Jemena · Domain Security

Jemena Domain Security

Domain security

Domain security posture for Jemena, probed live across 8 host(s) and 1 registrable domain(s). 3 host(s) serve HTTPS (up to TLSv1.3); 1 advertise HSTS. Email/DNS controls: DNSSEC absent, SPF present, DMARC present (p=quarantine).

EnergyAustraliaUtilitiesElectricityGasGridNetwork DistributorDERSolarSmart MeteringDemand ResponseIEEE 2030.5

Transport & Host Security

www.jemena.com.au
HTTPS: yes · TLS: TLSv1.3 · HSTS: yes · cert expires: Sep 5 07:12:37 2026 GMT
myservices.jemena.com.au
HTTPS: yes · TLS: TLSv1.3 · HSTS: no · cert expires: Sep 22 23:59:59 2026 GMT
sep2.aws.jemena.com.au
HTTPS: no · HSTS: no
sep2.aws.jemena.com.au:8443
HTTPS: yes · HSTS: no
sep2-e2e.aws.jemena.com.au:8444
HTTPS: no · HSTS: no
myportal.jemena.com.au
HTTPS: no · HSTS: no
poweroutages.jemena.com.au
HTTPS: no · HSTS: no
api.jemena.com.au
HTTPS: no · HSTS: no

Domain (DNS/Email) Security

jemena.com.au
DNSSEC: no · SPF: yes · DMARC: yes (p=quarantine) · CAA: none

Source

Domain Security

jemena-domain-security.yml Raw ↑
generated: '2026-07-27'
method: probed
source: live DNS/TLS/HTTP probes of apis.yml + OpenAPI hosts
hosts:
- host: www.jemena.com.au
  https: true
  tls_version: TLSv1.3
  cert_expires: Sep  5 07:12:37 2026 GMT
  hsts: true
  hsts_max_age: 2592000
- host: myservices.jemena.com.au
  https: true
  tls_version: TLSv1.3
  cert_expires: Sep 22 23:59:59 2026 GMT
  hsts: false
- host: sep2.aws.jemena.com.au
  https: false
  note: >-
    No listener on port 443. The JEN CSIP-AUS Utility Server listens on port 8443 (production) and
    the staging host sep2-e2e.aws.jemena.com.au on port 8444 — see the manual entries below.
- host: sep2.aws.jemena.com.au:8443
  https: true
  mutual_tls: true
  public_ca: false
  ssl_verify_result: 19
  hsts: null
  probed_manually: true
  note: >-
    TLS handshake succeeds against a private-PKI chain (self-signed certificate in chain, expected for
    the IEEE 2030.5 SERCA/MICA hierarchy, so public-CA verification fails by design). With verification
    disabled, GET /sep2/dcap returns HTTP 500 from nginx because no client certificate was presented.
    Resolves to gsmd-int-prod-01-nlb-680afe73530cbb36.elb.ap-southeast-2.amazonaws.com (AWS NLB,
    ap-southeast-2).
- host: sep2-e2e.aws.jemena.com.au:8444
  https: null
  mutual_tls: true
  probed_manually: true
  note: >-
    Staging. Connection times out from outside Australia, consistent with the documented client-IP
    allow-listing. Resolves to gsmd-int-nonprod-01-nlb-c1e23f301554325d.elb.ap-southeast-2.amazonaws.com.
- host: myportal.jemena.com.au
  probed_manually: true
  note: Customer/trade login wall; / returns 200, /api and /.well-known/openid-configuration return 403.
- host: poweroutages.jemena.com.au
  probed_manually: true
  note: CloudFront distribution, geo-restricted — returns HTTP 403 outside Australia.
- host: api.jemena.com.au
  probed_manually: true
  note: Resolves via Akamai (api.jemena.com.au.edgekey.net); returns HTTP 503 on /, /openapi.json, /swagger.json and /health. Internal edge, not a public API.
domains:
- domain: jemena.com.au
  dnssec: false
  caa: []
  spf: true
  dmarc: true
  dmarc_policy: quarantine