Inside the web and TLS configuration review
Your HTTP / HTTPS web services and TLS configuration are examined because they are the most public-facing part of the server and a favourite target.
The review covers areas such as:
- How your web server is configured and what it exposes.
- The TLS/SSL configuration — protocols, ciphers and certificates — and whether it is up to modern standards.
- Services and administrative paths reachable over the web that should not be.
- Misconfigurations that leak information or weaken protection.
Web-server and TLS faults range from certificates that undermine trust to configuration that hands an attacker useful information or an easy foothold. Note this is a server-configuration review; a full manual probing of a specific web application is the job of our separate Website Penetration Testing service. The audit identifies the configuration issues across your web stack that need addressing.

0 comments
Sign in with your TDesk account to comment.