Site Updated - New Advanced Features Implemented.
SSLYTICS SSLYTICS

Resource Library

Security Checklist

A focused checklist for validating SSL certificate posture before launch, after migrations, and during recurring reviews.

Certificate Checks

  • Certificate is valid, trusted, and not expired.
  • Common name and SAN entries cover the intended hostnames.
  • Issuer and chain are recognized by common browsers.
  • Private key size and signature algorithm meet current policy.

Protocol & Cipher Checks

  • TLS 1.2 or TLS 1.3 is enabled.
  • Deprecated protocols are disabled.
  • Weak ciphers are disabled.
  • Forward secrecy is available for modern clients.

Monitoring Checks

  • Production domains have monitoring rules.
  • Expiry alerts are configured at least 30 days before expiration.
  • Notification email points to a monitored inbox.
  • Alert workflows include renewal and incident ownership.

Account & Admin Checks

  • Admin users have 2FA enabled where available.
  • Google sign-in credentials and redirect URIs match production.
  • Billing tier matches expected access controls.
  • Contact form spam controls and subscriber cleanup are active.