generated: '2026-07-27' method: probed source: live DNS/TLS/HTTP probes of apis.yml + OpenAPI hosts hosts: - host: www.jemena.com.au https: true tls_version: TLSv1.3 cert_expires: Sep 5 07:12:37 2026 GMT hsts: true hsts_max_age: 2592000 - host: myservices.jemena.com.au https: true tls_version: TLSv1.3 cert_expires: Sep 22 23:59:59 2026 GMT hsts: false - host: sep2.aws.jemena.com.au https: false note: >- No listener on port 443. The JEN CSIP-AUS Utility Server listens on port 8443 (production) and the staging host sep2-e2e.aws.jemena.com.au on port 8444 — see the manual entries below. - host: sep2.aws.jemena.com.au:8443 https: true mutual_tls: true public_ca: false ssl_verify_result: 19 hsts: null probed_manually: true note: >- TLS handshake succeeds against a private-PKI chain (self-signed certificate in chain, expected for the IEEE 2030.5 SERCA/MICA hierarchy, so public-CA verification fails by design). With verification disabled, GET /sep2/dcap returns HTTP 500 from nginx because no client certificate was presented. Resolves to gsmd-int-prod-01-nlb-680afe73530cbb36.elb.ap-southeast-2.amazonaws.com (AWS NLB, ap-southeast-2). - host: sep2-e2e.aws.jemena.com.au:8444 https: null mutual_tls: true probed_manually: true note: >- Staging. Connection times out from outside Australia, consistent with the documented client-IP allow-listing. Resolves to gsmd-int-nonprod-01-nlb-c1e23f301554325d.elb.ap-southeast-2.amazonaws.com. - host: myportal.jemena.com.au probed_manually: true note: Customer/trade login wall; / returns 200, /api and /.well-known/openid-configuration return 403. - host: poweroutages.jemena.com.au probed_manually: true note: CloudFront distribution, geo-restricted — returns HTTP 403 outside Australia. - host: api.jemena.com.au probed_manually: true note: Resolves via Akamai (api.jemena.com.au.edgekey.net); returns HTTP 503 on /, /openapi.json, /swagger.json and /health. Internal edge, not a public API. domains: - domain: jemena.com.au dnssec: false caa: [] spf: true dmarc: true dmarc_policy: quarantine