How SSL/TLS Certificate Grading works ?

How SSL/TLS Certificate Grading works ?

The SSL Certificate Grade is determined based on factors like supported protocols, cipher strength, certificate key exchange size, and the presence of certificate vulnerabilities. The supported grades are as follows:


Grade
Values
A+
90 and above
A
80 to 90
B+
75 to 80
B
65 to 75
C
50 to 65
D
35 to 50
E
20 to 35
F
Below 20

Additional conditions for assigning the grades:

  1. Grade F: Assigned if the SSL/TLS certificate has vulnerabilities such as FREAK or LOGJAM.

  2. Grade C: Assigned if the SSL/TLS certificate has the CRIME vulnerability or if both RC4 and either TLSv1.1 or TLSv1.2 are present.

  3. Grade B: Assigned if the SSL/TLS certificate has any of the following:

    1. BEAST vulnerability

    2. RC4 vulnerability

    3. Lack of Forward Secrecy

    4. Usage of either TLSv1 or TLSv1.1

    5. Lack of AEAD

Notes
Note: SSLv2 and SSLv3 protocols are excluded when determining the grade of the SSL/TLS certificate.

                  New to ADSelfService Plus?