The server you’re reading this on uses automated certs from Let’s Encrypt—they are more common on a domain than any other registrar! Over 47 million domains are protected with Let’s Encrypt certs, almost 30%.

Out of 352.3M domains, the dataset has 158.7M connections that proceeded far enough to provide a certificate with an issuer’s Distinguished Name. The top dozen1 are:

47.2M Let’s Encrypt
28.9M DigiCert
13.8M Comodo
10.1M Google
7.2M GoDaddy
7.1M Sectigo
7.0M cPanel
6.1M GlobalSign
3.4M CloudFlare0
2.5M Amazon
2.1M (anonymous self-signed)
1.1M Plesk

Let’s Encrypt certs expire after 3 months, which pushes a regular update cycle, but there are still a number of ancient security practices around the web today.

 

 

https://leebutterman.com/2019/08/05/analyzing-hundreds-of-millions-of-ssl-connections.html

 

Let’s Encrypt makes certs for almost 30% of web domains! RC4/3DES/TLS 1.0 are still used! Certs for hundreds of years! Analyzing

Looking at a dataset of 350 million ssl connections inspires some initial questions:

leebutterman.com

 

반응형

+ Recent posts