# Nmap 7.98 scan initiated Sun Apr  5 08:39:34 2026 as: /usr/lib/nmap/nmap -vv --reason -Pn -T4 -sV -p 443 "--script=banner,(http* or ssl*) and not (brute or broadcast or dos or external or http-slowloris* or fuzzer)" -oN /root/results/passbolt.lan.ddnsgeek.com/scans/tcp443/tcp_443_https_nmap.txt -oX /root/results/passbolt.lan.ddnsgeek.com/scans/tcp443/xml/tcp_443_https_nmap.xml passbolt.lan.ddnsgeek.com
Nmap scan report for passbolt.lan.ddnsgeek.com (167.179.167.166)
Host is up, received user-set (0.014s latency).
rDNS record for 167.179.167.166: 167-179-167-166.a7b3a7.bne.nbn.aussiebb.net
Scanned at 2026-04-05 08:39:44 UTC for 1574s

PORT    STATE SERVICE  REASON         VERSION
443/tcp open  ssl/http syn-ack ttl 55 Golang net/http server (Go-IPFS json-rpc or InfluxDB API)
|_http-feed: Couldn't find any feeds.
| http-comments-displayer: 
| Spidering limited to: maxdepth=3; maxpagecount=20; withinhost=passbolt.lan.ddnsgeek.com
|     
|     Path: https://passbolt.lan.ddnsgeek.com:443/
|     Line number: 49
|     Comment: 
|         <!-- main -->
|     
|     Path: https://passbolt.lan.ddnsgeek.com:443/js/app/api-vendors.js?v=5.10.0
|     Line number: 1
|     Comment: 
|         /*! For license information please see api-vendors.js.LICENSE.txt */
|     
|     Path: https://passbolt.lan.ddnsgeek.com:443/
|     Line number: 6
|     Comment: 
|         <!--
|         
|                 ____                  __          ____
|                / __ \____  _____ ____/ /_  ____  / / /_
|               / /_/ / __ `/ ___/ ___/ __ \/ __ \/ / __/
|              / ____/ /_/ (__  )__  ) /_/ / /_/ / / /_
|             /_/    \__,_/____/____/_.___/\____/_/\__/
|         
|             Open source password manager for teams
|             Copyright (c) Passbolt SA (https://www.passbolt.com)
|         
|         
|             This program is free software: you can redistribute it and/or modify
|             it under the terms of the GNU Affero General Public License as
|             published by the Free Software Foundation, either version 3 of the
|             License, or (at your option) any later version.
|         
|             This program is distributed in the hope that it will be useful,
|             but WITHOUT ANY WARRANTY; without even the implied warranty of
|             MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
|             GNU Affero General Public License for more details.
|         
|             You should have received a copy of the GNU Affero General Public License
|             along with this program. If not, see http://www.gnu.org/licenses/.
|         
|         
|_            -->
| http-headers: 
|   Access-Control-Expose-Headers: X-GPGAuth-Verify-Response
|   Access-Control-Expose-Headers: X-GPGAuth-Progress
|   Access-Control-Expose-Headers: X-GPGAuth-User-Auth-Token
|   Access-Control-Expose-Headers: X-GPGAuth-Authenticated
|   Access-Control-Expose-Headers: X-GPGAuth-Refer
|   Access-Control-Expose-Headers: X-GPGAuth-Debug
|   Access-Control-Expose-Headers: X-GPGAuth-Error
|   Access-Control-Expose-Headers: X-GPGAuth-Pubkey
|   Access-Control-Expose-Headers: X-GPGAuth-Logout-Url
|   Access-Control-Expose-Headers: X-GPGAuth-Version
|   Cache-Control: no-store, no-cache, must-revalidate
|   Content-Security-Policy: default-src 'none'; script-src 'self'; style-src 'self'; img-src 'self'; font-src 'self'; connect-src 'self'; base-uri 'self'; frame-src 'self'; frame-ancestors 'none'; form-action 'self' https://*.duosecurity.com
|   Content-Type: text/html; charset=UTF-8
|   Date: Sun, 05 Apr 2026 08:43:47 GMT
|   Expires: Thu, 19 Nov 1981 08:52:00 GMT
|   Pragma: no-cache
|   Referrer-Policy: same-origin
|   Server: nginx
|   Set-Cookie: passbolt_session=0ef149b13c99d135c6c2a67b1a000b76; path=/; HttpOnly; SameSite=Lax
|   Set-Cookie: csrfToken=16d25e047084290e11d152a80a4d75f310aab333c9ce6f08261c78346adff7db300d53d7b6cd56f23b17dff875111a4d0f30c368a11fb6aed06ede845284953e; path=/
|   Strict-Transport-Security: max-age=15552000; includeSubDomains; preload
|   X-Content-Type-Options: nosniff
|   X-Download-Options: noopen
|   X-Frame-Options: SAMEORIGIN
|   X-Gpgauth-Authenticated: false
|   X-Gpgauth-Debug: There is no user associated with this key. No key id set.
|   X-Gpgauth-Error: true
|   X-Gpgauth-Login-Url: /auth/login
|   X-Gpgauth-Logout-Url: /auth/logout
|   X-Gpgauth-Progress: stage0
|   X-Gpgauth-Pubkey-Url: /auth/verify.json
|   X-Gpgauth-Verify-Url: /auth/verify
|   X-Gpgauth-Version: 1.3.0
|   X-Permitted-Cross-Domain-Policies: all
|   X-Xss-Protection: 1; mode=block
|   Connection: close
|   Transfer-Encoding: chunked
|   
|_  (Request type: GET)
|_http-date: Sun, 05 Apr 2026 08:43:47 GMT; -2m53s from local time.
| http-vhosts: 
| auth.lan.ddnsgeek.com : 200
|_127 names had status 404
|_http-csrf: Couldn't find any CSRF vulnerabilities.
|_http-wordpress-users: [Error] Wordpress installation was not found. We couldn't find wp-login.php
| http-title: Passbolt | Open source password manager for teams
|_Requested resource was /auth/login?redirect=%2F
|_http-chrono: Request times for /; avg: 37139.25ms; min: 2126.65ms; max: 69794.57ms
| ssl-cert: Subject: commonName=passbolt.lan.ddnsgeek.com
| Subject Alternative Name: DNS:passbolt.lan.ddnsgeek.com
| Issuer: commonName=R13/organizationName=Let's Encrypt/countryName=US
| Public Key type: rsa
| Public Key bits: 4096
| Signature Algorithm: sha256WithRSAEncryption
| Not valid before: 2026-02-05T19:02:28
| Not valid after:  2026-05-06T19:02:27
| MD5:     0e7e 0f70 3cfe 4113 d4cb a00c 81d7 90e2
| SHA-1:   abe4 cbbc cca9 683b 7709 ed8f 3017 51ea 87bb 4e71
| SHA-256: 6ad2 06b2 08de d20b 2ad4 d8d0 017e ce21 e103 c2b5 79ad 2c94 5515 ee6c be27 b06c
| -----BEGIN CERTIFICATE-----
| MIIGDTCCBPWgAwIBAgISBrHXCxqKZG7sSoBD88NLzNgAMA0GCSqGSIb3DQEBCwUA
| MDMxCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MQwwCgYDVQQD
| EwNSMTMwHhcNMjYwMjA1MTkwMjI4WhcNMjYwNTA2MTkwMjI3WjAkMSIwIAYDVQQD
| ExlwYXNzYm9sdC5sYW4uZGRuc2dlZWsuY29tMIICIjANBgkqhkiG9w0BAQEFAAOC
| Ag8AMIICCgKCAgEA7sz8Hd9oRf6MEwM8iJZNjEvfC19hS9Djs4iBeLW8ijyv4Uv3
| WC2xSrnglAFDU4EHPD/Ahzz0xgkSn0LsSvXn7Bzga6MPEyTwi3m55OUAY7xAvCBJ
| +nDzV0gXwPZ/jtQFnOsI5D06BMPB2buTpA+MBFXxR2ba2g1kSkd1+lC4lvN+V7Vs
| BieUYJO4K+YLa9F8udHUWWXD9SHoUAk2BMuVON1bH6rCZF84ufvubhBNLIp8Ip+P
| YUHctE2WEsfKMlrQWeu8wv/hdvYzmWCaVfzSF/t9L8wW5lGEY/+NIvOTxbZIKQoE
| eLnOZMtTMrnrHn0KXw3+Fztyl/ANwgG9OsOYIrbHvzkJxIDLKr1BxYsy2F+PwbUE
| d1JrjQ+7OMvP8J+hrMYPO3sBq31vyMOjCHra5Ghog3RXpmHzCydQwU7BF/RPwF1R
| ZAJh8t3ajicVoq+WlWW0064jbPNjFHOujJGpiV18M0xnnm29jRSEqdV+kf/4nXmS
| 6zqLLg4q5QgU0hpi9GQpRhsBnuljlJH+AguPOXHc9KGXlPF00jiNWJCUBoyKNTNw
| TR9LH6jDKkAfUzPrbdamq9gIumTj2oM9msHnFC+n4v/b4PoB9+FvtakLKBeMjCX6
| 6FHoX8v8wJS+8as3RejprdVw4CQheJ/y0T7G55K0DkLJsw3HEVTi1+QZwzkCAwEA
| AaOCAigwggIkMA4GA1UdDwEB/wQEAwIFoDAdBgNVHSUEFjAUBggrBgEFBQcDAQYI
| KwYBBQUHAwIwDAYDVR0TAQH/BAIwADAdBgNVHQ4EFgQUm0uWq6KhzT7RjYXvyeby
| BLRqYywwHwYDVR0jBBgwFoAU56ufDywzoFPTXk94yLKEDjvWkjMwMwYIKwYBBQUH
| AQEEJzAlMCMGCCsGAQUFBzAChhdodHRwOi8vcjEzLmkubGVuY3Iub3JnLzAkBgNV
| HREEHTAbghlwYXNzYm9sdC5sYW4uZGRuc2dlZWsuY29tMBMGA1UdIAQMMAowCAYG
| Z4EMAQIBMC0GA1UdHwQmMCQwIqAgoB6GHGh0dHA6Ly9yMTMuYy5sZW5jci5vcmcv
| MS5jcmwwggEEBgorBgEEAdZ5AgQCBIH1BIHyAPAAdQBkEcRspBLsp4kcogIuALyr
| TygH1B41J6vq/tUDyX3N8AAAAZwvZMVFAAAEAwBGMEQCIH1KKgRzpFfMFOP2EpsJ
| cDVOpEcZtDBFBeMs0NSWPJd0AiBUhgNOiKPliYUFSexJlgak2zSfolYg6mCJdjCk
| bMvvngB3AA5XlLzzrqk+MxssmQez95Dfm8I9cTIl3SGpJaxhxU4hAAABnC9kxWIA
| AAQDAEgwRgIhAL0FbW5uHEkpfvxuCpSMD8gHZZx40HZU+0ozNgRbznCpAiEAu/yN
| 8NxEWATcJzRla+sZWKSGSZLEGBA/F/URbvZI1TAwDQYJKoZIhvcNAQELBQADggEB
| AH6EoSrx4pAJK1ZfZm4U2h6MbtOt5pg+ZNQOO3zyNI6J/+DBNsFWtkOimNYCycNR
| lF3RDbkk7n+gFG9hMCyRcc+JUduRTS1quL1guB6+qHnjn2gUE5duNKHqVx/69Vp3
| 6X3YyQp2QU+sM0cFkRMHkdUD2BJ9SdpnvgOctGdVPraRJTuFqUgQw/uFflfBQZaL
| 4qdBZ5UTWMd34tfWK2/ghqjpX65upzF6cS044IVhA6CfRyvVl40WnjvnrnY4ZpAP
| vJQ9KLvWPjsPVJ9jqMxHFMPavTK5N3wrRbQgPcKtthYtYUqd1/wO6F4JcurIFBiq
| Kpvre+eLUhbfX0oMhv69Ijo=
|_-----END CERTIFICATE-----
| http-security-headers: 
|   Strict_Transport_Security: 
|     Header: Strict-Transport-Security: max-age=15552000; includeSubDomains; preload
|   X_Frame_Options: 
|     Header: X-Frame-Options: SAMEORIGIN
|     Description: The browser must not display this content in any frame from a page of different origin than the content itself.
|   X_XSS_Protection: 
|     Header: X-XSS-Protection: 1; mode=block
|     Description: The browser will prevent the rendering of the page when XSS is detected.
|   X_Content_Type_Options: 
|     Header: X-Content-Type-Options: nosniff
|_    Description: Will prevent the browser from MIME-sniffing a response away from the declared content-type. 
|_http-referer-checker: Couldn't find any cross-domain scripts.
|_http-php-version: Credits query returned unknown hash 949c98d8d14d6d4da5caaf045903a8a1
|_http-server-header: nginx
|_http-drupal-enum: Nothing found amongst the top 100 resources,use --script-args number=<number|all> for deeper analysis)
|_http-fetch: Please enter the complete path of the directory to save data in.
|_http-backup-finder: ERROR: Script execution failed (use -d to debug)
| http-waf-detect: IDS/IPS/WAF detected:
|_passbolt.lan.ddnsgeek.com:443/?p4yl04d3=<script>alert(document.cookie)</script>
|_http-devframework: Couldn't determine the underlying framework or CMS. Try increasing 'httpspider.maxpagecount' value to spider more pages.
| http-useragent-tester: 
|   Status for browser useragent: 200
|   Redirected To: /auth/login?redirect=%2F
|   Allowed User Agents: 
|     Mozilla/5.0 (compatible; Nmap Scripting Engine; https://nmap.org/book/nse.html)
|     lwp-trivial
|     libcurl-agent/1.0
|     PHP/
|     Python-urllib/2.5
|     GT::WWW
|     Snoopy
|     MFC_Tear_Sample
|     HTTP::Lite
|     PHPCrawl
|     URI::Fetch
|     Zend_Http_Client
|     http client
|     PECL::HTTP
|     Wget/1.13.4 (linux-gnu)
|     WWW-Mechanize/1.34
|   Change in Status Code: 
|_    libwww: 404
|_http-jsonp-detection: Couldn't find any JSONP endpoints.
| ssl-enum-ciphers: 
|   TLSv1.2: 
|     ciphers: 
|       TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA (secp256r1) - A
|       TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (secp256r1) - A
|       TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (secp256r1) - A
|       TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (secp256r1) - A
|       TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256 (secp256r1) - A
|     compressors: 
|       NULL
|     cipher preference: client
|     warnings: 
|       Key exchange (secp256r1) of lower strength than certificate key
|   TLSv1.3: 
|     ciphers: 
|       TLS_AKE_WITH_AES_128_GCM_SHA256 (X25519MLKEM768) - A
|       TLS_AKE_WITH_AES_256_GCM_SHA384 (X25519MLKEM768) - A
|       TLS_AKE_WITH_CHACHA20_POLY1305_SHA256 (X25519MLKEM768) - A
|     cipher preference: server
|_  least strength: A
|_http-dombased-xss: Couldn't find any DOM based XSS.
| http-methods: 
|_  Supported Methods: GET HEAD POST
|_ssl-date: TLS randomness does not represent time
| http-errors: 
| Spidering limited to: maxpagecount=40; withinhost=passbolt.lan.ddnsgeek.com
|   Found the following error pages: 
|   
|   Error Code: 404
|   	https://passbolt.lan.ddnsgeek.com:443/js/app/stylesheet.js?v=5.10.0
|   
|   Error Code: 404
|   	https://passbolt.lan.ddnsgeek.com:443/js/app/s.src1%7D%7Dbreak;case
|   
|   Error Code: 404
|   	https://passbolt.lan.ddnsgeek.com:443/js/app/e1setTimeout1function11%7Bdocument.body.removeChild1u1%7D13331%7Dif1r1s
|   
|   Error Code: 404
|   	https://passbolt.lan.ddnsgeek.com:443/js/app/api-triage.js?v=5.10.0
|   
|   Error Code: 404
|_  	https://passbolt.lan.ddnsgeek.com:443/js/app/e1110;var
|_http-mobileversion-checker: No mobile version detected.
|_http-malware-host: Host appears to be clean
|_http-favicon: Unknown favicon MD5: 82C6406C68D91356C9A729ED456EECF4
|_http-litespeed-sourcecode-download: Request with null byte did not work. This web server might not be vulnerable
|_http-stored-xss: Couldn't find any stored XSS vulnerabilities.
| http-sitemap-generator: 
|   Directory structure:
|     /
|       Other: 1; ico: 1; png: 5; svg: 1
|     /js/app/
|       js: 1
|   Longest directory structure:
|     Depth: 2
|     Dir: /js/app/
|   Total files found (by extension):
|_    Other: 1; ico: 1; js: 1; png: 5; svg: 1

Read data files from: /usr/share/nmap
Service detection performed. Please report any incorrect results at https://nmap.org/submit/ .
# Nmap done at Sun Apr  5 09:05:59 2026 -- 1 IP address (1 host up) scanned in 1586.00 seconds
