SSLyze
SSLyze: Open Source SSL/TLS Server Configuration Analysis Tool
Analyze the configuration of SSL/TLS servers to find misconfigurations and vulnerabilities with this open source Python tool, validating certificate properties, checking insecure cipher suites, and detecting Heartbleed vulnerabilities.
What is SSLyze?
SSLyze is an open source Python application used for analyzing and debugging SSL/TLS server configurations and certificates. It is designed to provide clear visibility into SSL/TLS services and can identify misconfigurations, weak ciphers, certificate issues, and vulnerability to attacks.
Some key features of SSLyze include:
- Testing SSL/TLS server configurations for information leakage, insecure renegotiation, vulnerability to attacks like Heartbleed, FREAK, Logjam, and more
- Scanning for weak cipher suites or protocols that may compromise security
- Validating certificate properties - expiration dates, chains of trust, keys and algorithms
- Checking for certificate issues such as mismatches, self-signed certificates, etc.
- Support for testing OpenSSL servers as well as Python SSL and Python TLS
- Command line usage as well as a JSON API for automation
SSLyze aims to act as a reconnaissance tool for SSL/TLS services, providing visibility into risks and misconfigurations. Its detailed yet easy to interpret output allows users, system administrators and security professionals to quickly validate the security posture of SSL/TLS servers.
SSLyze Features
Features
- Scans SSL/TLS servers to find misconfigurations
- Validates certificate properties like validity, trust paths, etc
- Checks for insecure cipher suites
- Checks for vulnerabilities like Heartbleed, POODLE, etc
- Supports StartTLS handshakes for protocols like SMTP, POP3, IMAP, FTP, etc
- Command-line interface and Python API available
Pricing
- Open Source
Pros
Cons
Official Links
Reviews & Ratings
Login to ReviewThe Best SSLyze Alternatives
View all SSLyze alternatives with detailed comparison →
Top Security & Privacy and Vulnerability Scanning and other similar apps like SSLyze
Here are some alternatives to SSLyze:
Suggest an alternative ❐Mozilla Observatory
Qualys SSL Server Test
Hardenize
SSL/TLS Security Test by ImmuniWeb