| 00 |
0000 |
TLS_NULL_WITH_NULL_NULL |
No encryption or message authentication and RSA
key exchange |
|
X |
X |
| 01 |
0001 |
TLS_NULL_WITH_NULL_MD5 |
No encryption with MD5 message authentication and
RSA key exchange |
|
X |
X |
| 02 |
0002 |
TLS_RSA_WITH_NULL_SHA |
No encryption with SHA-1 message authentication
and RSA key exchange |
|
X |
X |
| 03 |
0003 |
TLS_RSA_WITH_RC4_40_MD5 |
40-bit RC4 encryption with MD5 message authentication
and RSA key exchange |
|
X |
X |
| 04 |
0004 |
TLS_RSA_WITH_RC4_128_MD5 |
128-bit RC4 encryption with MD5 message authentication
and RSA key exchange |
|
|
X |
| 05 |
0005 |
TLS_RSA_WITH_RC4_128_MD5 |
128-bit RC4 encryption with SHA-1 message authentication
and RSA key exchange |
|
|
X |
| 06 |
0006 |
TLS_RSA_EXPORT_WITH_RC2_CBC_40_MD5 |
40-bit RC2 encryption with MD5 message authentication
and RSA key exchange |
|
X |
X |
| 09 |
0009 |
TLS_RSA_WITH_DES_CBC_SHA |
56-bit DES encryption with SHA-1 message authentication
and RSA key exchange |
|
X |
X |
| 0A |
000A |
TLS_RSA_WITH_3DES_EDE_CBC_SHA |
168-bit Triple DES encryption with SHA-1 message
authentication and RSA key exchange |
X |
|
X |
| 0C |
000C |
TLS_DH_DSS_WITH_DES_CBC_SHA |
56-bit DES encryption with SHA-1 message authentication
and fixed Diffie-Hellman key exchange signed with a DSA certificate |
|
X |
X |
| 0D |
000D |
TLS_DH_DSS_WITH_3DES_EDE_CBC_SHA |
168-bit Triple DES encryption with SHA-1 message
authentication and fixed Diffie-Hellman key exchange signed with a
DSA certificate |
X |
|
X |
| 0F |
000F |
TLS_DH_RSA_WITH_DES_CBC_SHA |
56-bit DES encryption with SHA-1 message authentication
and fixed Diffie-Hellman key exchange signed with an RSA certificate |
|
X |
X |
| 10 |
0010 |
TLS_DH_RSA_WITH_3DES_EDE_CBC_SHA |
168-bit Triple DES encryption with SHA-1 message
authentication and fixed Diffie-Hellman key exchange signed with an
RSA certificate |
X |
|
X |
| 12 |
0012 |
TLS_DHE_DSS_WITH_DES_CBC_SHA |
56-bit DES encryption with SHA-1message authentication
and ephemeral Diffie-Hellman key exchange signed with a DSA certificate |
|
X |
X |
| 13 |
0013 |
TLS_DHE_DSS_WITH_3DES_EDE_CBC_SHA |
168-bit Triple DES encryption with SHA-1 message
authentication and ephemeral Diffie-Hellman key exchange signed with
a DSA certificate |
X |
|
X |
| 15 |
0015 |
TLS_DHE_RSA_WITH_DES_CBC_SHA |
56-bit DES encryption with SHA-1 message authentication
and ephemeral Diffie-Hellman key exchange signed with an RSA certificate |
|
X |
X |
| 16 |
0016 |
TLS_DHE_RSA_WITH_3DES_EDE_CBC_SHA |
168-bit Triple DES encryption with SHA-1 message
authentication and ephemeral Diffie-Hellman key exchange signed with
an RSA certificate |
X |
|
X |
| 2F |
002F |
TLS_RSA_WITH_AES_128_CBC_SHA |
128-bit AES encryption with SHA-1 message authentication
and RSA key exchange |
X |
|
X |
| 30 |
0030 |
TLS_DH_DSS_WITH_AES_128_CBC_SHA |
128-bit AES encryption with SHA-1 message authentication
and fixed Diffie-Hellman key exchange signed with a DSA certificate |
X |
|
X |
| 31 |
0031 |
TLS_DH_RSA_WITH_AES_128_CBC_SHA |
128-bit AES encryption with SHA-1 message authentication
and fixed Diffie-Hellman key exchange signed with an RSA certificate |
X |
|
X |
| 32 |
0032 |
TLS_DHE_DSS_WITH_AES_128_CBC_SHA |
128-bit AES encryption with SHA-1 message authentication
and ephemeral Diffie-Hellman key exchange signed with a DSA certificate |
X |
|
X |
| 33 |
0033 |
TLS_DHE_RSA_WITH_AES_128_CBC_SHA |
128-bit AES encryption with SHA-1 message authentication
and ephemeral Diffie-Hellman key exchange signed with an RSA certificate |
X |
|
X |
| 35 |
0035 |
TLS_RSA_WITH_AES_256_CBC_SHA |
256-bit AES encryption with SHA-1 message authentication
and RSA key exchange |
X |
|
X |
| 36 |
0036 |
TLS_DH_DSS_WITH_AES_256_CBC_SHA |
256-bit AES encryption with SHA-1 message authentication
and fixed Diffie-Hellman key exchange signed with a DSA certificate |
X |
|
X |
| 37 |
0037 |
TLS_DH_RSA_WITH_AES_256_CBC_SHA |
256-bit AES encryption with SHA-1 message authentication
and fixed Diffie-Hellman key exchange signed with an RSA certificate |
X |
|
X |
| 38 |
0038 |
TLS_DHE_DSS_WITH_AES_256_CBC_SHA |
256-bit AES encryption with SHA-1 message authentication
and ephemeral Diffie-Hellman key exchange signed with a DSA certificate |
X |
|
X |
| 39 |
0039 |
TLS_DHE_RSA_WITH_AES_256_CBC_SHA |
256-bit AES encryption with SHA-1 message authentication
and ephemeral Diffie-Hellman key exchange signed with an RSA certificate |
X |
|
X |
| 3B |
003B |
TLS_RSA_WITH_NULL_SHA256 |
No encryption with SHA-256 message authentication
and RSA key exchange |
|
X |
X |
| 3C |
003C |
TLS_RSA_WITH_AES_128_CBC_SHA256 |
128-bit AES encryption with SHA-256 message authentication
and RSA key exchange |
X |
|
X |
| 3D |
003D |
TLS_RSA_WITH_AES_256_CBC_SHA256 |
256-bit AES encryption with SHA-256 message authentication
and RSA key exchange |
X |
|
X |
| 3E |
003E |
TLS_DH_DSS_WITH_AES_128_CBC_SHA256 |
128-bit AES encryption with SHA-256 message authentication
and fixed Diffie-Hellman key exchange signed with a DSA certificate |
X |
|
X |
| 3F |
003F |
TLS_DH_RSA_WITH_AES_128_CBC_SHA256 |
128-bit AES encryption with SHA-256 message authentication
and fixed Diffie-Hellman key exchange signed with an RSA certificate |
X |
|
X |
| 40 |
0040 |
TLS_DHE_DSS_WITH_AES_128_CBC_SHA256 |
128-bit AES encryption with SHA-256 message authentication
and ephemeral Diffie-Hellman key exchange signed with a DSA certificate |
X |
|
X |
| 67 |
0067 |
TLS_DHE_RSA_WITH_AES_128_CBC_SHA256 |
128-bit AES encryption with SHA-256 message authentication
and ephemeral Diffie-Hellman key exchange signed with an RSA certificate |
X |
|
X |
| 68 |
0068 |
TLS_DH_DSS_WITH_AES_256_CBC_SHA256 |
256-bit AES encryption with SHA-256 message authentication
and fixed Diffie-Hellman key exchange signed with a DSA certificate |
X |
|
X |
| 69 |
0069 |
TLS_DH_RSA_WITH_AES_256_CBC_SHA256 |
256-bit AES encryption with SHA-256 message authentication
and fixed Diffie-Hellman key exchange signed with an RSA certificate |
X |
|
X |
| 6A |
006A |
TLS_DHE_DSS_WITH_AES_256_CBC_SHA256 |
256-bit AES encryption with SHA-256 message authentication
and ephemeral Diffie-Hellman key exchange signed with a DSA certificate |
X |
|
X |
| 6B |
006B |
TLS_DHE_RSA_WITH_AES_256_CBC_SHA256 |
256-bit AES encryption with SHA-256 message authentication
and ephemeral Diffie-Hellman key exchange signed with an RSA certificate |
X |
|
X |
| 9C |
009C |
TLS_RSA_WITH_AES_128_GCM_SHA256 |
128-bit AES in Galois Counter Mode encryption with
128-bit AEAD authentication and RSA key exchange |
X |
|
X |
| 9D |
009D |
TLS_RSA_WITH_AES_256_GCM_SHA384 |
256-bit AES in Galois Counter Mode encryption with
128-bit AEAD authentication and RSA key exchange |
X |
|
X |
| 9E |
009E |
TLS_DHE_RSA_WITH_AES_128_GCM_SHA256 |
128-bit AES in Galois Counter Mode encryption
with 128-bit AEAD authentication and ephemeral Diffie-Hellman key
exchange signed with an RSA certificate |
X |
|
X |
| 9F |
009F |
TLS_DHE_RSA_WITH_AES_256_GCM_SHA384 |
256-bit AES in Galois Counter Mode encryption with
128-bit AEAD authentication and ephemeral Diffie-Hellman key exchange
signed with an RSA certificate |
X |
|
X |
| A0 |
00A0 |
TLS_DH_RSA_WITH_AES_128_GCM_SHA256 |
128-bit AES in Galois Counter Mode encryption with
128-bit AEAD authentication and fixed Diffie-Hellman key exchange
signed with an RSA certificate |
X |
|
X |
| A1 |
00A1 |
TLS_DH_RSA_WITH_AES_256_GCM_SHA384 |
256-bit AES in Galois Counter Mode encryption with
128-bit AEAD authentication and fixed Diffie-Hellman key exchange
signed with an RSA certificate |
X |
|
X |
| A2 |
00A2 |
TLS_DHE_DSS_WITH_AES_128_GCM_SHA256 |
128-bit AES in Galois Counter Mode encryption with
128-bit AEAD authentication and ephemeral Diffie-Hellman key exchange
signed with a DSA certificate |
X |
|
X |
| A3 |
00A3 |
TLS_DHE_DSS_WITH_AES_256_GCM_SHA384 |
256-bit AES in Galois Counter Mode encryption with
128-bit AEAD authentication and ephemeral Diffie-Hellman key exchange
signed with a DSA certificate |
X |
|
X |
| A4 |
00A4 |
TLS_DH_DSS_WITH_AES_128_GCM_SHA256 |
128-bit AES in Galois Counter Mode encryption with
128-bit AEAD authentication and fixed Diffie-Hellman key exchange
signed with a DSA certificate |
X |
|
X |
| A5 |
00A5 |
TLS_DH_DSS_WITH_AES_256_GCM_SHA384 |
256-bit AES in Galois Counter Mode encryption with
128-bit AEAD authentication and fixed Diffie-Hellman key exchange
signed with a DSA certificate |
X |
|
X |
| |
C001 |
TLS_ECDH_ECDSA_WITH_NULL_SHA |
NULL encryption with SHA-1 message authentication
and fixed ECDH key exchange signed with an ECDSA certificate |
|
X |
X |
| |
C002 |
TLS_ECDH_ECDSA_WITH_RC4_128_SHA |
128-bit RC4 encryption with SHA-1 message authentication
and fixed ECDH key exchange signed with an ECDSA certificate |
|
|
X |
| |
C003 |
TLS_ECDH_ECDSA_WITH_3DES_EDE_CBC_SHA |
168-bit Triple DES encryption with SHA-1 message
authentication and fixed ECDH key exchange signed with an ECDSA certificate |
X |
|
X |
| |
C004 |
TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHA |
128-bit AES encryption with SHA-1 message authentication
and fixed ECDH key exchange signed with an ECDSA certificate |
X |
|
X |
| |
C005 |
TLS_ECDH_ECDSA_WITH_AES_256_CBC_SHA |
256-bit AES encryption with SHA-1 message authentication
and fixed ECDH key exchange signed with an ECDSA certificate |
X |
|
X |
| |
C006 |
TLS_ECDHE_ECDSA_WITH_NULL_SHA |
NULL encryption with SHA-1 message authentication
and ephemeral ECDH key exchange signed with an ECDSA certificate |
|
X |
X |
| |
C007 |
TLS_ECDHE_ECDSA_WITH_RC4_128_SHA |
128-bit RC4 encryption with SHA-1 message authentication
and ephemeral ECDH key exchange signed with an ECDSA certificate |
|
|
X |
| |
C008 |
TLS_ECDHE_ECDSA_WITH_3DES_EDE_
CBC_SHA
|
168-bit Triple DES encryption with SHA-1 message
authentication and ephemeral ECDH key exchange signed with an ECDSA
certificate |
X |
|
X |
| |
C009 |
TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA |
128-bit AES encryption with SHA-1 message authentication
and ephemeral ECDH key exchange signed with an ECDSA certificate |
X |
|
X |
| |
C00A |
TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA |
256-bit AES encryption with SHA-1 message authentication
and ephemeral ECDH key exchange signed with an ECDSA certificate |
X |
|
X |
| |
C00B |
TLS_ECDH_RSA_WITH_NULL_SHA |
NULL encryption with SHA-1 message authentication
and fixed ECDH key exchange signed with an RSA certificate |
|
X |
X |
| |
C00C |
TLS_ECDH_RSA_WITH_RC4_128_SHA |
128-bit RC4 encryption with SHA-1 message authentication
and fixed ECDH key exchange signed with an RSA certificate |
|
|
X |
| |
C00D |
TLS_ECDH_RSA_WITH_3DES_EDE_CBC_SHA |
168-bit Triple DES encryption with SHA-1 message
authentication and fixed ECDH key exchange signed with an RSA certificate |
X |
|
X |
| |
C00E |
TLS_ECDH_RSA_WITH_AES_128_CBC_SHA |
128-bit AES encryption with SHA-1 message authentication
and fixed ECDH key exchange signed with an RSA certificate |
X |
|
X |
| |
C00F |
TLS_ECDH_RSA_WITH_AES_256_CBC_SHA |
256-bit AES encryption with SHA-1 message authentication
and fixed ECDH key exchange signed with an RSA certificate |
X |
|
X |
| |
C010 |
TLS_ECDHE_RSA_WITH_NULL_SHA |
NULL encryption with SHA-1 message authentication
and ephemeral ECDH key exchange signed with an RSA certificate |
|
X |
X |
| |
C011 |
TLS_ECDHE_RSA_WITH_RC4_128_SHA |
128-bit RC4 encryption with SHA-1 message authentication
and ephemeral ECDH key exchange signed with an RSA certificate |
|
|
X |
| |
C012 |
TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA |
168-bit Triple DES encryption with SHA-1 message
authentication and ephemeral ECDH key exchange signed with an RSA
certificate |
X |
|
X |
| |
C013 |
TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA |
128-bit AES encryption with SHA-1 message authentication
and ephemeral ECDH key exchange signed with an RSA certificate |
X |
|
X |
| |
C014 |
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA |
256-bit AES encryption with SHA-1 message authentication
and ephemeral ECDH key exchange signed with an RSA certificate |
X |
|
X |
| |
C023 |
TLS_ECDHE_ECDSA_WITH_AES_128_
CBC_SHA256
|
128-bit AES encryption with SHA-256 message authentication
and ephemeral ECDH key exchange signed with an ECDSA certificate |
X |
|
X |
| |
C024 |
TLS_ECDHE_ECDSA_WITH_AES_256_
CBC_SHA384
|
256-bit AES encryption with SHA-384 message authentication
and ephemeral ECDH key exchange signed with an ECDSA certificate |
X |
|
X |
| |
C025 |
TLS_ECDH_ECDSA_WITH_AES_128_
CBC_SHA256
|
128-bit AES encryption with SHA-256 message authentication
and fixed ECDH key exchange signed with an ECDSA certificate |
X |
|
X |
| |
C026 |
TLS_ECDH_ECDSA_WITH_AES_256_
CBC_SHA384
|
256-bit AES encryption with SHA-384 message authentication
and fixed ECDH key exchange signed with an ECDSA certificate |
X |
|
X |
| |
C027 |
TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 |
128-bit AES encryption with SHA-256 message authentication
and ephemeral ECDH key exchange signed with an RSA certificate |
X |
|
X |
| |
C028 |
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384 |
256-bit AES encryption with SHA-384 message authentication
and ephemeral ECDH key exchange signed with an RSA certificate |
X |
|
X |
| |
C029 |
TLS_ECDH_RSA_WITH_AES_128_CBC_SHA256 |
128-bit AES encryption with SHA-256 message authentication
and fixed ECDH key exchange signed with an RSA certificate |
X |
|
X |
| |
C02A |
TLS_ECDH_RSA_WITH_AES_256_CBC_SHA384 |
256-bit AES encryption with SHA-384 message authentication
and fixed ECDH key exchange signed with an RSA certificate |
X |
|
X |
| |
C02B |
TLS_ECDHE_ECDSA_WITH_AES_128_
GCM_SHA256
|
128-bit AES in Galois Counter Mode encryption with
128-bit AEAD authentication and ephemeral ECDH key exchange signed
with an ECDSA certificate |
X |
|
X |
| |
C02C |
TLS_ECDHE_ECDSA_WITH_AES_256_
GCM_SHA384
|
256-bit AES in Galois Counter Mode encryption with
128-bit AEAD message authentication and ephemeral ECDH key exchange
signed with an ECDSA certificate |
X |
|
X |
| |
C02D |
TLS_ECDH_ECDSA_WITH_AES_128_
GCM_SHA256
|
128-bit AES in Galois Counter Mode encryption with
128-bit AEAD message authentication and fixed ECDH key exchange signed
with an ECDSA certificate |
X |
|
X |
| |
C02E |
TLS_ECDH_ECDSA_WITH_AES_256_
GCM_SHA384
|
256-bit AES in Galois Counter Mode encryption with
128-bit AEAD message authentication and fixed ECDH key exchange signed
with an ECDSA certificate |
X |
|
X |
| |
C02F |
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 |
128-bit AES in Galois Counter Mode encryption with
128-bit AEAD message authentication and ephemeral ECDH key exchange
signed with an RSA certificate |
X |
|
X |
| |
C030 |
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 |
256-bit AES in Galois Counter Mode encryption with
128-bit AEAD message authentication and ephemeral ECDH key exchange
signed with an RSA certificate |
X |
|
X |
| |
C031 |
TLS_ECDH_RSA_WITH_AES_128_GCM_SHA256 |
128-bit AES in Galois Counter Mode encryption with
128-bit AEAD message authentication and fixed ECDH key exchange signed
with an RSA certificate |
X |
|
X |
| |
C032 |
TLS_ECDH_RSA_WITH_AES_256_GCM_SHA384 |
256-bit AES in Galois Counter Mode encryption with
128-bit AEAD message authentication and fixed ECDH key exchange signed
with an RSA certificate |
X |
|
X |
1 See Table 4 for more information about
the signing algorithm required for the key exchanges.
|