gnutls on RHEL8

Updated

Details of the capabilities of gnutls-3.6.5 on RHEL8

This article is part of the Securing Applications Collection

Cryptography in RHEL8

RHEL8 has a new mechnism to centralise the cryptographic defaults for a machine.
This is handled by the crypto-policies package. Details of the rationale and update policy can be found in other documents

Capabilities

Protocols

  • TLSv1.3
  • TLSv1.2
  • TLSv1.1
  • TLSv1

(Note that although SSLv3 may be listed below, it is not supported)

Cipher Suites

Suite NameCipher SuiteMinimum Protocol
TLS_AES_128_GCM_SHA2560x1301TLS1.3
TLS_AES_256_GCM_SHA3840x1302TLS1.3
TLS_CHACHA20_POLY1305_SHA2560x1303TLS1.3
TLS_AES_128_CCM_SHA2560x1304TLS1.3
TLS_AES_128_CCM_8_SHA2560x1305TLS1.3
TLS_RSA_NULL_MD50x0001TLS1.0
TLS_RSA_NULL_SHA10x0002TLS1.0
TLS_RSA_NULL_SHA2560x003bTLS1.2
TLS_RSA_ARCFOUR_128_SHA10x0005TLS1.0
TLS_RSA_ARCFOUR_128_MD50x0004TLS1.0
TLS_RSA_3DES_EDE_CBC_SHA10x000aTLS1.0
TLS_RSA_AES_128_CBC_SHA10x002fTLS1.0
TLS_RSA_AES_256_CBC_SHA10x0035TLS1.0
TLS_RSA_CAMELLIA_128_CBC_SHA2560x00baTLS1.2
TLS_RSA_CAMELLIA_256_CBC_SHA2560x00c0TLS1.2
TLS_RSA_CAMELLIA_128_CBC_SHA10x0041TLS1.0
TLS_RSA_CAMELLIA_256_CBC_SHA10x0084TLS1.0
TLS_RSA_AES_128_CBC_SHA2560x003cTLS1.2
TLS_RSA_AES_256_CBC_SHA2560x003dTLS1.2
TLS_RSA_AES_128_GCM_SHA2560x009cTLS1.2
TLS_RSA_AES_256_GCM_SHA3840x009dTLS1.2
TLS_RSA_CAMELLIA_128_GCM_SHA2560xc07aTLS1.2
TLS_RSA_CAMELLIA_256_GCM_SHA3840xc07bTLS1.2
TLS_RSA_AES_128_CCM0xc09cTLS1.2
TLS_RSA_AES_256_CCM0xc09dTLS1.2
TLS_RSA_AES_128_CCM_80xc0a0TLS1.2
TLS_RSA_AES_256_CCM_80xc0a1TLS1.2
TLS_DHE_DSS_ARCFOUR_128_SHA10x0066TLS1.0
TLS_DHE_DSS_3DES_EDE_CBC_SHA10x0013TLS1.0
TLS_DHE_DSS_AES_128_CBC_SHA10x0032TLS1.0
TLS_DHE_DSS_AES_256_CBC_SHA10x0038TLS1.0
TLS_DHE_DSS_CAMELLIA_128_CBC_SHA2560x00bdTLS1.2
TLS_DHE_DSS_CAMELLIA_256_CBC_SHA2560x00c3TLS1.2
TLS_DHE_DSS_CAMELLIA_128_CBC_SHA10x0044TLS1.0
TLS_DHE_DSS_CAMELLIA_256_CBC_SHA10x0087TLS1.0
TLS_DHE_DSS_AES_128_CBC_SHA2560x0040TLS1.2
TLS_DHE_DSS_AES_256_CBC_SHA2560x006aTLS1.2
TLS_DHE_DSS_AES_128_GCM_SHA2560x00a2TLS1.2
TLS_DHE_DSS_AES_256_GCM_SHA3840x00a3TLS1.2
TLS_DHE_DSS_CAMELLIA_128_GCM_SHA2560xc080TLS1.2
TLS_DHE_DSS_CAMELLIA_256_GCM_SHA3840xc081TLS1.2
TLS_DHE_RSA_3DES_EDE_CBC_SHA10x0016TLS1.0
TLS_DHE_RSA_AES_128_CBC_SHA10x0033TLS1.0
TLS_DHE_RSA_AES_256_CBC_SHA10x0039TLS1.0
TLS_DHE_RSA_CAMELLIA_128_CBC_SHA2560x00beTLS1.2
TLS_DHE_RSA_CAMELLIA_256_CBC_SHA2560x00c4TLS1.2
TLS_DHE_RSA_CAMELLIA_128_CBC_SHA10x0045TLS1.0
TLS_DHE_RSA_CAMELLIA_256_CBC_SHA10x0088TLS1.0
TLS_DHE_RSA_AES_128_CBC_SHA2560x0067TLS1.2
TLS_DHE_RSA_AES_256_CBC_SHA2560x006bTLS1.2
TLS_DHE_RSA_AES_128_GCM_SHA2560x009eTLS1.2
TLS_DHE_RSA_AES_256_GCM_SHA3840x009fTLS1.2
TLS_DHE_RSA_CAMELLIA_128_GCM_SHA2560xc07cTLS1.2
TLS_DHE_RSA_CAMELLIA_256_GCM_SHA3840xc07dTLS1.2
TLS_DHE_RSA_CHACHA20_POLY13050xccaaTLS1.2
TLS_DHE_RSA_AES_128_CCM0xc09eTLS1.2
TLS_DHE_RSA_AES_256_CCM0xc09fTLS1.2
TLS_DHE_RSA_AES_128_CCM_80xc0a2TLS1.2
TLS_DHE_RSA_AES_256_CCM_80xc0a3TLS1.2
TLS_ECDHE_RSA_NULL_SHA10xc010TLS1.0
TLS_ECDHE_RSA_3DES_EDE_CBC_SHA10xc012TLS1.0
TLS_ECDHE_RSA_AES_128_CBC_SHA10xc013TLS1.0
TLS_ECDHE_RSA_AES_256_CBC_SHA10xc014TLS1.0
TLS_ECDHE_RSA_AES_256_CBC_SHA3840xc028TLS1.2
TLS_ECDHE_RSA_ARCFOUR_128_SHA10xc011TLS1.0
TLS_ECDHE_RSA_CAMELLIA_128_CBC_SHA2560xc076TLS1.2
TLS_ECDHE_RSA_CAMELLIA_256_CBC_SHA3840xc077TLS1.2
TLS_ECDHE_ECDSA_NULL_SHA10xc006TLS1.0
TLS_ECDHE_ECDSA_3DES_EDE_CBC_SHA10xc008TLS1.0
TLS_ECDHE_ECDSA_AES_128_CBC_SHA10xc009TLS1.0
TLS_ECDHE_ECDSA_AES_256_CBC_SHA10xc00aTLS1.0
TLS_ECDHE_ECDSA_ARCFOUR_128_SHA10xc007TLS1.0
TLS_ECDHE_ECDSA_CAMELLIA_128_CBC_SHA2560xc072TLS1.2
TLS_ECDHE_ECDSA_CAMELLIA_256_CBC_SHA3840xc073TLS1.2
TLS_ECDHE_ECDSA_AES_128_CBC_SHA2560xc023TLS1.2
TLS_ECDHE_RSA_AES_128_CBC_SHA2560xc027TLS1.2
TLS_ECDHE_ECDSA_CAMELLIA_128_GCM_SHA2560xc086TLS1.2
TLS_ECDHE_ECDSA_CAMELLIA_256_GCM_SHA3840xc087TLS1.2
TLS_ECDHE_ECDSA_AES_128_GCM_SHA2560xc02bTLS1.2
TLS_ECDHE_ECDSA_AES_256_GCM_SHA3840xc02cTLS1.2
TLS_ECDHE_RSA_AES_128_GCM_SHA2560xc02fTLS1.2
TLS_ECDHE_RSA_AES_256_GCM_SHA3840xc030TLS1.2
TLS_ECDHE_ECDSA_AES_256_CBC_SHA3840xc024TLS1.2
TLS_ECDHE_RSA_CAMELLIA_128_GCM_SHA2560xc08aTLS1.2
TLS_ECDHE_RSA_CAMELLIA_256_GCM_SHA3840xc08bTLS1.2
TLS_ECDHE_RSA_CHACHA20_POLY13050xcca8TLS1.2
TLS_ECDHE_ECDSA_CHACHA20_POLY13050xcca9TLS1.2
TLS_ECDHE_ECDSA_AES_128_CCM0xc0acTLS1.2
TLS_ECDHE_ECDSA_AES_256_CCM0xc0adTLS1.2
TLS_ECDHE_ECDSA_AES_128_CCM_80xc0aeTLS1.2
TLS_ECDHE_ECDSA_AES_256_CCM_80xc0afTLS1.2
TLS_ECDHE_PSK_3DES_EDE_CBC_SHA10xc034TLS1.0
TLS_ECDHE_PSK_AES_128_CBC_SHA10xc035TLS1.0
TLS_ECDHE_PSK_AES_256_CBC_SHA10xc036TLS1.0
TLS_ECDHE_PSK_AES_128_CBC_SHA2560xc037TLS1.2
TLS_ECDHE_PSK_AES_256_CBC_SHA3840xc038TLS1.2
TLS_ECDHE_PSK_ARCFOUR_128_SHA10xc033TLS1.0
TLS_ECDHE_PSK_NULL_SHA10xc039TLS1.0
TLS_ECDHE_PSK_NULL_SHA2560xc03aTLS1.2
TLS_ECDHE_PSK_NULL_SHA3840xc03bTLS1.0
TLS_ECDHE_PSK_CAMELLIA_128_CBC_SHA2560xc09aTLS1.2
TLS_ECDHE_PSK_CAMELLIA_256_CBC_SHA3840xc09bTLS1.2
TLS_PSK_ARCFOUR_128_SHA10x008aTLS1.0
TLS_PSK_3DES_EDE_CBC_SHA10x008bTLS1.0
TLS_PSK_AES_128_CBC_SHA10x008cTLS1.0
TLS_PSK_AES_256_CBC_SHA10x008dTLS1.0
TLS_PSK_AES_128_CBC_SHA2560x00aeTLS1.2
TLS_PSK_AES_256_GCM_SHA3840x00a9TLS1.2
TLS_PSK_CAMELLIA_128_GCM_SHA2560xc08eTLS1.2
TLS_PSK_CAMELLIA_256_GCM_SHA3840xc08fTLS1.2
TLS_PSK_AES_128_GCM_SHA2560x00a8TLS1.2
TLS_PSK_NULL_SHA10x002cTLS1.0
TLS_PSK_NULL_SHA2560x00b0TLS1.2
TLS_PSK_CAMELLIA_128_CBC_SHA2560xc094TLS1.2
TLS_PSK_CAMELLIA_256_CBC_SHA3840xc095TLS1.2
TLS_PSK_AES_256_CBC_SHA3840x00afTLS1.2
TLS_PSK_NULL_SHA3840x00b1TLS1.2
TLS_RSA_PSK_ARCFOUR_128_SHA10x0092TLS1.0
TLS_RSA_PSK_3DES_EDE_CBC_SHA10x0093TLS1.0
TLS_RSA_PSK_AES_128_CBC_SHA10x0094TLS1.0
TLS_RSA_PSK_AES_256_CBC_SHA10x0095TLS1.0
TLS_RSA_PSK_CAMELLIA_128_GCM_SHA2560xc092TLS1.2
TLS_RSA_PSK_CAMELLIA_256_GCM_SHA3840xc093TLS1.2
TLS_RSA_PSK_AES_128_GCM_SHA2560x00acTLS1.2
TLS_RSA_PSK_AES_128_CBC_SHA2560x00b6TLS1.2
TLS_RSA_PSK_NULL_SHA10x002eTLS1.0
TLS_RSA_PSK_NULL_SHA2560x00b8TLS1.2
TLS_RSA_PSK_AES_256_GCM_SHA3840x00adTLS1.2
TLS_RSA_PSK_AES_256_CBC_SHA3840x00b7TLS1.2
TLS_RSA_PSK_NULL_SHA3840x00b9TLS1.2
TLS_RSA_PSK_CAMELLIA_128_CBC_SHA2560xc098TLS1.2
TLS_RSA_PSK_CAMELLIA_256_CBC_SHA3840xc099TLS1.2
TLS_DHE_PSK_ARCFOUR_128_SHA10x008eTLS1.0
TLS_DHE_PSK_3DES_EDE_CBC_SHA10x008fTLS1.0
TLS_DHE_PSK_AES_128_CBC_SHA10x0090TLS1.0
TLS_DHE_PSK_AES_256_CBC_SHA10x0091TLS1.0
TLS_DHE_PSK_AES_128_CBC_SHA2560x00b2TLS1.2
TLS_DHE_PSK_AES_128_GCM_SHA2560x00aaTLS1.2
TLS_DHE_PSK_NULL_SHA10x002dTLS1.0
TLS_DHE_PSK_NULL_SHA2560x00b4TLS1.2
TLS_DHE_PSK_NULL_SHA3840x00b5TLS1.2
TLS_DHE_PSK_AES_256_CBC_SHA3840x00b3TLS1.2
TLS_DHE_PSK_AES_256_GCM_SHA3840x00abTLS1.2
TLS_DHE_PSK_CAMELLIA_128_CBC_SHA2560xc096TLS1.2
TLS_DHE_PSK_CAMELLIA_256_CBC_SHA3840xc097TLS1.2
TLS_DHE_PSK_CAMELLIA_128_GCM_SHA2560xc090TLS1.2
TLS_DHE_PSK_CAMELLIA_256_GCM_SHA3840xc091TLS1.2
TLS_PSK_AES_128_CCM0xc0a4TLS1.2
TLS_PSK_AES_256_CCM0xc0a5TLS1.2
TLS_DHE_PSK_AES_128_CCM0xc0a6TLS1.2
TLS_DHE_PSK_AES_256_CCM0xc0a7TLS1.2
TLS_PSK_AES_128_CCM_80xc0a8TLS1.2
TLS_PSK_AES_256_CCM_80xc0a9TLS1.2
TLS_DHE_PSK_AES_128_CCM_80xc0aaTLS1.2
TLS_DHE_PSK_AES_256_CCM_80xc0abTLS1.2
TLS_DHE_PSK_CHACHA20_POLY13050xccadTLS1.2
TLS_ECDHE_PSK_CHACHA20_POLY13050xccacTLS1.2
TLS_RSA_PSK_CHACHA20_POLY13050xccaeTLS1.2
TLS_PSK_CHACHA20_POLY13050xccabTLS1.2
TLS_DH_ANON_ARCFOUR_128_MD50x0018TLS1.0
TLS_DH_ANON_3DES_EDE_CBC_SHA10x001bTLS1.0
TLS_DH_ANON_AES_128_CBC_SHA10x0034TLS1.0
TLS_DH_ANON_AES_256_CBC_SHA10x003aTLS1.0
TLS_DH_ANON_CAMELLIA_128_CBC_SHA2560x00bfTLS1.2
TLS_DH_ANON_CAMELLIA_256_CBC_SHA2560x00c5TLS1.2
TLS_DH_ANON_CAMELLIA_128_CBC_SHA10x0046TLS1.0
TLS_DH_ANON_CAMELLIA_256_CBC_SHA10x0089TLS1.0
TLS_DH_ANON_AES_128_CBC_SHA2560x006cTLS1.2
TLS_DH_ANON_AES_256_CBC_SHA2560x006dTLS1.2
TLS_DH_ANON_AES_128_GCM_SHA2560x00a6TLS1.2
TLS_DH_ANON_AES_256_GCM_SHA3840x00a7TLS1.2
TLS_DH_ANON_CAMELLIA_128_GCM_SHA2560xc084TLS1.2
TLS_DH_ANON_CAMELLIA_256_GCM_SHA3840xc085TLS1.2
TLS_ECDH_ANON_NULL_SHA10xc015TLS1.0
TLS_ECDH_ANON_3DES_EDE_CBC_SHA10xc017TLS1.0
TLS_ECDH_ANON_AES_128_CBC_SHA10xc018TLS1.0
TLS_ECDH_ANON_AES_256_CBC_SHA10xc019TLS1.0
TLS_ECDH_ANON_ARCFOUR_128_SHA10xc016TLS1.0
TLS_SRP_SHA_3DES_EDE_CBC_SHA10xc01aTLS1.0
TLS_SRP_SHA_AES_128_CBC_SHA10xc01dTLS1.0
TLS_SRP_SHA_AES_256_CBC_SHA10xc020TLS1.0
TLS_SRP_SHA_DSS_3DES_EDE_CBC_SHA10xc01cTLS1.0
TLS_SRP_SHA_RSA_3DES_EDE_CBC_SHA10xc01bTLS1.0
TLS_SRP_SHA_DSS_AES_128_CBC_SHA10xc01fTLS1.0
TLS_SRP_SHA_RSA_AES_128_CBC_SHA10xc01eTLS1.0
TLS_SRP_SHA_DSS_AES_256_CBC_SHA10xc022TLS1.0
TLS_SRP_SHA_RSA_AES_256_CBC_SHA10xc021TLS1.0

Certificates

  • certificates with RSA keys and SHA-1 or SHA-256 signatures.
  • certificates with EC keys and DSA or SHA-256 signatures

Hashes

  • md5 message digest algorithm
  • sha1 message digest algorithm
  • sha224 message digest algorithm
  • sha256 message digest algorithm
  • sha384 message digest algorithm
  • sha512 message digest algorithm

Additional Notes

Capabilities as given by gnutls-cli

$ gnutls-cli --list
Cipher suites:
TLS_AES_128_GCM_SHA256                            	0x13, 0x01	TLS1.3
TLS_AES_256_GCM_SHA384                            	0x13, 0x02	TLS1.3
TLS_CHACHA20_POLY1305_SHA256                      	0x13, 0x03	TLS1.3
TLS_AES_128_CCM_SHA256                            	0x13, 0x04	TLS1.3
TLS_AES_128_CCM_8_SHA256                          	0x13, 0x05	TLS1.3
TLS_RSA_NULL_MD5                                  	0x00, 0x01	TLS1.0
TLS_RSA_NULL_SHA1                                 	0x00, 0x02	TLS1.0
TLS_RSA_NULL_SHA256                               	0x00, 0x3b	TLS1.2
TLS_RSA_ARCFOUR_128_SHA1                          	0x00, 0x05	TLS1.0
TLS_RSA_ARCFOUR_128_MD5                           	0x00, 0x04	TLS1.0
TLS_RSA_3DES_EDE_CBC_SHA1                         	0x00, 0x0a	TLS1.0
TLS_RSA_AES_128_CBC_SHA1                          	0x00, 0x2f	TLS1.0
TLS_RSA_AES_256_CBC_SHA1                          	0x00, 0x35	TLS1.0
TLS_RSA_CAMELLIA_128_CBC_SHA256                   	0x00, 0xba	TLS1.2
TLS_RSA_CAMELLIA_256_CBC_SHA256                   	0x00, 0xc0	TLS1.2
TLS_RSA_CAMELLIA_128_CBC_SHA1                     	0x00, 0x41	TLS1.0
TLS_RSA_CAMELLIA_256_CBC_SHA1                     	0x00, 0x84	TLS1.0
TLS_RSA_AES_128_CBC_SHA256                        	0x00, 0x3c	TLS1.2
TLS_RSA_AES_256_CBC_SHA256                        	0x00, 0x3d	TLS1.2
TLS_RSA_AES_128_GCM_SHA256                        	0x00, 0x9c	TLS1.2
TLS_RSA_AES_256_GCM_SHA384                        	0x00, 0x9d	TLS1.2
TLS_RSA_CAMELLIA_128_GCM_SHA256                   	0xc0, 0x7a	TLS1.2
TLS_RSA_CAMELLIA_256_GCM_SHA384                   	0xc0, 0x7b	TLS1.2
TLS_RSA_AES_128_CCM                               	0xc0, 0x9c	TLS1.2
TLS_RSA_AES_256_CCM                               	0xc0, 0x9d	TLS1.2
TLS_RSA_AES_128_CCM_8                             	0xc0, 0xa0	TLS1.2
TLS_RSA_AES_256_CCM_8                             	0xc0, 0xa1	TLS1.2
TLS_DHE_DSS_ARCFOUR_128_SHA1                      	0x00, 0x66	TLS1.0
TLS_DHE_DSS_3DES_EDE_CBC_SHA1                     	0x00, 0x13	TLS1.0
TLS_DHE_DSS_AES_128_CBC_SHA1                      	0x00, 0x32	TLS1.0
TLS_DHE_DSS_AES_256_CBC_SHA1                      	0x00, 0x38	TLS1.0
TLS_DHE_DSS_CAMELLIA_128_CBC_SHA256               	0x00, 0xbd	TLS1.2
TLS_DHE_DSS_CAMELLIA_256_CBC_SHA256               	0x00, 0xc3	TLS1.2
TLS_DHE_DSS_CAMELLIA_128_CBC_SHA1                 	0x00, 0x44	TLS1.0
TLS_DHE_DSS_CAMELLIA_256_CBC_SHA1                 	0x00, 0x87	TLS1.0
TLS_DHE_DSS_AES_128_CBC_SHA256                    	0x00, 0x40	TLS1.2
TLS_DHE_DSS_AES_256_CBC_SHA256                    	0x00, 0x6a	TLS1.2
TLS_DHE_DSS_AES_128_GCM_SHA256                    	0x00, 0xa2	TLS1.2
TLS_DHE_DSS_AES_256_GCM_SHA384                    	0x00, 0xa3	TLS1.2
TLS_DHE_DSS_CAMELLIA_128_GCM_SHA256               	0xc0, 0x80	TLS1.2
TLS_DHE_DSS_CAMELLIA_256_GCM_SHA384               	0xc0, 0x81	TLS1.2
TLS_DHE_RSA_3DES_EDE_CBC_SHA1                     	0x00, 0x16	TLS1.0
TLS_DHE_RSA_AES_128_CBC_SHA1                      	0x00, 0x33	TLS1.0
TLS_DHE_RSA_AES_256_CBC_SHA1                      	0x00, 0x39	TLS1.0
TLS_DHE_RSA_CAMELLIA_128_CBC_SHA256               	0x00, 0xbe	TLS1.2
TLS_DHE_RSA_CAMELLIA_256_CBC_SHA256               	0x00, 0xc4	TLS1.2
TLS_DHE_RSA_CAMELLIA_128_CBC_SHA1                 	0x00, 0x45	TLS1.0
TLS_DHE_RSA_CAMELLIA_256_CBC_SHA1                 	0x00, 0x88	TLS1.0
TLS_DHE_RSA_AES_128_CBC_SHA256                    	0x00, 0x67	TLS1.2
TLS_DHE_RSA_AES_256_CBC_SHA256                    	0x00, 0x6b	TLS1.2
TLS_DHE_RSA_AES_128_GCM_SHA256                    	0x00, 0x9e	TLS1.2
TLS_DHE_RSA_AES_256_GCM_SHA384                    	0x00, 0x9f	TLS1.2
TLS_DHE_RSA_CAMELLIA_128_GCM_SHA256               	0xc0, 0x7c	TLS1.2
TLS_DHE_RSA_CAMELLIA_256_GCM_SHA384               	0xc0, 0x7d	TLS1.2
TLS_DHE_RSA_CHACHA20_POLY1305                     	0xcc, 0xaa	TLS1.2
TLS_DHE_RSA_AES_128_CCM                           	0xc0, 0x9e	TLS1.2
TLS_DHE_RSA_AES_256_CCM                           	0xc0, 0x9f	TLS1.2
TLS_DHE_RSA_AES_128_CCM_8                         	0xc0, 0xa2	TLS1.2
TLS_DHE_RSA_AES_256_CCM_8                         	0xc0, 0xa3	TLS1.2
TLS_ECDHE_RSA_NULL_SHA1                           	0xc0, 0x10	TLS1.0
TLS_ECDHE_RSA_3DES_EDE_CBC_SHA1                   	0xc0, 0x12	TLS1.0
TLS_ECDHE_RSA_AES_128_CBC_SHA1                    	0xc0, 0x13	TLS1.0
TLS_ECDHE_RSA_AES_256_CBC_SHA1                    	0xc0, 0x14	TLS1.0
TLS_ECDHE_RSA_AES_256_CBC_SHA384                  	0xc0, 0x28	TLS1.2
TLS_ECDHE_RSA_ARCFOUR_128_SHA1                    	0xc0, 0x11	TLS1.0
TLS_ECDHE_RSA_CAMELLIA_128_CBC_SHA256             	0xc0, 0x76	TLS1.2
TLS_ECDHE_RSA_CAMELLIA_256_CBC_SHA384             	0xc0, 0x77	TLS1.2
TLS_ECDHE_ECDSA_NULL_SHA1                         	0xc0, 0x06	TLS1.0
TLS_ECDHE_ECDSA_3DES_EDE_CBC_SHA1                 	0xc0, 0x08	TLS1.0
TLS_ECDHE_ECDSA_AES_128_CBC_SHA1                  	0xc0, 0x09	TLS1.0
TLS_ECDHE_ECDSA_AES_256_CBC_SHA1                  	0xc0, 0x0a	TLS1.0
TLS_ECDHE_ECDSA_ARCFOUR_128_SHA1                  	0xc0, 0x07	TLS1.0
TLS_ECDHE_ECDSA_CAMELLIA_128_CBC_SHA256           	0xc0, 0x72	TLS1.2
TLS_ECDHE_ECDSA_CAMELLIA_256_CBC_SHA384           	0xc0, 0x73	TLS1.2
TLS_ECDHE_ECDSA_AES_128_CBC_SHA256                	0xc0, 0x23	TLS1.2
TLS_ECDHE_RSA_AES_128_CBC_SHA256                  	0xc0, 0x27	TLS1.2
TLS_ECDHE_ECDSA_CAMELLIA_128_GCM_SHA256           	0xc0, 0x86	TLS1.2
TLS_ECDHE_ECDSA_CAMELLIA_256_GCM_SHA384           	0xc0, 0x87	TLS1.2
TLS_ECDHE_ECDSA_AES_128_GCM_SHA256                	0xc0, 0x2b	TLS1.2
TLS_ECDHE_ECDSA_AES_256_GCM_SHA384                	0xc0, 0x2c	TLS1.2
TLS_ECDHE_RSA_AES_128_GCM_SHA256                  	0xc0, 0x2f	TLS1.2
TLS_ECDHE_RSA_AES_256_GCM_SHA384                  	0xc0, 0x30	TLS1.2
TLS_ECDHE_ECDSA_AES_256_CBC_SHA384                	0xc0, 0x24	TLS1.2
TLS_ECDHE_RSA_CAMELLIA_128_GCM_SHA256             	0xc0, 0x8a	TLS1.2
TLS_ECDHE_RSA_CAMELLIA_256_GCM_SHA384             	0xc0, 0x8b	TLS1.2
TLS_ECDHE_RSA_CHACHA20_POLY1305                   	0xcc, 0xa8	TLS1.2
TLS_ECDHE_ECDSA_CHACHA20_POLY1305                 	0xcc, 0xa9	TLS1.2
TLS_ECDHE_ECDSA_AES_128_CCM                       	0xc0, 0xac	TLS1.2
TLS_ECDHE_ECDSA_AES_256_CCM                       	0xc0, 0xad	TLS1.2
TLS_ECDHE_ECDSA_AES_128_CCM_8                     	0xc0, 0xae	TLS1.2
TLS_ECDHE_ECDSA_AES_256_CCM_8                     	0xc0, 0xaf	TLS1.2
TLS_ECDHE_PSK_3DES_EDE_CBC_SHA1                   	0xc0, 0x34	TLS1.0
TLS_ECDHE_PSK_AES_128_CBC_SHA1                    	0xc0, 0x35	TLS1.0
TLS_ECDHE_PSK_AES_256_CBC_SHA1                    	0xc0, 0x36	TLS1.0
TLS_ECDHE_PSK_AES_128_CBC_SHA256                  	0xc0, 0x37	TLS1.2
TLS_ECDHE_PSK_AES_256_CBC_SHA384                  	0xc0, 0x38	TLS1.2
TLS_ECDHE_PSK_ARCFOUR_128_SHA1                    	0xc0, 0x33	TLS1.0
TLS_ECDHE_PSK_NULL_SHA1                           	0xc0, 0x39	TLS1.0
TLS_ECDHE_PSK_NULL_SHA256                         	0xc0, 0x3a	TLS1.2
TLS_ECDHE_PSK_NULL_SHA384                         	0xc0, 0x3b	TLS1.0
TLS_ECDHE_PSK_CAMELLIA_128_CBC_SHA256             	0xc0, 0x9a	TLS1.2
TLS_ECDHE_PSK_CAMELLIA_256_CBC_SHA384             	0xc0, 0x9b	TLS1.2
TLS_PSK_ARCFOUR_128_SHA1                          	0x00, 0x8a	TLS1.0
TLS_PSK_3DES_EDE_CBC_SHA1                         	0x00, 0x8b	TLS1.0
TLS_PSK_AES_128_CBC_SHA1                          	0x00, 0x8c	TLS1.0
TLS_PSK_AES_256_CBC_SHA1                          	0x00, 0x8d	TLS1.0
TLS_PSK_AES_128_CBC_SHA256                        	0x00, 0xae	TLS1.2
TLS_PSK_AES_256_GCM_SHA384                        	0x00, 0xa9	TLS1.2
TLS_PSK_CAMELLIA_128_GCM_SHA256                   	0xc0, 0x8e	TLS1.2
TLS_PSK_CAMELLIA_256_GCM_SHA384                   	0xc0, 0x8f	TLS1.2
TLS_PSK_AES_128_GCM_SHA256                        	0x00, 0xa8	TLS1.2
TLS_PSK_NULL_SHA1                                 	0x00, 0x2c	TLS1.0
TLS_PSK_NULL_SHA256                               	0x00, 0xb0	TLS1.2
TLS_PSK_CAMELLIA_128_CBC_SHA256                   	0xc0, 0x94	TLS1.2
TLS_PSK_CAMELLIA_256_CBC_SHA384                   	0xc0, 0x95	TLS1.2
TLS_PSK_AES_256_CBC_SHA384                        	0x00, 0xaf	TLS1.2
TLS_PSK_NULL_SHA384                               	0x00, 0xb1	TLS1.2
TLS_RSA_PSK_ARCFOUR_128_SHA1                      	0x00, 0x92	TLS1.0
TLS_RSA_PSK_3DES_EDE_CBC_SHA1                     	0x00, 0x93	TLS1.0
TLS_RSA_PSK_AES_128_CBC_SHA1                      	0x00, 0x94	TLS1.0
TLS_RSA_PSK_AES_256_CBC_SHA1                      	0x00, 0x95	TLS1.0
TLS_RSA_PSK_CAMELLIA_128_GCM_SHA256               	0xc0, 0x92	TLS1.2
TLS_RSA_PSK_CAMELLIA_256_GCM_SHA384               	0xc0, 0x93	TLS1.2
TLS_RSA_PSK_AES_128_GCM_SHA256                    	0x00, 0xac	TLS1.2
TLS_RSA_PSK_AES_128_CBC_SHA256                    	0x00, 0xb6	TLS1.2
TLS_RSA_PSK_NULL_SHA1                             	0x00, 0x2e	TLS1.0
TLS_RSA_PSK_NULL_SHA256                           	0x00, 0xb8	TLS1.2
TLS_RSA_PSK_AES_256_GCM_SHA384                    	0x00, 0xad	TLS1.2
TLS_RSA_PSK_AES_256_CBC_SHA384                    	0x00, 0xb7	TLS1.2
TLS_RSA_PSK_NULL_SHA384                           	0x00, 0xb9	TLS1.2
TLS_RSA_PSK_CAMELLIA_128_CBC_SHA256               	0xc0, 0x98	TLS1.2
TLS_RSA_PSK_CAMELLIA_256_CBC_SHA384               	0xc0, 0x99	TLS1.2
TLS_DHE_PSK_ARCFOUR_128_SHA1                      	0x00, 0x8e	TLS1.0
TLS_DHE_PSK_3DES_EDE_CBC_SHA1                     	0x00, 0x8f	TLS1.0
TLS_DHE_PSK_AES_128_CBC_SHA1                      	0x00, 0x90	TLS1.0
TLS_DHE_PSK_AES_256_CBC_SHA1                      	0x00, 0x91	TLS1.0
TLS_DHE_PSK_AES_128_CBC_SHA256                    	0x00, 0xb2	TLS1.2
TLS_DHE_PSK_AES_128_GCM_SHA256                    	0x00, 0xaa	TLS1.2
TLS_DHE_PSK_NULL_SHA1                             	0x00, 0x2d	TLS1.0
TLS_DHE_PSK_NULL_SHA256                           	0x00, 0xb4	TLS1.2
TLS_DHE_PSK_NULL_SHA384                           	0x00, 0xb5	TLS1.2
TLS_DHE_PSK_AES_256_CBC_SHA384                    	0x00, 0xb3	TLS1.2
TLS_DHE_PSK_AES_256_GCM_SHA384                    	0x00, 0xab	TLS1.2
TLS_DHE_PSK_CAMELLIA_128_CBC_SHA256               	0xc0, 0x96	TLS1.2
TLS_DHE_PSK_CAMELLIA_256_CBC_SHA384               	0xc0, 0x97	TLS1.2
TLS_DHE_PSK_CAMELLIA_128_GCM_SHA256               	0xc0, 0x90	TLS1.2
TLS_DHE_PSK_CAMELLIA_256_GCM_SHA384               	0xc0, 0x91	TLS1.2
TLS_PSK_AES_128_CCM                               	0xc0, 0xa4	TLS1.2
TLS_PSK_AES_256_CCM                               	0xc0, 0xa5	TLS1.2
TLS_DHE_PSK_AES_128_CCM                           	0xc0, 0xa6	TLS1.2
TLS_DHE_PSK_AES_256_CCM                           	0xc0, 0xa7	TLS1.2
TLS_PSK_AES_128_CCM_8                             	0xc0, 0xa8	TLS1.2
TLS_PSK_AES_256_CCM_8                             	0xc0, 0xa9	TLS1.2
TLS_DHE_PSK_AES_128_CCM_8                         	0xc0, 0xaa	TLS1.2
TLS_DHE_PSK_AES_256_CCM_8                         	0xc0, 0xab	TLS1.2
TLS_DHE_PSK_CHACHA20_POLY1305                     	0xcc, 0xad	TLS1.2
TLS_ECDHE_PSK_CHACHA20_POLY1305                   	0xcc, 0xac	TLS1.2
TLS_RSA_PSK_CHACHA20_POLY1305                     	0xcc, 0xae	TLS1.2
TLS_PSK_CHACHA20_POLY1305                         	0xcc, 0xab	TLS1.2
TLS_DH_ANON_ARCFOUR_128_MD5                       	0x00, 0x18	TLS1.0
TLS_DH_ANON_3DES_EDE_CBC_SHA1                     	0x00, 0x1b	TLS1.0
TLS_DH_ANON_AES_128_CBC_SHA1                      	0x00, 0x34	TLS1.0
TLS_DH_ANON_AES_256_CBC_SHA1                      	0x00, 0x3a	TLS1.0
TLS_DH_ANON_CAMELLIA_128_CBC_SHA256               	0x00, 0xbf	TLS1.2
TLS_DH_ANON_CAMELLIA_256_CBC_SHA256               	0x00, 0xc5	TLS1.2
TLS_DH_ANON_CAMELLIA_128_CBC_SHA1                 	0x00, 0x46	TLS1.0
TLS_DH_ANON_CAMELLIA_256_CBC_SHA1                 	0x00, 0x89	TLS1.0
TLS_DH_ANON_AES_128_CBC_SHA256                    	0x00, 0x6c	TLS1.2
TLS_DH_ANON_AES_256_CBC_SHA256                    	0x00, 0x6d	TLS1.2
TLS_DH_ANON_AES_128_GCM_SHA256                    	0x00, 0xa6	TLS1.2
TLS_DH_ANON_AES_256_GCM_SHA384                    	0x00, 0xa7	TLS1.2
TLS_DH_ANON_CAMELLIA_128_GCM_SHA256               	0xc0, 0x84	TLS1.2
TLS_DH_ANON_CAMELLIA_256_GCM_SHA384               	0xc0, 0x85	TLS1.2
TLS_ECDH_ANON_NULL_SHA1                           	0xc0, 0x15	TLS1.0
TLS_ECDH_ANON_3DES_EDE_CBC_SHA1                   	0xc0, 0x17	TLS1.0
TLS_ECDH_ANON_AES_128_CBC_SHA1                    	0xc0, 0x18	TLS1.0
TLS_ECDH_ANON_AES_256_CBC_SHA1                    	0xc0, 0x19	TLS1.0
TLS_ECDH_ANON_ARCFOUR_128_SHA1                    	0xc0, 0x16	TLS1.0
TLS_SRP_SHA_3DES_EDE_CBC_SHA1                     	0xc0, 0x1a	TLS1.0
TLS_SRP_SHA_AES_128_CBC_SHA1                      	0xc0, 0x1d	TLS1.0
TLS_SRP_SHA_AES_256_CBC_SHA1                      	0xc0, 0x20	TLS1.0
TLS_SRP_SHA_DSS_3DES_EDE_CBC_SHA1                 	0xc0, 0x1c	TLS1.0
TLS_SRP_SHA_RSA_3DES_EDE_CBC_SHA1                 	0xc0, 0x1b	TLS1.0
TLS_SRP_SHA_DSS_AES_128_CBC_SHA1                  	0xc0, 0x1f	TLS1.0
TLS_SRP_SHA_RSA_AES_128_CBC_SHA1                  	0xc0, 0x1e	TLS1.0
TLS_SRP_SHA_DSS_AES_256_CBC_SHA1                  	0xc0, 0x22	TLS1.0
TLS_SRP_SHA_RSA_AES_256_CBC_SHA1                  	0xc0, 0x21	TLS1.0

Certificate types: CTYPE-X.509
Protocols: VERS-SSL3.0, VERS-TLS1.0, VERS-TLS1.1, VERS-TLS1.2, VERS-TLS1.3, VERS-DTLS0.9, VERS-DTLS1.0, VERS-DTLS1.2
Ciphers: AES-256-CBC, AES-192-CBC, AES-128-CBC, AES-128-GCM, AES-256-GCM, AES-128-CCM, AES-256-CCM, AES-128-CCM-8, AES-256-CCM-8, ARCFOUR-128, ESTREAM-SALSA20-256, SALSA20-256, CAMELLIA-256-CBC, CAMELLIA-192-CBC, CAMELLIA-128-CBC, CHACHA20-POLY1305, CAMELLIA-128-GCM, CAMELLIA-256-GCM, GOST28147-TC26Z-CFB, GOST28147-CPA-CFB, GOST28147-CPB-CFB, GOST28147-CPC-CFB, GOST28147-CPD-CFB, 3DES-CBC, DES-CBC, RC2-40, NULL
MACs: SHA1, SHA256, SHA384, SHA512, SHA224, UMAC-96, UMAC-128, AEAD, MD5, GOSTR341194, STREEBOG-256, STREEBOG-512
Digests: SHA1, SHA256, SHA384, SHA512, SHA224, MD5, GOSTR341194, STREEBOG-256, STREEBOG-512
Key exchange algorithms: ECDHE-RSA, ECDHE-ECDSA, RSA, DHE-RSA, DHE-DSS, PSK, RSA-PSK, DHE-PSK, ECDHE-PSK, SRP-DSS, SRP-RSA, SRP, ANON-DH, ANON-ECDH, RSA-EXPORT
Compression: COMP-NULL
Groups: GROUP-SECP256R1, GROUP-SECP384R1, GROUP-SECP521R1, GROUP-X25519, GROUP-FFDHE2048, GROUP-FFDHE3072, GROUP-FFDHE4096, GROUP-FFDHE6144, GROUP-FFDHE8192
Public Key Systems: RSA, RSA-PSS, RSA, DSA, GOST R 34.10-2012-512, GOST R 34.10-2012-256, GOST R 34.10-2001, EC/ECDSA, EdDSA (Ed25519), DH, ECDH (X25519)
PK-signatures: SIGN-RSA-SHA256, SIGN-RSA-SHA384, SIGN-RSA-SHA512, SIGN-RSA-PSS-SHA256, SIGN-RSA-PSS-RSAE-SHA256, SIGN-RSA-PSS-SHA384, SIGN-RSA-PSS-RSAE-SHA384, SIGN-RSA-PSS-SHA512, SIGN-RSA-PSS-RSAE-SHA512, SIGN-EdDSA-Ed25519, SIGN-ECDSA-SHA256, SIGN-ECDSA-SHA384, SIGN-ECDSA-SHA512, SIGN-ECDSA-SECP256R1-SHA256, SIGN-ECDSA-SECP384R1-SHA384, SIGN-ECDSA-SECP521R1-SHA512, SIGN-ECDSA-SHA3-224, SIGN-ECDSA-SHA3-256, SIGN-ECDSA-SHA3-384, SIGN-ECDSA-SHA3-512, SIGN-RSA-SHA3-224, SIGN-RSA-SHA3-256, SIGN-RSA-SHA3-384, SIGN-RSA-SHA3-512, SIGN-DSA-SHA3-224, SIGN-DSA-SHA3-256, SIGN-DSA-SHA3-384, SIGN-DSA-SHA3-512, SIGN-RSA-RAW, SIGN-RSA-SHA1, SIGN-RSA-SHA1, SIGN-RSA-SHA224, SIGN-RSA-RMD160, SIGN-DSA-SHA1, SIGN-DSA-SHA1, SIGN-DSA-SHA224, SIGN-DSA-SHA256, SIGN-RSA-MD5, SIGN-RSA-MD5, SIGN-RSA-MD2, SIGN-ECDSA-SHA1, SIGN-ECDSA-SHA224, SIGN-GOSTR341012-512, SIGN-GOSTR341012-256, SIGN-GOSTR341001, SIGN-DSA-SHA384, SIGN-DSA-SHA512
Components
Article Type