diff options
author | Patrick Monnerat <patrick@monnerat.net> | 2017-01-06 17:43:57 +0100 |
---|---|---|
committer | Patrick Monnerat <patrick@monnerat.net> | 2017-01-06 17:43:57 +0100 |
commit | 5d7a7fcdcbe2850abe8a3d1403a989a355ed4827 (patch) | |
tree | 0c14110b0bf794530c0015963610e460b3989eea | |
parent | feca30419af6c295c698083c4e3396699c3ed7dd (diff) |
CIPHERS.md: document GSKit ciphers
-rw-r--r-- | docs/CIPHERS.md | 64 |
1 files changed, 64 insertions, 0 deletions
diff --git a/docs/CIPHERS.md b/docs/CIPHERS.md index 3ef4a7e47..9e8482098 100644 --- a/docs/CIPHERS.md +++ b/docs/CIPHERS.md @@ -247,3 +247,67 @@ libcurl was built to use. This is an attempt to list known cipher names. `ecdhe_rsa_chacha20_poly1305_sha_256` `ecdhe_ecdsa_chacha20_poly1305_sha_256` `dhe_rsa_chacha20_poly1305_sha_256` + +## GSKit + +Ciphers are internally defined as numeric codes (http://www.ibm.com/support/knowledgecenter/ssw_ibm_i_73/apis/gsk_attribute_set_buffer.htm), +but libcurl maps them to the following case-insensitive names. + +### SSL2 cipher suites (insecure: disabled by default) + +`rc2-md5` +`rc4-md5` +`exp-rc2-md5` +`exp-rc4-md5` +`des-cbc-md5` +`des-cbc3-md5` + +### SSL3 cipher suites + +`null-md5` +`null-sha` +`rc4-md5` +`rc4-sha` +`exp-rc2-cbc-md5` +`exp-rc4-md5` +`exp-des-cbc-sha` +`des-cbc3-sha` + +### TLS v1.0 cipher suites + +`null-md5` +`null-sha` +`rc4-md5` +`rc4-sha` +`exp-rc2-cbc-md5` +`exp-rc4-md5` +`exp-des-cbc-sha` +`des-cbc3-sha` +`aes128-sha` +`aes256-sha` + +### TLS v1.1 cipher suites + +`null-md5` +`null-sha` +`rc4-md5` +`rc4-sha` +`exp-des-cbc-sha` +`des-cbc3-sha` +`aes128-sha` +`aes256-sha` + +### TLS v1.2 cipher suites + +`null-md5` +`null-sha` +`null-sha256` +`rc4-md5` +`rc4-sha` +`des-cbc3-sha` +`aes128-sha` +`aes256-sha` +`aes128-sha256` +`aes256-sha256` +`aes128-gcm-sha256` +`aes256-gcm-sha384` |