Published date: 09.08.2010
Last Update: 23.02.2011
Author: Adrian F. Dimcev, contact@carbonwind.net

Work in progress
  
Known limitations: there are active/expired drafts mentioning additional cipher suites with TBD cipher suite codes.
Currently these are not included into the doc, this is on the todo list.

SSL/TLS Cipher Suites Lists

 

SSL/TLS Cipher Suites Lists. 1

1. Main Table. 2

2. Meaning. 10

3. Extra Cipher Suites. 11

4. References. 14

5. Extra References. 15

 

1. Main Table

Table 1

No

Cipher Suite

Hex Value

SSL 2.0

SSL 3.0

TLS 1.0

TLS 1.1

TLS 1.2

RFC | Draft

FIPS* 26 27

1.

SSL_CK_RC4_128_WITH_MD5
(SSL2_RC4_128_WITH_MD5)

0x010080

n

-

-

-

-

Draft Last Update: Feb. 9th, 1995 1

No

2.

SSL_CK_RC4_128_EXPORT40_WITH_MD5

(SSL2_RC4_128_EXPORT40_WITH_MD5)

0x020080

n

-

-

-

-

Draft Last Update: Feb. 9th, 1995 1

No

3.

SSL_CK_RC2_128_CBC_WITH_MD5

(SSL2_RC2_128_CBC_WITH_MD5)

0x030080

n

-

-

-

-

Draft Last Update: Feb. 9th, 1995 1

No

4.

SSL_CK_RC2_128_CBC_EXPORT40_WITH_MD5

(SSL2_RC2_128_CBC_EXPORT40_WITH_MD5)

0x040080

n

-

-

-

-

Draft Last Update: Feb. 9th, 1995 1

No

5.

SSL_CK_IDEA_128_CBC_WITH_MD5

(SSL2_IDEA_128_CBC_WITH_MD5)

0x050080

n

-

-

-

-

Draft Last Update: Feb. 9th, 1995 1

No

6.

SSL_CK_DES_64_CBC_WITH_MD5

(SSL2_DES_64_CBC_WITH_MD5)

0x060040

n

-

-

-

-

Draft Last Update: Feb. 9th, 1995 1

No

7.

SSL_CK_DES_192_EDE3_CBC_WITH_MD5

(SSL2_DES_192_EDE3_CBC_WITH_MD5)

0x0700C0

n

-

-

-

-

Draft Last Update: Feb. 9th, 1995 1

No

8.

SSL_CK_RC4_64_WITH_MD5

0x080080

s

-

-

-

-

?

No

9.

TLS_NULL_WITH_NULL_NULL

(SSL_NULL_WITH_NULL_NULL)

0x0000

-

n

n

n

n

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

RFC 5246 August 2008 15

No

10.

TLS_RSA_WITH_NULL_MD5

(SSL_RSA_WITH_NULL_MD5)

0x0001

-

n

n

n

n

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

RFC 5246 August 2008 15

No

11.

TLS_RSA_WITH_NULL_SHA

(SSL_RSA_WITH_NULL_SHA)

0x0002

-

n

n

n

n

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

RFC 5246 August 2008 15

No

12.

TLS_RSA_EXPORT_WITH_RC4_40_MD5

(SSL_RSA_EXPORT_WITH_RC4_40_MD5)

0x0003

-

n

n

x

x

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

No

13.

TLS_RSA_WITH_RC4_128_MD5

(SSL_RSA_WITH_RC4_128_MD5)

0x0004

-

n

n

n

n

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

RFC 5246 August 2008 15

No

14.

TLS_RSA_WITH_RC4_128_SHA

(SSL_RSA_WITH_RC4_128_SHA)

0x0005

-

n

n

n

n

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

RFC 5246 August 2008 15

No

15.

TLS_RSA_EXPORT_WITH_RC2_CBC_40_MD5

(SSL_RSA_EXPORT_WITH_RC2_CBC_40_MD5)

0x0006

-

n

n

x

x

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

No

16.

TLS_RSA_WITH_IDEA_CBC_SHA

(SSL_RSA_WITH_IDEA_CBC_SHA)

0x0007

-

n

n

n

depr

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

RFC 5469 February 2009 19

No

17.

TLS_RSA_EXPORT_WITH_DES40_CBC_SHA

(SSL_RSA_EXPORT_WITH_DES40_CBC_SHA)

0x0008

-

n

n

x

x

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

No

18.

TLS_RSA_WITH_DES_CBC_SHA

(SSL_RSA_WITH_DES_CBC_SHA)

0x0009

-

n

n

n

depr

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

RFC 5469 February 2009 19

No

19.

TLS_RSA_WITH_3DES_EDE_CBC_SHA

(SSL_RSA_WITH_3DES_EDE_CBC_SHA)

0x000A

-

n

n

n

n

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

RFC 5246 August 2008 15

Yes

20.

TLS_DH_DSS_EXPORT_WITH_DES40_CBC_SHA

(SSL_DH_DSS_EXPORT_WITH_DES40_CBC_SHA)

0x000B

-

n

n

x

x

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

No

21.

TLS_DH_DSS_WITH_DES_CBC_SHA

(SSL_DH_DSS_WITH_DES_CBC_SHA)

0x000C

-

n

n

n

depr

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

RFC 5469 February 2009 19

No

22.

TLS_DH_DSS_WITH_3DES_EDE_CBC_SHA

(SSL_DH_DSS_WITH_3DES_EDE_CBC_SHA)

0x000D

-

n

n

n

n

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

RFC 5246 August 2008 15

Yes

23.

TLS_DH_RSA_EXPORT_WITH_DES40_CBC_SHA

(SSL_DH_RSA_EXPORT_WITH_DES40_CBC_SHA)

0x000E

-

n

n

x

x

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

No

24.

TLS_DH_RSA_WITH_DES_CBC_SHA

(SSL_DH_RSA_WITH_DES_CBC_SHA)

0x000F

-

n

n

n

depr

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

RFC 5469 February 2009 19

No

25.

TLS_DH_RSA_WITH_3DES_EDE_CBC_SHA

(SSL_DH_RSA_WITH_3DES_EDE_CBC_SHA)

0x0010

-

n

n

n

n

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

RFC 5246 August 2008 15

Yes

26.

TLS_DHE_DSS_EXPORT_WITH_DES40_CBC_SHA

(SSL_DHE_DSS_EXPORT_WITH_DES40_CBC_SHA)

0x0011

-

n

n

x

x

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

No

27.

TLS_DHE_DSS_WITH_DES_CBC_SHA

(SSL_DHE_DSS_WITH_DES_CBC_SHA)

0x0012

-

n

n

n

depr

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

RFC 5469 February 2009 19

No

28.

TLS_DHE_DSS_WITH_3DES_EDE_CBC_SHA

(SSL_DHE_DSS_WITH_3DES_EDE_CBC_SHA)

0x0013

-

n

n

n

n

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

RFC 5246 August 2008 15

Yes

29.

TLS_DHE_RSA_EXPORT_WITH_DES40_CBC_SHA

(SSL_DHE_RSA_EXPORT_WITH_DES40_CBC_SHA)

0x0014

-

n

n

x

x

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

No

30.

TLS_DHE_RSA_WITH_DES_CBC_SHA

(SSL_DHE_RSA_WITH_DES_CBC_SHA)

0x0015

-

n

n

n

depr

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

RFC 5469 February 2009 19

No

31.

TLS_DHE_RSA_WITH_3DES_EDE_CBC_SHA

(SSL_ DHE_RSA_WITH_3DES_EDE_CBC_SHA)

0x0016

-

n

n

n

n

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

RFC 5246 August 2008 15

Yes

32.

TLS_DH_anon_EXPORT_WITH_RC4_40_MD5

(SSL_DH_anon_EXPORT_WITH_RC4_40_MD5)

0x0017

-

disc

depr

x

x

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

No

33.

TLS_DH_anon_WITH_RC4_128_MD5

(SSL_DH_anon_WITH_RC4_128_MD5)

0x0018

-

disc

depr

depr

c

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

RFC 5246 August 2008 15

No

34.

TLS_DH_anon_EXPORT_WITH_DES40_CBC_SHA

(SSL_DH_anon_EXPORT_WITH_DES40_CBC_SHA)

0x0019

-

disc

depr

x

x

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

No

35.

TLS_DH_anon_WITH_DES_CBC_SHA

(SSL_DH_anon_WITH_DES_CBC_SHA)

0x001A

-

disc

depr

depr

depr

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

RFC 5469 February 2009 19

No

36.

TLS_DH_anon_WITH_3DES_EDE_CBC_SHA

(SSL_DH_anon_WITH_3DES_EDE_CBC_SHA)

0x001B

-

disc

depr

depr

c

Draft Last Update: Nov. 18th, 1996 2

RFC 2246 January 1999 3

RFC 4346 April 2006 10

RFC 5246 August 2008 15

No

37.

SSL_FORTEZZA_KEA_WITH_NULL_SHA

0X001C

-

n

-

-

-

Draft Last Update: Nov. 18th, 1996 2

No

38.

SSL_FORTEZZA_KEA_WITH_FORTEZZA_CBC_SHA

0x001D

-

n

-

-

-

Draft Last Update: Nov. 18th, 1996 2

No

39.

SSL_FORTEZZA_KEA_WITH_RC4_128_SHA

0x001E

-

n

-

-

-

Draft Last Update: Nov. 18th, 1996 2

No

40.

TLS_KRB5_WITH_DES_CBC_SHA

0x001E

-

s

n

n

?

RFC 2712 October 1999 4

RFC 4346 April 2006 10

No

41.

TLS_KRB5_WITH_3DES_EDE_CBC_SHA

0x001F

-

s

n

n

?

RFC 2712 October 1999 4

RFC 4346 April 2006 10

No

42.

TLS_KRB5_WITH_RC4_128_SHA

0x0020

-

s

n

n

?

RFC 2712 October 1999 4

RFC 4346 April 2006 10

No

43.

TLS_KRB5_WITH_IDEA_CBC_SHA

0x0021

-

s

n

n

?

RFC 2712 October 1999 4

RFC 4346 April 2006 10

No

44.

TLS_KRB5_WITH_DES_CBC_MD5

0x0022

-

s

n

n

depr ?

RFC 2712 October 1999 4

RFC 4346 April 2006 10

No

45.

TLS_KRB5_WITH_3DES_EDE_CBC_MD5

0x0023

-

s

n

n

?

RFC 2712 October 1999 4

RFC 4346 April 2006 10

No

46.

TLS_KRB5_WITH_RC4_128_MD5

0x0024

-

s

n

n

?

RFC 2712 October 1999 4

RFC 4346 April 2006 10

No

47.

TLS_KRB5_WITH_IDEA_CBC_MD5

0x0025

-

s

n

n

depr ?

RFC 2712 October 1999 4

RFC 4346 April 2006 10

No

48.

TLS_KRB5_EXPORT_WITH_DES_CBC_40_SHA

0x0026

-

s

n

x

x ?

RFC 2712 October 1999 4

RFC 4346 April 2006 10

No

49.

TLS_KRB5_EXPORT_WITH_RC2_CBC_40_SHA

0x0027

-

s

n

x

x ?

RFC 2712 October 1999 4

RFC 4346 April 2006 10

No

50.

TLS_KRB5_EXPORT_WITH_RC4_40_SHA

0x0028

-

s

n

x

x ?

RFC 2712 October 1999 4

RFC 4346 April 2006 10

No

51.

TLS_KRB5_EXPORT_WITH_DES_CBC_40_MD5

0x0029

-

s

n

x

x ?

RFC 2712 October 1999 4

RFC 4346 April 2006 10

No

52.

TLS_KRB5_EXPORT_WITH_RC2_CBC_40_MD5

0x002A

-

s

n

x

x ?

RFC 2712 October 1999 4

RFC 4346 April 2006 10

No

53.

TLS_KRB5_EXPORT_WITH_RC4_40_MD5

0x002B

-

s

n

x

x ?

RFC 2712 October 1999 4

RFC 4346 April 2006 10

No

54.

TLS_PSK_WITH_NULL_SHA

0x002C

-

?

n

n

n

RFC 4785 January 2007 13

No

55.

TLS_DHE_PSK_WITH_NULL_SHA

0x002D

-

?

n

n

n

RFC 4785 January 2007 13

No

56.

TLS_RSA_PSK_WITH_NULL_SHA

0x002E

-

?

n

n

n

RFC 4785 January 2007 13

No

57.

TLS_RSA_WITH_AES_128_CBC_SHA

0x002F

-

s

n

n

n

RFC 3268 June 2002 5

RFC 4346 April 2006 10

RFC 5246 August 2008 15

Yes

58.

TLS_DH_DSS_WITH_AES_128_CBC_SHA

0x0030

-

s

n

n

n

RFC 3268 June 2002 5

RFC 4346 April 2006 10

RFC 5246 August 2008 15

Yes

59.

TLS_DH_RSA_WITH_AES_128_CBC_SHA

0x0031

-

s

n

n

n

RFC 3268 June 2002 5

RFC 4346 April 2006 10

RFC 5246 August 2008 15

Yes

60.

TLS_DHE_DSS_WITH_AES_128_CBC_SHA

0x0032

-

s

n

n

n

RFC 3268 June 2002 5

RFC 4346 April 2006 10

RFC 5246 August 2008 15

Yes

61.

TLS_DHE_RSA_WITH_AES_128_CBC_SHA

0x0033

-

s

n

n

n

RFC 3268 June 2002 5

RFC 4346 April 2006 10

RFC 5246 August 2008 15

Yes

62.

TLS_DH_anon_WITH_AES_128_CBC_SHA

0x0034

-

s

n

n

c

RFC 3268 June 2002 5

RFC 4346 April 2006 10

RFC 5246 August 2008 15

No

63.

TLS_RSA_WITH_AES_256_CBC_SHA

0x0035

-

s

n

n

n

RFC 3268 June 2002 5

RFC 4346 April 2006 10

RFC 5246 August 2008 15

Yes

64.

TLS_DH_DSS_WITH_AES_256_CBC_SHA

0x0036

-

s

n

n

n

RFC 3268 June 2002 5

RFC 4346 April 2006 10

RFC 5246 August 2008 15

Yes

65.

TLS_DH_RSA_WITH_AES_256_CBC_SHA

0x0037

-

s

n

n

n

RFC 3268 June 2002 5

RFC 4346 April 2006 10

RFC 5246 August 2008 15

Yes

66.

TLS_DHE_DSS_WITH_AES_256_CBC_SHA

0x0038

-

s

n

n

n

RFC 3268 June 2002 5

RFC 4346 April 2006 10

RFC 5246 August 2008 15

Yes

67.

TLS_DHE_RSA_WITH_AES_256_CBC_SHA

0x0039

-

s

n

n

n

RFC 3268 June 2002 5

RFC 4346 April 2006 10

RFC 5246 August 2008 15

Yes

68.

TLS_DH_anon_WITH_AES_256_CBC_SHA

0x003A

-

s

n

n

c

RFC 3268 June 2002 5

RFC 4346 April 2006 10

RFC 5246 August 2008 15

No

69.

TLS_RSA_WITH_NULL_SHA256

0x003B

-

s

s

s

n

RFC 5246 August 2008 15

No

70.

TLS_RSA_WITH_AES_128_CBC_SHA256

0x003C

-

s

s

s

n

RFC 5246 August 2008 15

Yes

71.

TLS_RSA_WITH_AES_256_CBC_SHA256

0x003D

-

s

s

s

n

RFC 5246 August 2008 15

Yes

72.

TLS_DH_DSS_WITH_AES_128_CBC_SHA25

0x003E

-

s

s

s

n

RFC 5246 August 2008 15

Yes

73.

TLS_DH_RSA_WITH_AES_128_CBC_SHA256

0x003F

-

s

s

s

n

RFC 5246 August 2008 15

Yes

74.

TLS_DHE_DSS_WITH_AES_128_CBC_SHA256

0x0040

-

s

s

s

n

RFC 5246 August 2008 15

Yes

75.

TLS_RSA_WITH_CAMELLIA_128_CBC_SHA

0x0041

-

s

n

n

n

RFC 4132 July 2005 7

RFC 5932 June 2010 23

No

76.

TLS_DH_DSS_WITH_CAMELLIA_128_CBC_SHA

0x0042

-

?

n

n

n

RFC 4132 July 2005 7

RFC 5932 June 2010 23

No

77.

TLS_DH_RSA_WITH_CAMELLIA_128_CBC_SHA

0x0043

-

?

n

n

n

RFC 4132 July 2005 7

RFC 5932 June 2010 23

No

78.

TLS_DHE_DSS_WITH_CAMELLIA_128_CBC_SHA

0x0044

-

s

n

n

n

RFC 4132 July 2005 7

RFC 5932 June 2010 23

No

79.

TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA

0x0045

-

s

n

n

n

RFC 4132 July 2005 7

RFC 5932 June 2010 23

No

80.

TLS_DH_anon_WITH_CAMELLIA_128_CBC_SHA

0x0046

-

s

n

n

n

RFC 4132 July 2005 7

RFC 5932 June 2010 23

No

81.

TLS_RSA_EXPORT1024_WITH_RC4_56_MD5

(SSL_RSA_EXPORT1024_WITH_RC4_56_MD5)

0x0060

-

s

s

x ?

x ?

?

No

82.

TLS_RSA_EXPORT1024_WITH_RC2_56_MD5

(SSL_RSA_EXPORT1024_WITH_RC2_CBC_56_MD5)

0x0061

-

s

s

x ?

x ?

?

No

83.

TLS _RSA_EXPORT1024_WITH_DES_CBC_SHA

(SSL_RSA_EXPORT1024_WITH_DES_CBC_SHA)

0x0062

-

s

s

x ?

x ?

Draft Last Update: July 19, 2001 5

No

84.

TLS _DHE_DSS_EXPORT1024_WITH_DES_CBC_SHA

(SSL_DHE_DSS_EXPORT1024_WITH_DES_CBC_SHA)

0x0063

-

s

s

x ?

x ?

Draft Last Update: July 19, 2001 5

No

85.

TLS _RSA_EXPORT1024_WITH_RC4_56_SHA

(SSL_RSA_EXPORT1024_WITH_RC4_56_SHA)

0x0064

-

s

s

x ?

x ?

Draft Last Update: July 19, 2001 5

No

86.

TLS _DHE_DSS_EXPORT1024_WITH_RC4_56_SHA

(SSL_DHE_DSS_EXPORT1024_WITH_RC4_56_SHA)

0x0065

-

s

s

x ?

x ?

Draft Last Update: July 19, 2001 5

No

87.

TLS _DHE_DSS_WITH_RC4_128_SHA

(SSL_DHE_DSS_WITH_RC4_128_SHA)

0x0066

-

s

s

s

?

Draft Last Update: July 19, 2001 5

No

88.

TLS_NTRU_NSS_WITH_RC4_128_SHA

0x0061

-

?

s

?

?

Draft Last Update: July 3, 2001 29

No

89.

TLS_NTRU_NSS_WITH_3DES_EDE_CBC_SHA

0x0062

-

?

s

?

?

Draft Last Update: July 3, 2001 29

No

90.

TLS_NTRU_NSS_WITH_AES_128_CBC_SHA

0x0063

-

?

s

?

?

Draft Last Update: July 3, 2001 29

No

91.

TLS_NTRU_NSS_WITH_AES_256_CBC_SHA

0x0064

-

?

s

?

?

Draft Last Update: July 3, 2001 29

No

92.

TLS_NTRU_RSA_WITH_RC4_128_SHA

0x0065

-

?

s

?

?

Draft Last Update: July 3, 2001 29

Extra 28 30 31

No

93.

TLS_NTRU_RSA_WITH_3DES_EDE_CBC_SHA

0x0066

-

?

s

?

?

Draft Last Update: July 3, 2001 29

Extra 28 30 31

No

94.

TLS_NTRU_RSA_WITH_AES_128_CBC_SHA

0x0067

-

?

s

?

?

Draft Last Update: July 3, 2001 29

Extra 28 30 31

No

95.

TLS_NTRU_RSA_WITH_AES_256_CBC_SHA

0x0068

-

?

s

?

?

Draft Last Update: July 3, 2001 29

Extra 28 30 31

No

96.

TLS_DHE_RSA_WITH_AES_128_CBC_SHA256

0x0067

-

s

s

s

n

RFC 5246 August 2008 15

Yes

97.

TLS_DH_DSS_WITH_AES_256_CBC_SHA256

0x0068

-

s

s

s

n

RFC 5246 August 2008 15

Yes

98.

TLS_DH_RSA_WITH_AES_256_CBC_SHA256

0x0069

-

s

s

s

n

RFC 5246 August 2008 15

Yes

99.

TLS_DHE_DSS_WITH_AES_256_CBC_SHA256

0x006A

-

s

s

s

n

RFC 5246 August 2008 15

Yes

100.

TLS_DHE_RSA_WITH_AES_256_CBC_SHA256

0x006B

-

s

s

s

n

RFC 5246 August 2008 15

Yes

101.

TLS_DH_anon_WITH_AES_128_CBC_SHA256

0x006C

-

s

s

s

c

RFC 5246 August 2008 15

No

102.

TLS_DH_anon_WITH_AES_256_CBC_SHA256

0x006D

-

s

s

s

c

RFC 5246 August 2008 15

No

103.

TLS_GOSTR341094_WITH_28147_CNT_IMIT

0x0080

-

?

n

?

?

Draft Last Update: December 8, 2008 24

No

104.

TLS_GOSTR341001_WITH_28147_CNT_IMIT

0x0081

-

?

n

?

?

Draft Last Update: December 8, 2008 24

No

105.

TLS_GOSTR341094_WITH_NULL_GOSTR3411

0x0082

-

?

n

?

?

Draft Last Update: December 8, 2008 24

No

106.

TLS_GOSTR341001_WITH_NULL_GOSTR3411

0x0083

-

?

n

?

?

Draft Last Update: December 8, 2008 24

No

107.

TLS_RSA_WITH_CAMELLIA_256_CBC_SHA

0x0084

-

s

n

n

n

RFC 4132 July 2005 7

RFC 5932 June 2010 23

No

108.

TLS_DH_DSS_WITH_CAMELLIA_256_CBC_SHA

0x0085

-

?

n

n

n

RFC 4132 July 2005 7

RFC 5932 June 2010 23

No

109.

TLS_DH_RSA_WITH_CAMELLIA_256_CBC_SHA

0x0086

-

?

n

n

n

RFC 4132 July 2005 7

RFC 5932 June 2010 23

No

110.

TLS_DHE_DSS_WITH_CAMELLIA_256_CBC_SHA

0x0087

-

s

n

n

n

RFC 4132 July 2005 7

RFC 5932 June 2010 23

No

111.

TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA

0x0088

-

s

n

n

n

RFC 4132 July 2005 7

RFC 5932 June 2010 23

No

112.

TLS_DH_anon_WITH_CAMELLIA_256_CBC_SHA

0x0089

-

s

n

n

n

RFC 4132 July 2005 7

RFC 5932 June 2010 23

No

113.

TLS_PSK_WITH_RC4_128_SHA

0x008A

-

s

n

n

n

RFC 4279 December 2005 9

No

114.

TLS_PSK_WITH_3DES_EDE_CBC_SHA

0x008B

-

s

n

n

n

RFC 4279 December 2005 9

No

115.

TLS_PSK_WITH_AES_128_CBC_SHA

0x008C

-

s

n

n

n

RFC 4279 December 2005 9

No

116.

TLS_PSK_WITH_AES_256_CBC_SHA

0x008D

-

s

n

n

n

RFC 4279 December 2005 9

No

117.

TLS_DHE_PSK_WITH_RC4_128_SHA

0x008E

-

?

n

n

n

RFC 4279 December 2005 9

No

118.

TLS_DHE_PSK_WITH_3DES_EDE_CBC_SHA

0x008F

-

?

n

n

n

RFC 4279 December 2005 9

No

119.

TLS_DHE_PSK_WITH_AES_128_CBC_SHA

0x0090

-

?

n

n

n

RFC 4279 December 2005 9

No

120.

TLS_DHE_PSK_WITH_AES_256_CBC_SHA

0x0091

-

?

n

n

n

RFC 4279 December 2005 9

No

121.

TLS_RSA_PSK_WITH_RC4_128_SHA

0x0092

-

?

n

n

n

RFC 4279 December 2005 9

No

122.

TLS_RSA_PSK_WITH_3DES_EDE_CBC_SHA

0x0093

-

?

n

n

n

RFC 4279 December 2005 9

No

123.

TLS_RSA_PSK_WITH_AES_128_CBC_SHA

0x0094

-

?

n

n

n

RFC 4279 December 2005 9

No

124.

TLS_RSA_PSK_WITH_AES_256_CBC_SHA

0x0095

-

?

n

n

n

RFC 4279 December 2005 9

No

125.

TLS_RSA_WITH_SEED_CBC_SHA

0x0096

-

s

n

?

?

RFC 4162 August 2005 8

No

126.

TLS_DH_DSS_WITH_SEED_CBC_SHA

0x0097

-

?

n

?

?

RFC 4162 August 2005 8

No

127.

TLS_DH_RSA_WITH_SEED_CBC_SHA

0x0098

-

?

n

?

?

RFC 4162 August 2005 8

No

128.

TLS_DHE_DSS_WITH_SEED_CBC_SHA

0x0099

-

s

n

?

?

RFC 4162 August 2005 8

No

129.

TLS_DHE_RSA_WITH_SEED_CBC_SHA

0x009A

-

s

n

?

?

RFC 4162 August 2005 8

No

130.

TLS_DH_ ANON_WITH_SEED_CBC_SHA

0x009B

-

s

n

?

?

RFC 4162 August 2005 8

No

131.

TLS_RSA_WITH_AES_128_GCM_SHA256

0x009C

-

x

x

x

n

RFC 5288 August 2008 16

Yes

132.

TLS_RSA_WITH_AES_256_GCM_SHA384

0x009D

-

x

x

x

n

RFC 5288 August 2008 16

Yes

133.

TLS_DHE_RSA_WITH_AES_128_GCM_SHA256

0x009E

-

x

x

x

n

RFC 5288 August 2008 16

Yes

134.

TLS_DHE_RSA_WITH_AES_256_GCM_SHA384

0x009F

-

x

x

x

n

RFC 5288 August 2008 16

Yes

135.

TLS_DH_RSA_WITH_AES_128_GCM_SHA256

0x00A0

-

x

x

x

n

RFC 5288 August 2008 16

Yes

136.

TLS_DH_RSA_WITH_AES_256_GCM_SHA384

0x00A1

-

x

x

x

n

RFC 5288 August 2008 16

Yes

137.

TLS_DHE_DSS_WITH_AES_128_GCM_SHA256

0x00A2

-

x

x

x

n

RFC 5288 August 2008 16

Yes

138.

TLS_DHE_DSS_WITH_AES_256_GCM_SHA384

0x00A3

-

x

x

x

n

RFC 5288 August 2008 16

Yes

139.

TLS_DH_DSS_WITH_AES_128_GCM_SHA256

0x00A4

-

x

x

x

n

RFC 5288 August 2008 16

Yes

140.

TLS_DH_DSS_WITH_AES_256_GCM_SHA384

0x00A5

-

x

x

x

n

RFC 5288 August 2008 16

Yes

141.

TLS_DH_anon_WITH_AES_128_GCM_SHA256

0x00A6

-

x

x

x

n

RFC 5288 August 2008 16

No

142.

TLS_DH_anon_WITH_AES_256_GCM_SHA384

0x00A7

-

x

x

x

n

RFC 5288 August 2008 16

No

143.

TLS_PSK_WITH_AES_128_GCM_SHA256

0x00A8

-

x

x

x

n

RFC 5487 March 2009 20

No

144.

TLS_PSK_WITH_AES_256_GCM_SHA384

0x00A9

-

x

x

x

n

RFC 5487 March 2009 20

No

145.

TLS_DHE_PSK_WITH_AES_128_GCM_SHA256

0x00AA

-

x

x

x

n

RFC 5487 March 2009 20

No

146.

TLS_DHE_PSK_WITH_AES_256_GCM_SHA384

0x00AB

-

x

x

x

n

RFC 5487 March 2009 20

No

147.

TLS_RSA_PSK_WITH_AES_128_GCM_SHA256

0x00AC

-

x

x

x

n

RFC 5487 March 2009 20

No

148.

TLS_RSA_PSK_WITH_AES_256_GCM_SHA384

0x00AD

-

x

x

x

n

RFC 5487 March 2009 20

No

149.

TLS_PSK_WITH_AES_128_CBC_SHA256

0x00AE

-

?

n

n

n

RFC 5487 March 2009 20

No

150.

TLS_PSK_WITH_AES_256_CBC_SHA384

0x00AF

-

?

n

n

n

RFC 5487 March 2009 20

No

151.

TLS_PSK_WITH_NULL_SHA256

0x00B0

-

?

n

n

n

RFC 5487 March 2009 20

No

152.

TLS_PSK_WITH_NULL_SHA384

0x00B1

-

?

n

n

n

RFC 5487 March 2009 20

No

153.

TLS_DHE_PSK_WITH_AES_128_CBC_SHA256

0x00B2

-

?

n

n

n

RFC 5487 March 2009 20

No

154.

TLS_DHE_PSK_WITH_AES_256_CBC_SHA384

0x00B3

-

?

n

n

n

RFC 5487 March 2009 20

No

155.

TLS_DHE_PSK_WITH_NULL_SHA256

0x00B4

-

?

n

n

n

RFC 5487 March 2009 20

No

156.

TLS_DHE_PSK_WITH_NULL_SHA384

0x00B5

-

?

n

n

n

RFC 5487 March 2009 20

No

157.

TLS_RSA_PSK_WITH_AES_128_CBC_SHA256

0x00B6

-

?

n

n

n

RFC 5487 March 2009 20

No

158.

TLS_RSA_PSK_WITH_AES_256_CBC_SHA384

0x00B7

-

?

n

n

n

RFC 5487 March 2009 20

No

159.

TLS_RSA_PSK_WITH_NULL_SHA256

0x00B8

-

?

n

n

n

RFC 5487 March 2009 20

No

160.

TLS_RSA_PSK_WITH_NULL_SHA384

0x00B9

-

?

n

n

n

RFC 5487 March 2009 20

No

161.

TLS_RSA_WITH_CAMELLIA_128_CBC_SHA256

0x00BA

-

x

x

x

n

RFC 5932 June 2010 23

No

162.

TLS_DH_DSS_WITH_CAMELLIA_128_CBC_SHA256

0x00BB

-

x

x

x

n

RFC 5932 June 2010 23

No

163.

TLS_DH_RSA_WITH_CAMELLIA_128_CBC_SHA256

0x00BC

-

x

x

x

n

RFC 5932 June 2010 23

No

164.

TLS_DHE_DSS_WITH_CAMELLIA_128_CBC_SHA256

0x00BD

-

x

x

x

n

RFC 5932 June 2010 23

No

165.

TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA256

0x00BE

-

x

x

x

n

RFC 5932 June 2010 23

No

166.

TLS_DH_anon_WITH_CAMELLIA_128_CBC_SHA256

0x00BF

-

x

x

x

n

RFC 5932 June 2010 23

No

167.

TLS_RSA_WITH_CAMELLIA_256_CBC_SHA256

0x00C0

-

x

x

x

n

RFC 5932 June 2010 23

No

168.

TLS_DH_DSS_WITH_CAMELLIA_256_CBC_SHA256

0x00C1

-

x

x

x

n

RFC 5932 June 2010 23

No

169.

TLS_DH_RSA_WITH_CAMELLIA_256_CBC_SHA256

0x00C2

-

x

x

x

n

RFC 5932 June 2010 23

No

170.

TLS_DHE_DSS_WITH_CAMELLIA_256_CBC_SHA256

0x00C3

-

x

x

x

n

RFC 5932 June 2010 23

No

171.

TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA256

0x00C4

-

x

x

x

n

RFC 5932 June 2010 23

No

172.

TLS_DH_anon_WITH_CAMELLIA_256_CBC_SHA256

0x00C5

-

x

x

x

n

RFC 5932 June 2010 23

No

173.

TLS_RSA_WITH_HC_128_CBC_MD5

0x00FB

-

?

s

?

?

Unknown 28

No

174.

TLS_RSA_WITH_HC_128_CBC_SHA

0x00FC

-

?

s

?

?

Unknown 28

No

175.

TLS_RSA_WITH_RABBIT_CBC_SHA

0x00FD

-

?

s

?

?

Unknown 28

No

176.

TLS_ECDH_ECDSA_WITH_NULL_SHA

0xC001

-

s

n

n

n

RFC 4492 May 2006 12

No

177.

TLS_ECDH_ECDSA_WITH_RC4_128_SHA

0xC002

-

s

n

n

n

RFC 4492 May 2006 12

No

178.

TLS_ECDH_ECDSA_WITH_3DES_EDE_CBC_SHA

0xC003

-

s

n

n

n

RFC 4492 May 2006 12

Yes

179.

TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHA

0xC004

-

s

n

n

n

RFC 4492 May 2006 12

Yes

180.

TLS_ECDH_ECDSA_WITH_AES_256_CBC_SHA

0xC005

-

s

n

n

n

RFC 4492 May 2006 12

Yes

181.

TLS_ECDHE_ECDSA_WITH_NULL_SHA

0xC006

-

s

n

n

n

RFC 4492 May 2006 12

No

182.

TLS_ECDHE_ECDSA_WITH_RC4_128_SHA

0xC007

-

s

n

n

n

RFC 4492 May 2006 12

No

183.

TLS_ECDHE_ECDSA_WITH_3DES_EDE_CBC_SHA

0xC008

-

s

n

n

n

RFC 4492 May 2006 12

Yes

184.

TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA

0xC009

-

s

n

n

n

RFC 4492 May 2006 12

RFC 5430 March 2009 18

Yes

185.

TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA

0xC00A

-

s

n

n

n

RFC 4492 May 2006 12

RFC 5430 March 2009 18

Yes

186.

TLS_ECDH_RSA_WITH_NULL_SHA

0xC00B

-

s

n

n

n

RFC 4492 May 2006 12

No

187.

TLS_ECDH_RSA_WITH_RC4_128_SHA

0xC00C

-

s

n

n

n

RFC 4492 May 2006 12

No

188.

TLS_ECDH_RSA_WITH_3DES_EDE_CBC_SHA

0xC00D

-

s

n

n

n

RFC 4492 May 2006 12

Yes

189.

TLS_ECDH_RSA_WITH_AES_128_CBC_SHA

0xC00E

-

s

n

n

n

RFC 4492 May 2006 12

Yes

190.

TLS_ECDH_RSA_WITH_AES_256_CBC_SHA

0xC00F

-

s

n

n

n

RFC 4492 May 2006 12

Yes

191.

TLS_ECDHE_RSA_WITH_NULL_SHA

0xC010

-

s

n

n

n

RFC 4492 May 2006 12

No

192.

TLS_ECDHE_RSA_WITH_RC4_128_SHA

0xC011

-

s

n

n

n

RFC 4492 May 2006 12

No

193.

TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA

0xC012

-

s

n

n

n

RFC 4492 May 2006 12

Yes

194.

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA

0xC013

-

s

n

n

n

RFC 4492 May 2006 12

Yes

195.

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA

0xC014

-

s

n

n

n

RFC 4492 May 2006 12

Yes

196.

TLS_ECDH_anon_WITH_NULL_SHA

0xC015

-

s

n

n

n

RFC 4492 May 2006 12

No

197.

TLS_ECDH_anon_WITH_RC4_128_SHA

0xC016

-

s

n

n

n

RFC 4492 May 2006 12

No

198.

TLS_ECDH_anon_WITH_3DES_EDE_CBC_SHA

0xC017

-

s

n

n

n

RFC 4492 May 2006 12

No

199.

TLS_ECDH_anon_WITH_AES_128_CBC_SHA

0xC018

-

s

n

n

n

RFC 4492 May 2006 12

No

200.

TLS_ECDH_anon_WITH_AES_256_CBC_SHA

0xC019

-

s

n

n

n

RFC 4492 May 2006 12

No

201.

TLS_SRP_SHA_WITH_3DES_EDE_CBC_SHA

0xC01A

-

?

n

n

n ?

RFC 5054 November 2007 14

No

202.

TLS_SRP_SHA_RSA_WITH_3DES_EDE_CBC_SHA

0xC01B

-

?

n

n

n ?

RFC 5054 November 2007 14

No

203.

TLS_SRP_SHA_DSS_WITH_3DES_EDE_CBC_SHA

0xC01C

-

?

n

n

n ?

RFC 5054 November 2007 14

No

204.

TLS_SRP_SHA_WITH_AES_128_CBC_SHA

0xC01D

-

?

n

n

n ?

RFC 5054 November 2007 14

No

205.

TLS_SRP_SHA_RSA_WITH_AES_128_CBC_SHA

0xC01E

-

?

n

n

n ?

RFC 5054 November 2007 14

No

206.

TLS_SRP_SHA_DSS_WITH_AES_128_CBC_SHA

0xC01F

-

?

n

n

n ?

RFC 5054 November 2007 14

No

207.

TLS_SRP_SHA_WITH_AES_256_CBC_SHA

0xC020

-

?

n

n

n ?

RFC 5054 November 2007 14

No

208.

TLS_SRP_SHA_RSA_WITH_AES_256_CBC_SHA

0xC021

-

?

n

n

n ?

RFC 5054 November 2007 14

No

209.

TLS_SRP_SHA_DSS_WITH_AES_256_CBC_SHA

0xC022

-

?

n

n

n ?

RFC 5054 November 2007 14

No

210.

TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256

0xC023

-

x

x

x

n

RFC 5288 August 2008 17

RFC 5430 March 2009 18

Yes

211.

TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384

0xC024

-

x

x

x

n

RFC 5288 August 2008 17

RFC 5430 March 2009 18

Yes

212.

TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHA256

0xC025

-

x

x

x

n

RFC 5288 August 2008 17

Yes

213.

TLS_ECDH_ECDSA_WITH_AES_256_CBC_SHA384

0xC026

-

x

x

x

n

RFC 5288 August 2008 17

Yes

214.

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256

0xC027

-

x

x

x

n

RFC 5288 August 2008 17

Yes

215.

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384

0xC028

-

x

x

x

n

RFC 5288 August 2008 17

Yes

216.

TLS_ECDH_RSA_WITH_AES_128_CBC_SHA256

0xC029

-

x

x

x

n

RFC 5288 August 2008 17

Yes

217.

TLS_ECDH_RSA_WITH_AES_256_CBC_SHA384

0xC02A

-

x

x

x

n

RFC 5288 August 2008 17

Yes

218.

TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256

0xC02B

-

x

x

x

n

RFC 5288 August 2008 17

RFC 5430 March 2009 18

Yes

219.

TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384

0xC02C

-

x

x

x

n

RFC 5288 August 2008 17

RFC 5430 March 2009 18

Yes

220.

TLS_ECDH_ECDSA_WITH_AES_128_GCM_SHA256

0xC02D

-

x

x

x

n

RFC 5288 August 2008 17

Yes

221.

TLS_ECDH_ECDSA_WITH_AES_256_GCM_SHA384

0xC02E

-

x

x

x

n

RFC 5288 August 2008 17

Yes

222.

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256

0xC02F

-

x

x

x

n

RFC 5288 August 2008 17

Yes

223.

TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384

0xC030

-

x

x

x

n

RFC 5288 August 2008 17

Yes

224.

TLS_ECDH_RSA_WITH_AES_128_GCM_SHA256

0xC031

-

x

x

x

n

RFC 5288 August 2008 17

Yes

225.

TLS_ECDH_RSA_WITH_AES_256_GCM_SHA384

0xC032

-

x

x

x

n

RFC 5288 August 2008 17

Yes

226.

TLS_ECDHE_PSK_WITH_RC4_128_SHA

0xC033

-

?

n

n

n

RFC 5489 March 2009 21

No

227.

TLS_ECDHE_PSK_WITH_3DES_EDE_CBC_SHA

0xC034

-

?

n

n

n

RFC 5489 March 2009 21

No

228.

TLS_ECDHE_PSK_WITH_AES_128_CBC_SHA

0xC035

-

?

n

n

n

RFC 5489 March 2009 21

No

229.

TLS_ECDHE_PSK_WITH_AES_256_CBC_SHA

0xC036

-

?

n

n

n

RFC 5489 March 2009 21

No

230.

TLS_ECDHE_PSK_WITH_AES_128_CBC_SHA256

0xC037

-

?

n

n

n

RFC 5489 March 2009 21

No

231.

TLS_ECDHE_PSK_WITH_AES_256_CBC_SHA384

0xC038

-

?

n

n

n

RFC 5489 March 2009 21

No

232.

TLS_ECDHE_PSK_WITH_NULL_SHA

0xC039

-

?

n

n

n

RFC 5489 March 2009 21

No

233.

TLS_ECDHE_PSK_WITH_NULL_SHA256

0xC03A

-

?

n

n

n

RFC 5489 March 2009 21

No

234.

TLS_ECDHE_PSK_WITH_NULL_SHA384

0xC03B

-

?

n

n

n

RFC 5489 March 2009 21

No

235.

SSL_RSA_FIPS_WITH_DES_CBC_SHA

0xFEFE

(0xFFE1)

-

n

s

-

-

FIPS SSL CipherSuites 25

No

236.

SSL_RSA_FIPS_WITH_3DES_EDE_CBC_SHA

0xFEFF

(0xFFE0)

-

n

s

-

-

FIPS SSL CipherSuites 25

No

237.

TLS_EMPTY_RENEGOTIATION_INFO_SCSV **

0x00FF

s

s

n

n

n

RFC 5746 February 2010 22

-

* Applicable only for TLS 1.0, TLS 1.1 and TLS 1.2
** Not a cipher suite

2. Meaning

Table 2

Value

Meaning

-

not applicable

s

not “native”, seen implemented

n

“native” cipher suite

c

special case possible usage

x

usage disallowed

depr

deprecated

disc

discouraged

?

unknown status

 

The situation of some ADH ciphers is a little ambiguous, for example TLS 1.0 RFC 2246 deprecates some ADH cipher suites.
But RFC 3268 adds AES ADH suites to TLS 1.0 which are not considered deprecated.
RFC 4132 adds (ADH) Camellia cipher suites to TLS 1.0, but makes no mention about the ADH ones.
Sames with RFC 4162 which adds SEED cipher suites to TLS 1.0.
TLS 1.1 RFC 4346 lists some ADH cipher suites as deprecated, however makes no mention about AES ADH ones, just lists them.
RFC 4492 adds ECC ADH cipher suites, but does not particularly make any reference about them.
TLS 1.2 RFC 5246 finally lists the AES ADH cipher along with the others, labeling the mode as “of limited use”, however the status of the ECC ADH ones is not clear(these are not listed in this RFC).
Furthermore, RFC 5288 adds some AES-GCM ADH cipher suites, but does not particularly make any reference about them.
Also RFC 5932 adds new Camellia ADH cipher suites(listing the “old” ones too), but does not particularly make any reference about them.
The Rabbit and CH-128 based cipher suites were not associated with any draft or RFC, such a document being not found, instead they were linked to CyaSSL source code file mentioning them.

3. Extra Cipher Suites

Apart from the cipher suites listed above, IANA’s Transport Layer Security (TLS) Parameters, section TLS Cipher Suite Registry, mentions some reserved values. Some of these values are already present in the above table. Possible other values can be seen bellow. Probably some suites numbers were not registered or have been modified, or are quite meaningless as writing.

Table 3, ECC Cipher Suites for TLS
draft-03 gives a hint that some values (47-4C) correspond to cipher suites which are known to have been implemented.
http://tools.ietf.org/html/draft-ietf-tls-ecc-00#section-10
http://tools.ietf.org/html/draft-ietf-tls-ecc-01#section-5
http://tools.ietf.org/html/draft-ietf-tls-ecc-03

Cipher Suite

Hex Value

TLS_ECDH_ECDSA_WITH_NULL_SHA

0x0047

TLS_ECDH_ECDSA_WITH_RC4_128_SHA

0x0048

TLS_ECDH_ECDSA_WITH_DES_CBC_SHA

0x0049

TLS_ECDH_ECDSA_WITH_3DES_EDE_CBC_SHA

0x004A

TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHA

0x004B

TLS_ECDH_ECDSA_WITH_AES_256_CBC_SHA

0x004C

TLS_ECDH_ECDSA_EXPORT_WITH_RC4_40_SHA

0x004B

TLS_ECDH_ECDSA_EXPORT_WITH_RC4_56_SHA

0x004C

TLS_ECDH_RSA_WITH_NULL_SHA

0x004D

TLS_ECDH_RSA_WITH_RC4_128_SHA

0x004E

TLS_ECDH_RSA_WITH_DES_CBC_SHA

0x004F

TLS_ECDH_RSA_WITH_3DES_EDE_CBC_SHA

0x0050

TLS_ECDH_RSA_WITH_AES_128_CBC_SHA

0x0051

TLS_ECDH_RSA_WITH_AES_256_CBC_SHA

0x0052

TLS_ECDH_RSA_EXPORT_WITH_RC4_40_SHA

0x0053

TLS_ECDH_RSA_EXPORT_WITH_RC4_56_SHA

0x0054

TLS_ECDH_anon_NULL_WITH_SHA

0x0055

TLS_ECDH_anon_WITH_RC4_128_SHA

0x0056

TLS_ECDH_anon_WITH_DES_CBC_SHA

0x0057

TLS_ECDH_anon_WITH_3DES_EDE_CBC_SHA

0x0058

TLS_ECDH_anon_EXPORT_WITH_DES40_CBC_SHA

0x0059

TLS_ECDH_anon_EXPORT_WITH_RC4_40_SHA

0x005A

TLS_ECDH_anon_EXPORT_WITH_DES40_CBC_SHA

0x005B

TLS_ECDH_anon_EXPORT_WITH_RC4_40_SHA

0x005C

 

Table 4, Using SRP for TLS Authentication
http://tools.ietf.org/html/draft-ietf-tls-srp-02

Cipher Suite

Hex Value

TLS_SRP_SHA_WITH_3DES_EDE_CBC_SHA

0x0050

TLS_SRP_SHA_RSA_WITH_3DES_EDE_CBC_SHA

0x0051

TLS_SRP_SHA_DSS_WITH_3DES_EDE_CBC_SHA

0x0052

TLS_SRP_SHA_WITH_AES_128_CBC_SHA

0x0053

TLS_SRP_SHA_RSA_WITH_AES_128_CBC_SHA

0x0054

TLS_SRP_SHA_DSS_WITH_AES_128_CBC_SHA

0x0055

TLS_SRP_SHA_WITH_AES_256_CBC_SHA

0x0056

TLS_SRP_SHA_RSA_WITH_AES_256_CBC_SHA

0x0057

LS_SRP_SHA_DSS_WITH_AES_256_CBC_SHA

0x0058

 

Table 5, Addition of MISTY1 to TLS
http://tools.ietf.org/id/draft-ietf-tls-misty1-01.txt

Cipher Suite

Hex Value

TLS_RSA_WITH_MISTY1_CBC_SHA

0x003B

TLS_DH_DSS_WITH_MISTY1_CBC_SHA

0x003C

TLS_DH_RSA_WITH_MISTY1_CBC_SHA

0x003D

TLS_DHE_DSS_WITH_MISTY1_CBC_SHA

0x003E

TLS_DHE_RSA_WITH_MISTY1_CBC_SHA

0x003F

TLS_DH_anon_WITH_MISTY1_CBC_SHA

0x004A

 

Table 5, TLS Extension for SEED and HAS-160
http://tools.ietf.org/html/draft-ietf-tls-seedhas-00

Cipher Suite

Hex Value

TLS_RSA_WITH_SEED_CBC_MD5

0x002C

TLS_RSA_WITH_SEED_CBC_SHA

0x002D

TLS_RSA_WITH_SEED_CBC_HAS160

0x002E

 

Table 6, Kerberos Cipher Suites in Transport Layer Security (TLS)
http://tools.ietf.org/html/draft-ietf-tls-kerb-01

Cipher Suite

Hex Value

TLS_KRB5_WITH_3DES_EDE_CBC_SHA

0x0070

TLS_KRB5_WITH_3DES_EDE_CBC_MD5

0x0071

TLS_KRB5_WITH_RC4_128_SHA

0x0072

TLS_KRB5_WITH_RC4_128_MD5

0x0073

TLS_KRB5_WITH_DES_CBC_SHA

0x0074

TLS_KRB5_WITH_DES_CBC_MD5

0x0075

TLS_KRB5_WITH_AES_128_CBC_SHA

0x0076

TLS_KRB5_WITH_AES_256_CBC_SHA

0x0077

TLS_KRB5_WITH_NULL_SHA

0x0078

TLS_KRB5_WITH_NULL_MD5

0x0079

 

4. References

1. Draft, SSL 0.2 Protocol Specification
http://www.mozilla.org/projects/security/pki/nss/ssl/draft02.html

2. draft-freier-ssl-version3-02.txt,  The SSL Protocol Version 3.0
http://www.mozilla.org/projects/security/pki/nss/ssl/draft302.txt

3. The TLS Protocol Version 1.0
http://www.ietf.org/rfc/rfc2246.txt

4.  Addition of Kerberos Cipher Suites to Transport Layer Security (TLS)
http://www.ietf.org/rfc/rfc2712.txt

5.  draft-ietf-tls-56-bit-ciphersuites-01.txt 56-bit, Export Cipher Suites For TLS
http://tools.ietf.org/html/draft-ietf-tls-56-bit-ciphersuites-01

6. Advanced Encryption Standard (AES) Ciphersuites for Transport Layer Security (TLS)
http://www.ietf.org/rfc/rfc3268.txt

7.  Addition of Camellia Cipher Suites to Transport Layer Security (TLS)
http://www.ietf.org/rfc/rfc4132.txt

8.  Addition of SEED Cipher Suites to Transport Layer Security (TLS)
http://www.ietf.org/rfc/rfc4162.txt

9. Pre-Shared Key Ciphersuites for Transport Layer Security (TLS)
http://www.ietf.org/rfc/rfc4279.txt

10. The Transport Layer Security (TLS) Protocol Version 1.1
http://www.ietf.org/rfc/rfc4346.txt

12. Elliptic Curve Cryptography (ECC) Cipher Suites for Transport Layer Security (TLS)
http://www.ietf.org/rfc/rfc4492.txt

13. Pre-Shared Key (PSK) Ciphersuites with NULL Encryption for Transport Layer Security (TLS)
http://www.ietf.org/rfc/rfc4785.txt

14. Using the Secure Remote Password (SRP) Protocol for TLS Authentication
http://www.ietf.org/rfc/rfc5054.txt

15. The Transport Layer Security (TLS) Protocol Version 1.2
http://www.ietf.org/rfc/rfc5246.txt

16. AES Galois Counter Mode (GCM) Cipher Suites for TLS
http://www.ietf.org/rfc/rfc5288.txt

17. TLS Elliptic Curve Cipher Suites with SHA-256/384 and AES Galois Counter Mode (GCM)
http://www.ietf.org/rfc/rfc5289.txt

18. Suite B Profile for Transport Layer Security (TLS)
http://www.ietf.org/rfc/rfc5430.txt

19. DES and IDEA Cipher Suites for Transport Layer Security (TLS)
http://www.ietf.org/rfc/rfc5469.txt

20. Pre-Shared Key Cipher Suites for TLS with SHA-256/384 and AES Galois Counter Mode
http://www.ietf.org/rfc/rfc5487.txt

21. ECDHE_PSK Cipher Suites for Transport Layer Security (TLS)
http://www.ietf.org/rfc/rfc5489.txt

22. Transport Layer Security (TLS) Renegotiation Indication Extension
http://www.ietf.org/rfc/rfc5746.txt

23. Camellia Cipher Suites for TLS
http://www.ietf.org/rfc/rfc5932.txt

24. draft-chudov-cryptopro-cptls-04 GOST 28147-89 Cipher Suites for Transport Layer Security (TLS)
http://tools.ietf.org/html/draft-chudov-cryptopro-cptls-04

25. FIPS SSL CipherSuites
http://www.mozilla.org/projects/security/pki/nss/ssl/fips-ssl-ciphersuites.html

26. FIPS PUB 140-2
http://csrc.nist.gov/publications/fips/fips140-2/fips1402.pdf
http://csrc.nist.gov/publications/fips/fips140-2/fips1402annexa.pdf
http://csrc.nist.gov/publications/fips/fips140-2/fips1402annexb.pdf
http://csrc.nist.gov/publications/fips/fips140-2/fips1402annexc.pdf
http://csrc.nist.gov/publications/fips/fips140-2/fips1402annexd.pdf

27. Guidelines for the Selection and Use of Transport Layer Security (TLS) Implementations
http://csrc.nist.gov/publications/nistpubs/800-52/SP800-52.pdf

28. CyaSSL source code
https://github.com/cyassl/cyassl/blob/master/include/cyassl_int.h  

29. NTRU Cipher Suites for TLS

http://tools.ietf.org/html/draft-ietf-tls-ntru-00

30. Security Innovation CyaSSL+NTRU
http://securityinnovation.com/products/encryption/cyassl.shtml

31. CyaSSL Extensions Reference
http://www.yassl.com/yaSSL/Docs_CyaSSL_Extensions_Reference.html

5. Extra References

·         Transport Layer Security (TLS) Parameters, http://www.iana.org/assignments/tls-parameters/tls-parameters.xml

·         SSL/TLS Timeline, http://www.carbonwind.net/blog/post/A-quickie-for-a-Friday-e28093-a-SSLTLS-timeline.aspx

·         SSL & TLS Specifications, http://www7b.biglobe.ne.jp/~k-west/SSLandTLS/index-e.html