gnutls on RHEL7

Updated

Details of the capabilities of gnutls-3.3.24 on RHEL7

This article is part of the Securing Applications Collection

Due to the serious issues with the design of TLS and implementation issues in openssl uncovered during the lifetime of RHEL7 you should always use the latest version but at least

gnutls-3.3.29-8.el7

Capabilities

Protocols

  • TLSv1.2
  • TLSv1.1
  • TLSv1
  • SSLv3

Cipher Suites

Suite NameCipher SuiteMinimum Protocol
TLS_RSA_NULL_MD50x0001SSL3.0
TLS_RSA_NULL_SHA10x0002SSL3.0
TLS_RSA_NULL_SHA2560x003bTLS1.2
TLS_RSA_ARCFOUR_128_SHA10x0005SSL3.0
TLS_RSA_ARCFOUR_128_MD50x0004SSL3.0
TLS_RSA_3DES_EDE_CBC_SHA10x000aSSL3.0
TLS_RSA_AES_128_CBC_SHA10x002fSSL3.0
TLS_RSA_AES_256_CBC_SHA10x0035SSL3.0
TLS_RSA_CAMELLIA_128_CBC_SHA2560x00baTLS1.2
TLS_RSA_CAMELLIA_256_CBC_SHA2560x00c0TLS1.2
TLS_RSA_CAMELLIA_128_CBC_SHA10x0041SSL3.0
TLS_RSA_CAMELLIA_256_CBC_SHA10x0084SSL3.0
TLS_RSA_AES_128_CBC_SHA2560x003cTLS1.2
TLS_RSA_AES_256_CBC_SHA2560x003dTLS1.2
TLS_RSA_AES_128_GCM_SHA2560x009cTLS1.2
TLS_RSA_AES_256_GCM_SHA3840x009dTLS1.2
TLS_RSA_CAMELLIA_128_GCM_SHA2560xc07aTLS1.2
TLS_RSA_CAMELLIA_256_GCM_SHA3840xc07bTLS1.2
TLS_RSA_SALSA20_256_SHA10xe411SSL3.0
TLS_RSA_ESTREAM_SALSA20_256_SHA10xe410SSL3.0
TLS_DHE_DSS_ARCFOUR_128_SHA10x0066SSL3.0
TLS_DHE_DSS_3DES_EDE_CBC_SHA10x0013SSL3.0
TLS_DHE_DSS_AES_128_CBC_SHA10x0032SSL3.0
TLS_DHE_DSS_AES_256_CBC_SHA10x0038SSL3.0
TLS_DHE_DSS_CAMELLIA_128_CBC_SHA2560x00bdTLS1.2
TLS_DHE_DSS_CAMELLIA_256_CBC_SHA2560x00c3TLS1.2
TLS_DHE_DSS_CAMELLIA_128_CBC_SHA10x0044SSL3.0
TLS_DHE_DSS_CAMELLIA_256_CBC_SHA10x0087SSL3.0
TLS_DHE_DSS_AES_128_CBC_SHA2560x0040TLS1.2
TLS_DHE_DSS_AES_256_CBC_SHA2560x006aTLS1.2
TLS_DHE_DSS_AES_128_GCM_SHA2560x00a2TLS1.2
TLS_DHE_DSS_AES_256_GCM_SHA3840x00a3TLS1.2
TLS_DHE_DSS_CAMELLIA_128_GCM_SHA2560xc080TLS1.2
TLS_DHE_DSS_CAMELLIA_256_GCM_SHA3840xc081TLS1.2
TLS_DHE_RSA_3DES_EDE_CBC_SHA10x0016SSL3.0
TLS_DHE_RSA_AES_128_CBC_SHA10x0033SSL3.0
TLS_DHE_RSA_AES_256_CBC_SHA10x0039SSL3.0
TLS_DHE_RSA_CAMELLIA_128_CBC_SHA2560x00beTLS1.2
TLS_DHE_RSA_CAMELLIA_256_CBC_SHA2560x00c4TLS1.2
TLS_DHE_RSA_CAMELLIA_128_CBC_SHA10x0045SSL3.0
TLS_DHE_RSA_CAMELLIA_256_CBC_SHA10x0088SSL3.0
TLS_DHE_RSA_AES_128_CBC_SHA2560x0067TLS1.2
TLS_DHE_RSA_AES_256_CBC_SHA2560x006bTLS1.2
TLS_DHE_RSA_AES_128_GCM_SHA2560x009eTLS1.2
TLS_DHE_RSA_AES_256_GCM_SHA3840x009fTLS1.2
TLS_DHE_RSA_CAMELLIA_128_GCM_SHA2560xc07cTLS1.2
TLS_DHE_RSA_CAMELLIA_256_GCM_SHA3840xc07dTLS1.2
TLS_ECDHE_RSA_NULL_SHA10xc010SSL3.0
TLS_ECDHE_RSA_3DES_EDE_CBC_SHA10xc012SSL3.0
TLS_ECDHE_RSA_AES_128_CBC_SHA10xc013SSL3.0
TLS_ECDHE_RSA_AES_256_CBC_SHA10xc014SSL3.0
TLS_ECDHE_RSA_AES_256_CBC_SHA3840xc028TLS1.2
TLS_ECDHE_RSA_ARCFOUR_128_SHA10xc011SSL3.0
TLS_ECDHE_RSA_CAMELLIA_128_CBC_SHA2560xc076TLS1.2
TLS_ECDHE_RSA_CAMELLIA_256_CBC_SHA3840xc077TLS1.2
TLS_ECDHE_ECDSA_NULL_SHA10xc006SSL3.0
TLS_ECDHE_ECDSA_3DES_EDE_CBC_SHA10xc008SSL3.0
TLS_ECDHE_ECDSA_AES_128_CBC_SHA10xc009SSL3.0
TLS_ECDHE_ECDSA_AES_256_CBC_SHA10xc00aSSL3.0
TLS_ECDHE_ECDSA_ARCFOUR_128_SHA10xc007SSL3.0
TLS_ECDHE_ECDSA_CAMELLIA_128_CBC_SHA2560xc072TLS1.2
TLS_ECDHE_ECDSA_CAMELLIA_256_CBC_SHA3840xc073TLS1.2
TLS_ECDHE_ECDSA_AES_128_CBC_SHA2560xc023TLS1.2
TLS_ECDHE_RSA_AES_128_CBC_SHA2560xc027TLS1.2
TLS_ECDHE_ECDSA_CAMELLIA_128_GCM_SHA2560xc086TLS1.2
TLS_ECDHE_ECDSA_CAMELLIA_256_GCM_SHA3840xc087TLS1.2
TLS_ECDHE_ECDSA_AES_128_GCM_SHA2560xc02bTLS1.2
TLS_ECDHE_ECDSA_AES_256_GCM_SHA3840xc02cTLS1.2
TLS_ECDHE_RSA_AES_128_GCM_SHA2560xc02fTLS1.2
TLS_ECDHE_RSA_AES_256_GCM_SHA3840xc030TLS1.2
TLS_ECDHE_ECDSA_AES_256_CBC_SHA3840xc024TLS1.2
TLS_ECDHE_RSA_CAMELLIA_128_GCM_SHA2560xc08aTLS1.2
TLS_ECDHE_RSA_CAMELLIA_256_GCM_SHA3840xc08bTLS1.2
TLS_ECDHE_RSA_SALSA20_256_SHA10xe413SSL3.0
TLS_ECDHE_ECDSA_SALSA20_256_SHA10xe415SSL3.0
TLS_ECDHE_RSA_ESTREAM_SALSA20_256_SHA10xe412SSL3.0
TLS_ECDHE_ECDSA_ESTREAM_SALSA20_256_SHA10xe414SSL3.0
TLS_ECDHE_PSK_3DES_EDE_CBC_SHA10xc034SSL3.0
TLS_ECDHE_PSK_AES_128_CBC_SHA10xc035SSL3.0
TLS_ECDHE_PSK_AES_256_CBC_SHA10xc036SSL3.0
TLS_ECDHE_PSK_AES_128_CBC_SHA2560xc037TLS1.2
TLS_ECDHE_PSK_AES_256_CBC_SHA3840xc038TLS1.2
TLS_ECDHE_PSK_ARCFOUR_128_SHA10xc033SSL3.0
TLS_ECDHE_PSK_NULL_SHA10xc039SSL3.0
TLS_ECDHE_PSK_NULL_SHA2560xc03aTLS1.2
TLS_ECDHE_PSK_NULL_SHA3840xc03bTLS1.0
TLS_ECDHE_PSK_CAMELLIA_128_CBC_SHA2560xc09aTLS1.2
TLS_ECDHE_PSK_CAMELLIA_256_CBC_SHA3840xc09bTLS1.2
TLS_ECDHE_PSK_SALSA20_256_SHA10xe419SSL3.0
TLS_ECDHE_PSK_ESTREAM_SALSA20_256_SHA10xe418SSL3.0
TLS_PSK_ARCFOUR_128_SHA10x008aSSL3.0
TLS_PSK_3DES_EDE_CBC_SHA10x008bSSL3.0
TLS_PSK_AES_128_CBC_SHA10x008cSSL3.0
TLS_PSK_AES_256_CBC_SHA10x008dSSL3.0
TLS_PSK_AES_128_CBC_SHA2560x00aeTLS1.2
TLS_PSK_AES_256_GCM_SHA3840x00a9TLS1.2
TLS_PSK_CAMELLIA_128_GCM_SHA2560xc08eTLS1.2
TLS_PSK_CAMELLIA_256_GCM_SHA3840xc08fTLS1.2
TLS_PSK_AES_128_GCM_SHA2560x00a8TLS1.2
TLS_PSK_NULL_SHA10x002cSSL3.0
TLS_PSK_NULL_SHA2560x00b0TLS1.2
TLS_PSK_CAMELLIA_128_CBC_SHA2560xc094TLS1.2
TLS_PSK_CAMELLIA_256_CBC_SHA3840xc095TLS1.2
TLS_PSK_SALSA20_256_SHA10xe417SSL3.0
TLS_PSK_ESTREAM_SALSA20_256_SHA10xe416SSL3.0
TLS_PSK_AES_256_CBC_SHA3840x00afTLS1.2
TLS_PSK_NULL_SHA3840x00b1TLS1.2
TLS_RSA_PSK_ARCFOUR_128_SHA10x0092TLS1.0
TLS_RSA_PSK_3DES_EDE_CBC_SHA10x0093TLS1.0
TLS_RSA_PSK_AES_128_CBC_SHA10x0094TLS1.0
TLS_RSA_PSK_AES_256_CBC_SHA10x0095TLS1.0
TLS_RSA_PSK_CAMELLIA_128_GCM_SHA2560xc092TLS1.2
TLS_RSA_PSK_CAMELLIA_256_GCM_SHA3840xc093TLS1.2
TLS_RSA_PSK_AES_128_GCM_SHA2560x00acTLS1.2
TLS_RSA_PSK_AES_128_CBC_SHA2560x00b6TLS1.2
TLS_RSA_PSK_NULL_SHA10x002eTLS1.0
TLS_RSA_PSK_NULL_SHA2560x00b8TLS1.2
TLS_RSA_PSK_AES_256_GCM_SHA3840x00adTLS1.2
TLS_RSA_PSK_AES_256_CBC_SHA3840x00b7TLS1.2
TLS_RSA_PSK_NULL_SHA3840x00b9TLS1.2
TLS_RSA_PSK_CAMELLIA_128_CBC_SHA2560xc098TLS1.2
TLS_RSA_PSK_CAMELLIA_256_CBC_SHA3840xc099TLS1.2
TLS_DHE_PSK_ARCFOUR_128_SHA10x008eSSL3.0
TLS_DHE_PSK_3DES_EDE_CBC_SHA10x008fSSL3.0
TLS_DHE_PSK_AES_128_CBC_SHA10x0090SSL3.0
TLS_DHE_PSK_AES_256_CBC_SHA10x0091SSL3.0
TLS_DHE_PSK_AES_128_CBC_SHA2560x00b2TLS1.2
TLS_DHE_PSK_AES_128_GCM_SHA2560x00aaTLS1.2
TLS_DHE_PSK_NULL_SHA10x002dSSL3.0
TLS_DHE_PSK_NULL_SHA2560x00b4TLS1.2
TLS_DHE_PSK_NULL_SHA3840x00b5TLS1.2
TLS_DHE_PSK_AES_256_CBC_SHA3840x00b3TLS1.2
TLS_DHE_PSK_AES_256_GCM_SHA3840x00abTLS1.2
TLS_DHE_PSK_CAMELLIA_128_CBC_SHA2560xc096TLS1.2
TLS_DHE_PSK_CAMELLIA_256_CBC_SHA3840xc097TLS1.2
TLS_DHE_PSK_CAMELLIA_128_GCM_SHA2560xc090TLS1.2
TLS_DHE_PSK_CAMELLIA_256_GCM_SHA3840xc091TLS1.2
TLS_DH_ANON_ARCFOUR_128_MD50x0018SSL3.0
TLS_DH_ANON_3DES_EDE_CBC_SHA10x001bSSL3.0
TLS_DH_ANON_AES_128_CBC_SHA10x0034SSL3.0
TLS_DH_ANON_AES_256_CBC_SHA10x003aSSL3.0
TLS_DH_ANON_CAMELLIA_128_CBC_SHA2560x00bfTLS1.2
TLS_DH_ANON_CAMELLIA_256_CBC_SHA2560x00c5TLS1.2
TLS_DH_ANON_CAMELLIA_128_CBC_SHA10x0046SSL3.0
TLS_DH_ANON_CAMELLIA_256_CBC_SHA10x0089SSL3.0
TLS_DH_ANON_AES_128_CBC_SHA2560x006cTLS1.2
TLS_DH_ANON_AES_256_CBC_SHA2560x006dTLS1.2
TLS_DH_ANON_AES_128_GCM_SHA2560x00a6TLS1.2
TLS_DH_ANON_AES_256_GCM_SHA3840x00a7TLS1.2
TLS_DH_ANON_CAMELLIA_128_GCM_SHA2560xc084TLS1.2
TLS_DH_ANON_CAMELLIA_256_GCM_SHA3840xc085TLS1.2
TLS_ECDH_ANON_NULL_SHA10xc015SSL3.0
TLS_ECDH_ANON_3DES_EDE_CBC_SHA10xc017SSL3.0
TLS_ECDH_ANON_AES_128_CBC_SHA10xc018SSL3.0
TLS_ECDH_ANON_AES_256_CBC_SHA10xc019SSL3.0
TLS_ECDH_ANON_ARCFOUR_128_SHA10xc016SSL3.0

Certificates

  • certificates with RSA keys and SHA-1 or SHA-256 signatures.
  • certificates with EC keys and DSA or SHA-256 signatures

Hashes

  • md5 message digest algorithm
  • sha1 message digest algorithm
  • sha224 message digest algorithm
  • sha256 message digest algorithm
  • sha384 message digest algorithm
  • sha512 message digest algorithm

Additional Notes

Capabilities as given by gnutls-cli

$ gnutls-cli --list
Cipher suites:
TLS_RSA_NULL_MD5                                  	0x00, 0x01	SSL3.0
TLS_RSA_NULL_SHA1                                 	0x00, 0x02	SSL3.0
TLS_RSA_NULL_SHA256                               	0x00, 0x3b	TLS1.2
TLS_RSA_ARCFOUR_128_SHA1                          	0x00, 0x05	SSL3.0
TLS_RSA_ARCFOUR_128_MD5                           	0x00, 0x04	SSL3.0
TLS_RSA_3DES_EDE_CBC_SHA1                         	0x00, 0x0a	SSL3.0
TLS_RSA_AES_128_CBC_SHA1                          	0x00, 0x2f	SSL3.0
TLS_RSA_AES_256_CBC_SHA1                          	0x00, 0x35	SSL3.0
TLS_RSA_CAMELLIA_128_CBC_SHA256                   	0x00, 0xba	TLS1.2
TLS_RSA_CAMELLIA_256_CBC_SHA256                   	0x00, 0xc0	TLS1.2
TLS_RSA_CAMELLIA_128_CBC_SHA1                     	0x00, 0x41	SSL3.0
TLS_RSA_CAMELLIA_256_CBC_SHA1                     	0x00, 0x84	SSL3.0
TLS_RSA_AES_128_CBC_SHA256                        	0x00, 0x3c	TLS1.2
TLS_RSA_AES_256_CBC_SHA256                        	0x00, 0x3d	TLS1.2
TLS_RSA_AES_128_GCM_SHA256                        	0x00, 0x9c	TLS1.2
TLS_RSA_AES_256_GCM_SHA384                        	0x00, 0x9d	TLS1.2
TLS_RSA_CAMELLIA_128_GCM_SHA256                   	0xc0, 0x7a	TLS1.2
TLS_RSA_CAMELLIA_256_GCM_SHA384                   	0xc0, 0x7b	TLS1.2
TLS_RSA_SALSA20_256_SHA1                          	0xe4, 0x11	SSL3.0
TLS_RSA_ESTREAM_SALSA20_256_SHA1                  	0xe4, 0x10	SSL3.0
TLS_DHE_DSS_ARCFOUR_128_SHA1                      	0x00, 0x66	SSL3.0
TLS_DHE_DSS_3DES_EDE_CBC_SHA1                     	0x00, 0x13	SSL3.0
TLS_DHE_DSS_AES_128_CBC_SHA1                      	0x00, 0x32	SSL3.0
TLS_DHE_DSS_AES_256_CBC_SHA1                      	0x00, 0x38	SSL3.0
TLS_DHE_DSS_CAMELLIA_128_CBC_SHA256               	0x00, 0xbd	TLS1.2
TLS_DHE_DSS_CAMELLIA_256_CBC_SHA256               	0x00, 0xc3	TLS1.2
TLS_DHE_DSS_CAMELLIA_128_CBC_SHA1                 	0x00, 0x44	SSL3.0
TLS_DHE_DSS_CAMELLIA_256_CBC_SHA1                 	0x00, 0x87	SSL3.0
TLS_DHE_DSS_AES_128_CBC_SHA256                    	0x00, 0x40	TLS1.2
TLS_DHE_DSS_AES_256_CBC_SHA256                    	0x00, 0x6a	TLS1.2
TLS_DHE_DSS_AES_128_GCM_SHA256                    	0x00, 0xa2	TLS1.2
TLS_DHE_DSS_AES_256_GCM_SHA384                    	0x00, 0xa3	TLS1.2
TLS_DHE_DSS_CAMELLIA_128_GCM_SHA256               	0xc0, 0x80	TLS1.2
TLS_DHE_DSS_CAMELLIA_256_GCM_SHA384               	0xc0, 0x81	TLS1.2
TLS_DHE_RSA_3DES_EDE_CBC_SHA1                     	0x00, 0x16	SSL3.0
TLS_DHE_RSA_AES_128_CBC_SHA1                      	0x00, 0x33	SSL3.0
TLS_DHE_RSA_AES_256_CBC_SHA1                      	0x00, 0x39	SSL3.0
TLS_DHE_RSA_CAMELLIA_128_CBC_SHA256               	0x00, 0xbe	TLS1.2
TLS_DHE_RSA_CAMELLIA_256_CBC_SHA256               	0x00, 0xc4	TLS1.2
TLS_DHE_RSA_CAMELLIA_128_CBC_SHA1                 	0x00, 0x45	SSL3.0
TLS_DHE_RSA_CAMELLIA_256_CBC_SHA1                 	0x00, 0x88	SSL3.0
TLS_DHE_RSA_AES_128_CBC_SHA256                    	0x00, 0x67	TLS1.2
TLS_DHE_RSA_AES_256_CBC_SHA256                    	0x00, 0x6b	TLS1.2
TLS_DHE_RSA_AES_128_GCM_SHA256                    	0x00, 0x9e	TLS1.2
TLS_DHE_RSA_AES_256_GCM_SHA384                    	0x00, 0x9f	TLS1.2
TLS_DHE_RSA_CAMELLIA_128_GCM_SHA256               	0xc0, 0x7c	TLS1.2
TLS_DHE_RSA_CAMELLIA_256_GCM_SHA384               	0xc0, 0x7d	TLS1.2
TLS_ECDHE_RSA_NULL_SHA1                           	0xc0, 0x10	SSL3.0
TLS_ECDHE_RSA_3DES_EDE_CBC_SHA1                   	0xc0, 0x12	SSL3.0
TLS_ECDHE_RSA_AES_128_CBC_SHA1                    	0xc0, 0x13	SSL3.0
TLS_ECDHE_RSA_AES_256_CBC_SHA1                    	0xc0, 0x14	SSL3.0
TLS_ECDHE_RSA_AES_256_CBC_SHA384                  	0xc0, 0x28	TLS1.2
TLS_ECDHE_RSA_ARCFOUR_128_SHA1                    	0xc0, 0x11	SSL3.0
TLS_ECDHE_RSA_CAMELLIA_128_CBC_SHA256             	0xc0, 0x76	TLS1.2
TLS_ECDHE_RSA_CAMELLIA_256_CBC_SHA384             	0xc0, 0x77	TLS1.2
TLS_ECDHE_ECDSA_NULL_SHA1                         	0xc0, 0x06	SSL3.0
TLS_ECDHE_ECDSA_3DES_EDE_CBC_SHA1                 	0xc0, 0x08	SSL3.0
TLS_ECDHE_ECDSA_AES_128_CBC_SHA1                  	0xc0, 0x09	SSL3.0
TLS_ECDHE_ECDSA_AES_256_CBC_SHA1                  	0xc0, 0x0a	SSL3.0
TLS_ECDHE_ECDSA_ARCFOUR_128_SHA1                  	0xc0, 0x07	SSL3.0
TLS_ECDHE_ECDSA_CAMELLIA_128_CBC_SHA256           	0xc0, 0x72	TLS1.2
TLS_ECDHE_ECDSA_CAMELLIA_256_CBC_SHA384           	0xc0, 0x73	TLS1.2
TLS_ECDHE_ECDSA_AES_128_CBC_SHA256                	0xc0, 0x23	TLS1.2
TLS_ECDHE_RSA_AES_128_CBC_SHA256                  	0xc0, 0x27	TLS1.2
TLS_ECDHE_ECDSA_CAMELLIA_128_GCM_SHA256           	0xc0, 0x86	TLS1.2
TLS_ECDHE_ECDSA_CAMELLIA_256_GCM_SHA384           	0xc0, 0x87	TLS1.2
TLS_ECDHE_ECDSA_AES_128_GCM_SHA256                	0xc0, 0x2b	TLS1.2
TLS_ECDHE_ECDSA_AES_256_GCM_SHA384                	0xc0, 0x2c	TLS1.2
TLS_ECDHE_RSA_AES_128_GCM_SHA256                  	0xc0, 0x2f	TLS1.2
TLS_ECDHE_RSA_AES_256_GCM_SHA384                  	0xc0, 0x30	TLS1.2
TLS_ECDHE_ECDSA_AES_256_CBC_SHA384                	0xc0, 0x24	TLS1.2
TLS_ECDHE_RSA_CAMELLIA_128_GCM_SHA256             	0xc0, 0x8a	TLS1.2
TLS_ECDHE_RSA_CAMELLIA_256_GCM_SHA384             	0xc0, 0x8b	TLS1.2
TLS_ECDHE_RSA_SALSA20_256_SHA1                    	0xe4, 0x13	SSL3.0
TLS_ECDHE_ECDSA_SALSA20_256_SHA1                  	0xe4, 0x15	SSL3.0
TLS_ECDHE_RSA_ESTREAM_SALSA20_256_SHA1            	0xe4, 0x12	SSL3.0
TLS_ECDHE_ECDSA_ESTREAM_SALSA20_256_SHA1          	0xe4, 0x14	SSL3.0
TLS_ECDHE_PSK_3DES_EDE_CBC_SHA1                   	0xc0, 0x34	SSL3.0
TLS_ECDHE_PSK_AES_128_CBC_SHA1                    	0xc0, 0x35	SSL3.0
TLS_ECDHE_PSK_AES_256_CBC_SHA1                    	0xc0, 0x36	SSL3.0
TLS_ECDHE_PSK_AES_128_CBC_SHA256                  	0xc0, 0x37	TLS1.2
TLS_ECDHE_PSK_AES_256_CBC_SHA384                  	0xc0, 0x38	TLS1.2
TLS_ECDHE_PSK_ARCFOUR_128_SHA1                    	0xc0, 0x33	SSL3.0
TLS_ECDHE_PSK_NULL_SHA1                           	0xc0, 0x39	SSL3.0
TLS_ECDHE_PSK_NULL_SHA256                         	0xc0, 0x3a	TLS1.2
TLS_ECDHE_PSK_NULL_SHA384                         	0xc0, 0x3b	TLS1.0
TLS_ECDHE_PSK_CAMELLIA_128_CBC_SHA256             	0xc0, 0x9a	TLS1.2
TLS_ECDHE_PSK_CAMELLIA_256_CBC_SHA384             	0xc0, 0x9b	TLS1.2
TLS_ECDHE_PSK_SALSA20_256_SHA1                    	0xe4, 0x19	SSL3.0
TLS_ECDHE_PSK_ESTREAM_SALSA20_256_SHA1            	0xe4, 0x18	SSL3.0
TLS_PSK_ARCFOUR_128_SHA1                          	0x00, 0x8a	SSL3.0
TLS_PSK_3DES_EDE_CBC_SHA1                         	0x00, 0x8b	SSL3.0
TLS_PSK_AES_128_CBC_SHA1                          	0x00, 0x8c	SSL3.0
TLS_PSK_AES_256_CBC_SHA1                          	0x00, 0x8d	SSL3.0
TLS_PSK_AES_128_CBC_SHA256                        	0x00, 0xae	TLS1.2
TLS_PSK_AES_256_GCM_SHA384                        	0x00, 0xa9	TLS1.2
TLS_PSK_CAMELLIA_128_GCM_SHA256                   	0xc0, 0x8e	TLS1.2
TLS_PSK_CAMELLIA_256_GCM_SHA384                   	0xc0, 0x8f	TLS1.2
TLS_PSK_AES_128_GCM_SHA256                        	0x00, 0xa8	TLS1.2
TLS_PSK_NULL_SHA1                                 	0x00, 0x2c	SSL3.0
TLS_PSK_NULL_SHA256                               	0x00, 0xb0	TLS1.2
TLS_PSK_CAMELLIA_128_CBC_SHA256                   	0xc0, 0x94	TLS1.2
TLS_PSK_CAMELLIA_256_CBC_SHA384                   	0xc0, 0x95	TLS1.2
TLS_PSK_SALSA20_256_SHA1                          	0xe4, 0x17	SSL3.0
TLS_PSK_ESTREAM_SALSA20_256_SHA1                  	0xe4, 0x16	SSL3.0
TLS_PSK_AES_256_CBC_SHA384                        	0x00, 0xaf	TLS1.2
TLS_PSK_NULL_SHA384                               	0x00, 0xb1	TLS1.2
TLS_RSA_PSK_ARCFOUR_128_SHA1                      	0x00, 0x92	TLS1.0
TLS_RSA_PSK_3DES_EDE_CBC_SHA1                     	0x00, 0x93	TLS1.0
TLS_RSA_PSK_AES_128_CBC_SHA1                      	0x00, 0x94	TLS1.0
TLS_RSA_PSK_AES_256_CBC_SHA1                      	0x00, 0x95	TLS1.0
TLS_RSA_PSK_CAMELLIA_128_GCM_SHA256               	0xc0, 0x92	TLS1.2
TLS_RSA_PSK_CAMELLIA_256_GCM_SHA384               	0xc0, 0x93	TLS1.2
TLS_RSA_PSK_AES_128_GCM_SHA256                    	0x00, 0xac	TLS1.2
TLS_RSA_PSK_AES_128_CBC_SHA256                    	0x00, 0xb6	TLS1.2
TLS_RSA_PSK_NULL_SHA1                             	0x00, 0x2e	TLS1.0
TLS_RSA_PSK_NULL_SHA256                           	0x00, 0xb8	TLS1.2
TLS_RSA_PSK_AES_256_GCM_SHA384                    	0x00, 0xad	TLS1.2
TLS_RSA_PSK_AES_256_CBC_SHA384                    	0x00, 0xb7	TLS1.2
TLS_RSA_PSK_NULL_SHA384                           	0x00, 0xb9	TLS1.2
TLS_RSA_PSK_CAMELLIA_128_CBC_SHA256               	0xc0, 0x98	TLS1.2
TLS_RSA_PSK_CAMELLIA_256_CBC_SHA384               	0xc0, 0x99	TLS1.2
TLS_DHE_PSK_ARCFOUR_128_SHA1                      	0x00, 0x8e	SSL3.0
TLS_DHE_PSK_3DES_EDE_CBC_SHA1                     	0x00, 0x8f	SSL3.0
TLS_DHE_PSK_AES_128_CBC_SHA1                      	0x00, 0x90	SSL3.0
TLS_DHE_PSK_AES_256_CBC_SHA1                      	0x00, 0x91	SSL3.0
TLS_DHE_PSK_AES_128_CBC_SHA256                    	0x00, 0xb2	TLS1.2
TLS_DHE_PSK_AES_128_GCM_SHA256                    	0x00, 0xaa	TLS1.2
TLS_DHE_PSK_NULL_SHA1                             	0x00, 0x2d	SSL3.0
TLS_DHE_PSK_NULL_SHA256                           	0x00, 0xb4	TLS1.2
TLS_DHE_PSK_NULL_SHA384                           	0x00, 0xb5	TLS1.2
TLS_DHE_PSK_AES_256_CBC_SHA384                    	0x00, 0xb3	TLS1.2
TLS_DHE_PSK_AES_256_GCM_SHA384                    	0x00, 0xab	TLS1.2
TLS_DHE_PSK_CAMELLIA_128_CBC_SHA256               	0xc0, 0x96	TLS1.2
TLS_DHE_PSK_CAMELLIA_256_CBC_SHA384               	0xc0, 0x97	TLS1.2
TLS_DHE_PSK_CAMELLIA_128_GCM_SHA256               	0xc0, 0x90	TLS1.2
TLS_DHE_PSK_CAMELLIA_256_GCM_SHA384               	0xc0, 0x91	TLS1.2
TLS_DH_ANON_ARCFOUR_128_MD5                       	0x00, 0x18	SSL3.0
TLS_DH_ANON_3DES_EDE_CBC_SHA1                     	0x00, 0x1b	SSL3.0
TLS_DH_ANON_AES_128_CBC_SHA1                      	0x00, 0x34	SSL3.0
TLS_DH_ANON_AES_256_CBC_SHA1                      	0x00, 0x3a	SSL3.0
TLS_DH_ANON_CAMELLIA_128_CBC_SHA256               	0x00, 0xbf	TLS1.2
TLS_DH_ANON_CAMELLIA_256_CBC_SHA256               	0x00, 0xc5	TLS1.2
TLS_DH_ANON_CAMELLIA_128_CBC_SHA1                 	0x00, 0x46	SSL3.0
TLS_DH_ANON_CAMELLIA_256_CBC_SHA1                 	0x00, 0x89	SSL3.0
TLS_DH_ANON_AES_128_CBC_SHA256                    	0x00, 0x6c	TLS1.2
TLS_DH_ANON_AES_256_CBC_SHA256                    	0x00, 0x6d	TLS1.2
TLS_DH_ANON_AES_128_GCM_SHA256                    	0x00, 0xa6	TLS1.2
TLS_DH_ANON_AES_256_GCM_SHA384                    	0x00, 0xa7	TLS1.2
TLS_DH_ANON_CAMELLIA_128_GCM_SHA256               	0xc0, 0x84	TLS1.2
TLS_DH_ANON_CAMELLIA_256_GCM_SHA384               	0xc0, 0x85	TLS1.2
TLS_ECDH_ANON_NULL_SHA1                           	0xc0, 0x15	SSL3.0
TLS_ECDH_ANON_3DES_EDE_CBC_SHA1                   	0xc0, 0x17	SSL3.0
TLS_ECDH_ANON_AES_128_CBC_SHA1                    	0xc0, 0x18	SSL3.0
TLS_ECDH_ANON_AES_256_CBC_SHA1                    	0xc0, 0x19	SSL3.0
TLS_ECDH_ANON_ARCFOUR_128_SHA1                    	0xc0, 0x16	SSL3.0

Certificate types: CTYPE-X.509, CTYPE-OPENPGP
Protocols: VERS-SSL3.0, VERS-TLS1.0, VERS-TLS1.1, VERS-TLS1.2, VERS-DTLS0.9, VERS-DTLS1.0, VERS-DTLS1.2
Ciphers: AES-256-CBC, AES-192-CBC, AES-128-CBC, AES-128-GCM, AES-256-GCM, ARCFOUR-128, ESTREAM-SALSA20-256, SALSA20-256, CAMELLIA-256-CBC, CAMELLIA-192-CBC, CAMELLIA-128-CBC, CAMELLIA-128-GCM, CAMELLIA-256-GCM, 3DES-CBC, DES-CBC, ARCFOUR-40, RC2-40, NULL
MACs: SHA1, MD5, SHA256, SHA384, SHA512, SHA224, UMAC-96, UMAC-128, AEAD
Digests: SHA1, MD5, SHA256, SHA384, SHA512, SHA224
Key exchange algorithms: ANON-DH, ANON-ECDH, RSA, DHE-RSA, DHE-DSS, ECDHE-RSA, ECDHE-ECDSA, PSK, RSA-PSK, DHE-PSK, ECDHE-PSK, RSA-EXPORT
Compression: COMP-DEFLATE, COMP-NULL
Elliptic curves: CURVE-SECP256R1, CURVE-SECP384R1, CURVE-SECP521R1
Public Key Systems: RSA, DSA, EC
PK-signatures: SIGN-RSA-SHA1, SIGN-RSA-SHA1, SIGN-RSA-SHA224, SIGN-RSA-SHA256, SIGN-RSA-SHA384, SIGN-RSA-SHA512, SIGN-RSA-RMD160, SIGN-DSA-SHA1, SIGN-DSA-SHA1, SIGN-DSA-SHA224, SIGN-DSA-SHA256, SIGN-RSA-MD5, SIGN-RSA-MD5, SIGN-RSA-MD2, SIGN-ECDSA-SHA1, SIGN-ECDSA-SHA224, SIGN-ECDSA-SHA256, SIGN-ECDSA-SHA384, SIGN-ECDSA-SHA512
Category
Components
Tags
Article Type