Legacy mode cipher suites for TLS

Table : OpenSSL, Apache, and Curl cipher suites
Cipher suite hex code Cipher suite name
[0xc024] ECDHE-ECDSA-AES256-SHA384
[0xc02c] ECDHE-ECDSA-AES256-GCM-SHA384
[0xc014] ECDHE-RSA-AES256-SHA
[0xc028] ECDHE-RSA-AES256-SHA384
[0xc030] ECDHE-RSA-AES256-GCM-SHA384
[0xc026] ECDH-ECDSA-AES256-SHA384
[0xc02e] ECDH-ECDSA-AES256-GCM-SHA384
[0xc02a] ECDH-RSA-AES256-SHA384
[0xc032] ECDH-RSA-AES256-GCM-SHA384
[0x6b] DHE-RSA-AES256-SHA256
[0x9f] DHE-RSA-AES256-GCM-SHA384
[0x3d] AES256-SHA256
[0x9d] AES256-GCM-SHA384
[0xc023] ECDHE-ECDSA-AES128-SHA256
[0xc02b] ECDHE-ECDSA-AES128-GCM-SHA256
[0xc027] ECDHE-RSA-AES128-SHA256
[0xc02f] ECDHE-RSA-AES128-GCM-SHA256
[0x67] DHE-RSA-AES128-SHA256
[0xc013] ECDHE-RSA-AES128-SHA
[0xc025] ECDH-ECDSA-AES128-SHA256
[0x9e] DHE-RSA-AES128-GCM-SHA256
[0xc02d] ECDH-ECDSA-AES128-GCM-SHA256
[0xc029] ECDH-RSA-AES128-SHA256
[0xc031] ECDH-RSA-AES128-GCM-SHA256
[0x3c] AES128-SHA256
[0x9c] AES128-GCM-SHA256
[0xa3] DHE-DSS-AES256-GCM-SHA384
[0xa2] DHE-DSS-AES128-GCM-SHA256
[0x39] DHE-RSA-AES256-SHA
[0x33] DHE-RSA-AES128-SHA
[0x35] AES256-SHA
[0x2f] AES128-SHA
[0xc00e] ECDH-RSA-AES128-SHA
[0xc00a] ECDHE-ECDSA-AES256-SHA
[0xc005] ECDH-ECDSA-AES256-SHA
[0xc009] ECDHE-ECDSA-AES128-SHA
[0xc004] ECDH-ECDSA-AES128-SHA
[0xc003] ECDH-ECDSA-DES-CBC3-SHA
[0xc008] ECDHE-ECDSA-DES-CBC3-SHA
[0xc012] ECDHE-RSA-DES-CBC3-SHA
[0xc00d] ECDH-RSA-DES-CBC3-SHA
Table 32037: Java cipher suites
Cipher suite hex code Cipher suite name
[0xc024] TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384
[0xc02c] TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384
[0xc014] TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
[0xc028] TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384
[0xc030] TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
[0xc026] TLS_ECDH_ECDSA_WITH_AES_256_CBC_SHA384
[0xc02e] TLS_ECDH_ECDSA_WITH_AES_256_GCM_SHA384
[0xc02a] TLS_ECDH_RSA_WITH_AES_256_CBC_SHA384
[0xc032] TLS_ECDH_RSA_WITH_AES_256_GCM_SHA384
[0x6b] TLS_DHE_RSA_WITH_AES_256_CBC_SHA256
[0x9f] TLS_DHE_RSA_WITH_AES_256_GCM_SHA384
[0x3d] TLS_RSA_WITH_AES_256_CBC_SHA256
[0x9d] TLS_RSA_WITH_AES_256_GCM_SHA384
[0xc023] TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256
[0xc02b] TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256
[0xc027] TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256
[0xc02f] TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
[0x67] TLS_DHE_RSA_WITH_AES_128_CBC_SHA256
[0xc013] TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
[0xc025] TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHA256
[0x9e] TLS_DHE_RSA_WITH_AES_128_GCM_SHA256
[0xc02d] TLS_ECDH_ECDSA_WITH_AES_128_GCM_SHA256
[0xc029] TLS_ECDH_RSA_WITH_AES_128_CBC_SHA256
[0xc031] TLS_ECDH_RSA_WITH_AES_128_GCM_SHA256
[0x3c] TLS_RSA_WITH_AES_128_CBC_SHA256
[0x9c] TLS_RSA_WITH_AES_128_GCM_SHA256
[0xa2] TLS_DHE_DSS_WITH_AES_128_GCM_SHA256
[0xa3] TLS_DHE_DSS_WITH_AES_256_GCM_SHA384
[0x33] TLS_DHE_RSA_WITH_AES_128_CBC_SHA
[0x35] TLS_RSA_WITH_AES_256_CBC_SHA
[0x2f] TLS_RSA_WITH_AES_128_CBC_SHA
[0x39] TLS_DHE_RSA_WITH_AES_256_CBC_SHA
[0xc00e] TLS_ECDH_RSA_WITH_AES_128_CBC_SHA
[0xc009] TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA
[0xc004] TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHA
[0x40] TLS_DHE_DSS_WITH_AES_128_CBC_SHA256
[0xc005] TLS_ECDH_ECDSA_WITH_AES_256_CBC_SHA
[0x32] TLS_DHE_DSS_WITH_AES_128_CBC_SHA
[0xc00f] TLS_ECDH_RSA_WITH_AES_256_CBC_SHA
[0x6a] TLS_DHE_DSS_WITH_AES_256_CBC_SHA256
[0xc00a] TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA
[0x38] TLS_DHE_DSS_WITH_AES_256_CBC_SHA
Not applicable SSL_RSA_WITH_3DES_EDE_CBC_SHA
Not applicable SSL_DHE_RSA_WITH_3DES_EDE_CBC_SHA
Not applicable SSL_DHE_DSS_WITH_3DES_EDE_CBC_SHA
Table 42138: RabbitMQ cipher suites
Cipher suite hex code Cipher suite name
[0xc024] ecdhe_ecdsa,aes_256_cbc,sha384,sha384
[0xc014] ecdhe_rsa,aes_256_cbc,sha
[0xc028] ecdhe_rsa,aes_256_cbc,sha384,sha384
[0xc026] ecdh_ecdsa,aes_256_cbc,sha384,sha384
[0xc02a] ecdh_rsa,aes_256_cbc,sha384,sha384
[0xc02c] ecdhe_ecdsa,aes_256_gcm,null,sha384
[0xc030] ecdhe_rsa,aes_256_gcm,null,sha384
[0xc02e] ecdh_ecdsa,aes_256_gcm,null,sha384
[0xc032] ecdh_rsa,aes_256_gcm,null,sha384
[0x6b] dhe_rsa,aes_256_cbc,sha256
[0x9f] dhe_rsa,aes_256_gcm,null,sha384
[0x3d] rsa,aes_256_cbc,sha256
[0x9d] rsa,aes_256_gcm,null,sha384
[0xc023] ecdhe_ecdsa,aes_128_cbc,sha256,sha256
[0xc02b] ecdhe_ecdsa,aes_128_gcm,null,sha256
[0xc027] ecdhe_rsa,aes_128_cbc,sha256,sha256
[0xc02f] ecdhe_rsa,aes_128_gcm,null,sha256
[0x67] dhe_rsa,aes_128_cbc,sha256
[0xc013] ecdhe_rsa,aes_128_cbc,sha
[0xc025] ecdh_ecdsa,aes_128_cbc,sha256,sha256
[0x9e] dhe_rsa,aes_128_gcm,null,sha256
[0xc02d] ecdh_ecdsa,aes_128_gcm,null,sha256
[0xc029] ecdh_rsa,aes_128_cbc,sha256,sha256
[0xc031] ecdh_rsa,aes_128_gcm,null,sha256
[0x3c] rsa,aes_128_cbc,sha256
[0x9c] rsa,aes_128_gcm,null,sha256
[0xa3] dhe_dss,aes_256_gcm,null,sha384
[0xa2] dhe_dss,aes_128_gcm,null,sha256
[0x39] dhe_rsa,aes_256_cbc,sha
[0x33] dhe_rsa,aes_128_cbc,sha
[0x35] rsa,aes_256_cbc,sha
[0x2f] rsa,aes_128_cbc,sha
[0xc00e] ecdh_rsa,aes_128_cbc,sha
[0xc00a] ecdhe_ecdsa,aes_256_cbc,sha
[0xc005] ecdh_ecdsa,aes_256_cbc,sha
[0xc00f] ecdh_rsa,aes_256_cbc,sha
[0xc009] ecdhe_ecdsa,aes_128_cbc,sha
[0xc004] ecdh_ecdsa,aes_128_cbc,sha
[0xc003] ecdh_ecdsa,'3des_ede_cbc',sha
[0xc008] ecdhe_ecdsa,'3des_ede_cbc',sha
[0xc012] ecdhe_rsa,'3des_ede_cbc',sha
[0xc00d] ecdh_rsa,'3des_ede_cbc',sha
Table 522: Firefox cipher suites
Cipher suite hex code Cipher suite name
[0xc02c] security.ssl3.ecdhe_ecdsa_aes_256_gcm_sha384
[0xc014] security.ssl3.ecdhe_rsa_aes_256_sha
[0xc030] security.ssl3.ecdhe_rsa_aes_256_gcm_sha384
[0xc02b] security.ssl3.ecdhe_ecdsa_aes_128_gcm_sha256
[0xc02f] security.ssl3.ecdhe_rsa_aes_128_gcm_sha256
[0xc013] security.ssl3.ecdhe_rsa_aes_128_sha
[0x39] security.ssl3.dhe_rsa_aes_256_sha
[0x33] security.ssl3.dhe_rsa_aes_128_sha
[0x35] security.ssl3.rsa_aes_256_sha
[0x2f] security.ssl3.rsa_aes_128_sha
[0xcc14] security.ssl3.ecdhe_ecdsa_chacha20_poly1305_sha256
[0xcc13] security.ssl3.ecdhe_rsa_chacha20_poly1305_sha256
[0xc023] security.ssl3.ecdhe_ecdsa_aes_128_sha
[0xc00a] security.ssl3.ecdhe_ecdsa_aes_256_sha
Table 62339: Digital signature algorithms
Algorithm
SHA256WITHRSA
SHA384WITHRSA
SHA512WITHRSA
SHA256WITHECDSA
SHA384WITHECDSA
SHA512WITHECDSA
NONEWITHDSA
SHA384WITHDSA
SHA256WITHDSA
SHA224WITHECDSA
SHA512WITHDSA
NONEWITHECDSA
MD5WITHRSA
SHA224WITHRSA
SHA1WITHDSA
SHA224WITHDSA
SHA1WITHECDSA
SHA1WITHRSA

* The appliance certificate must have a SHA-256 or SHA-384 digital signature algorithm. External server or managed device certificates with SHA1 digital signatures are supported. Hewlett Packard Enterprise recommends that you regenerate the external server or managed device certificates with a stronger digital signature, such as SHA-256 or above.

Table 740: Public key algorithms
Algorithm
RSA:2048
RSA:3072
RSA:4096
RSA:1024
ECDSA:256
ECDSA:384
ECDSA:521
DSA:1024
ECDH:384
ECDH:256
ECDH:521
DH:2048
DH:3072
ECCDH:256
ECCDH:384
ECCDH:521
ECMQV:256
ECMQV:384
ECMQV:521
EC:224
EC:256
EC:384
EC:521
ECC:256
ECC:384
ECC:521
ECC:160
EC:192
EC:160