Could you enable scanning the site anyway if you get this error? You scan sites with self signed certificate but if you get this you dont do it, it would be useful to still be able to do it just like with self-signed certificates.
In most cases, it will be the same server as the domain name you wish to test, but I take your point. I will make a note to have a checkbox to proceed even when there is a name mismatch.
You already can -- on the page where you got the "Certificate not valid for domain name" message, underneath there will be one or more valid domain names listed. Clicking any of those should initiate an assessment.
But this doesnt test that specific site I want to test. Also in some cases there arent any "valid" sites in the certificate, only something like "localhost" etc.
Any plans on implementing this anytime soon?
Give me one site/hostname to test with, and I may be able to do it this week.
Well here's one to work with: https://www.ssllabs.com/ssldb/analyze.html?d=xwa.xdefenders.com
Use this workaround for now:
I implemented that workaround some time ago, for you, but it seems that I forgot to tell you about it. The irony is that you no longer needed, because with 1.0.118 (deployed earlier today), the UI supports it
Retrieving data ...