificates (if supplied) Certificates provided 1(1893 bytes) Chain issues Incomplete Show Certification PathsCertification Paths Click here to expand Configuration Protocols TLS 1.3 Yes TLS 1.2 Yes TLS 1.1 No TLS 1.0 No SSL 3 No SSL 2 No Cipher Suites # TLS 1.3(suites in server-preferred order) TLS_AES_256_GCM_SHA384(0x1302) ECDH x25519(eq.3072 bits RSA) FS 256 TLS_CHACHA20_POLY1305_SHA256(0x1303) ECDH x25519(eq.3072 bits RSA) FS 256 TLS_AES_128_GCM_SHA256(0x1301) ECDH x25519(eq.3072 bits RSA) FS 128 # TLS 1.2(suites in server-preferred order) TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384(0xc030) ECDH x25519(eq.3072 bits RSA) FS 256 TLS_DHE_RSA_WITH_AES_256_GCM_SHA384(0x9f) DH 2048 bits FS 256 TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256(0xcca8) ECDH x25519(eq.3072 bits RSA) FS 256 TLS_DHE_RSA_WITH_CHACHA20_POLY1305_SHA256(0xccaa) DH 2048 bits FS 256 TLS_DHE_RSA_WITH_AES_256_CCM_8(0xc0a3) DH 2048 bits FS 256 TLS_DHE_RSA_WITH_AES_256_CCM (0xc09f) DH 2048 bits FS 256 TLS_ECDHE_RSA_WITH_ARIA_256_GCM_SHA384(0xc061) ECDH x25519(eq.3072 bits RSA) FS 256 TLS_DHE_RSA_WITH_ARIA_256_GCM_SHA384(0xc053) DH 2048 bits FS 256 TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256(0xc02f) ECDH x25519(eq.3072 bits RSA) FS 128 TLS_DHE_RSA_WITH_AES_128_GCM_SHA256(0x9e) DH 2048 bits FS 128 TLS_DHE_RSA_WITH_AES_128_CCM_8(0xc0a2) DH 2048 bits FS 128 TLS_DHE_RSA_WITH_AES_128_CCM (0xc09e) DH 2048 bits FS 128 TLS_ECDHE_RSA_WITH_ARIA_128_GCM_SHA256(0xc060) ECDH x25519(eq.3072 bits RSA) FS 128 TLS_DHE_RSA_WITH_ARIA_128_GCM_SHA256(0xc052) DH 2048 bits FS 128 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384(0xc028) ECDH x25519(eq.3072 bits RSA) FS WEAK 256 TLS_DHE_RSA_WITH_AES_256_CBC_SHA256(0x6b) DH 2048 bits FS WEAK 256 TLS_ECDHE_RSA_WITH_CAMELLIA_256_CBC_SHA384(0xc077) ECDH x25519(eq.3072 bits RSA) FS WEAK 256 TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA256(0xc4) DH 2048 bits FS WEAK 256 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256(0xc027) ECDH x25519(eq.3072 bits RSA) FS WEAK 128 TLS_DHE_RSA_WITH_AES_128_CBC_SHA256(0x67) DH 2048 bits FS WEAK 128 TLS_ECDHE_RSA_WITH_CAMELLIA_128_CBC_SHA256(0xc076) ECDH x25519(eq.3072 bits RSA) FS WEAK 128 TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA256(0xbe) DH 2048 bits FS WEAK 128 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (0xc014) ECDH x25519(eq.3072 bits RSA) FS WEAK 256 TLS_DHE_RSA_WITH_AES_256_CBC_SHA (0x39) DH 2048 bits FS WEAK 256 TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA (0x88) DH 2048 bits FS WEAK 256 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA (0xc013) ECDH x25519(eq.3072 bits RSA) FS WEAK 128 TLS_DHE_RSA_WITH_AES_128_CBC_SHA (0x33) DH 2048 bits FS WEAK 128 TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA (0x45) DH 2048 bits FS WEAK 128 TLS_RSA_WITH_AES_256_GCM_SHA384(0x9d) WEAK 256 TLS_RSA_WITH_AES_256_CCM_8(0xc0a1) WEAK 256 TLS_RSA_WITH_AES_256_CCM (0xc

Step by Step Solution

There are 3 Steps involved in it

1 Expert Approved Answer
Step: 1 Unlock blur-text-image
Question Has Been Solved by an Expert!

Get step-by-step solutions from verified subject matter experts

Step: 2 Unlock
Step: 3 Unlock

Students Have Also Explored These Related Programming Questions!