| SSL to OS/ application Handshake Simulation | |||
| Android 2.3.7 No SNI 2 | TLS 1.0 |
TLS_RSA_WITH_RC4_128_MD5 (0x4)
No FS
RC4
|
128 |
| Android 4.0.4 | TLS 1.0 |
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (0xc014)
FS
|
256 |
| Android 4.1.1 | TLS 1.0 |
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (0xc014)
FS
|
256 |
| Android 4.2.2 | TLS 1.0 |
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (0xc014)
FS
|
256 |
| Android 4.3 | TLS 1.0 |
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (0xc014)
FS
|
256 |
| Android 4.4.2 | TLS 1.2 |
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (0xc030)
FS
|
256 |
| BingBot Dec 2013 No SNI 2 | TLS 1.0 |
TLS_RSA_WITH_AES_128_CBC_SHA (0x2f)
No FS
|
128 |
| BingPreview Jun 2014 | TLS 1.0 |
TLS_DHE_RSA_WITH_AES_256_CBC_SHA (0x39)
FS
|
256 |
| Chrome 36 / Win 7 R | TLS 1.2 |
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xc02f)
FS
|
128 |
| Firefox 24.2.0 ESR / Win 7 | TLS 1.0 |
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (0xc014)
FS
|
256 |
| Firefox 31 / OS X R | TLS 1.2 |
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xc02f)
FS
|
128 |
| Googlebot Jun 2014 | TLS 1.0 |
TLS_ECDHE_RSA_WITH_RC4_128_SHA (0xc011)
FS
RC4
|
128 |
| IE 6 / XP No FS 1 No SNI 2 | SSL 3 |
TLS_RSA_WITH_RC4_128_MD5 (0x4)
No FS
RC4
|
128 |
| IE 7 / Vista | TLS 1.0 |
TLS_RSA_WITH_AES_128_CBC_SHA (0x2f)
No FS
|
128 |
| IE 8 / XP No FS 1 No SNI 2 | TLS 1.0 |
TLS_RSA_WITH_RC4_128_MD5 (0x4)
No FS
RC4
|
128 |
| IE 8-10 / Win 7 R | TLS 1.0 |
TLS_RSA_WITH_AES_128_CBC_SHA (0x2f)
No FS
|
128 |
| IE 11 / Win 7 R | TLS 1.2 |
TLS_RSA_WITH_AES_128_CBC_SHA256 (0x3c)
No FS
|
128 |
| IE 11 / Win 8.1 R | TLS 1.2 |
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384 (0xc028)
FS
|
256 |
| IE Mobile 10 / Win Phone 8.0 | TLS 1.0 |
TLS_RSA_WITH_AES_128_CBC_SHA (0x2f)
No FS
|
128 |
| IE Mobile 11 / Win Phone 8.1 | TLS 1.2 |
TLS_RSA_WITH_AES_128_CBC_SHA256 (0x3c)
No FS
|
128 |
| Java 6u45 No SNI 2 | TLS 1.0 |
TLS_RSA_WITH_RC4_128_MD5 (0x4)
No FS
RC4
|
128 |
| Java 7u25 | TLS 1.0 |
TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA (0xc013)
FS
|
128 |
| Java 8b132 | TLS 1.2 |
TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 (0xc027)
FS
|
128 |
| OpenSSL 0.9.8y | TLS 1.0 |
TLS_DHE_RSA_WITH_AES_256_CBC_SHA (0x39)
FS
|
256 |
| OpenSSL 1.0.1h | TLS 1.2 |
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (0xc030)
FS
|
256 |
| Safari 5.1.9 / OS X 10.6.8 | TLS 1.0 |
TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA (0xc013)
FS
|
128 |
| Safari 6 / iOS 6.0.1 R | TLS 1.2 |
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384 (0xc028)
FS
|
256 |
| Safari 7 / iOS 7.1 R | TLS 1.2 |
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384 (0xc028)
FS
|
256 |
| Safari 8 / iOS 8.0 Beta R | TLS 1.2 |
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384 (0xc028)
FS
|
256 |
| Safari 6.0.4 / OS X 10.8.4 R | TLS 1.0 |
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (0xc014)
FS
|
256 |
| Safari 7 / OS X 10.9 R | TLS 1.2 |
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384 (0xc028)
FS
|
256 |
| Yahoo Slurp Jun 2014 No SNI 2 | TLS 1.2 |
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (0xc030)
FS
|
256 |
| YandexBot May 2014 | TLS 1.0 |
TLS_DHE_RSA_WITH_AES_256_CBC_SHA (0x39)
FS
|
256 |
| (1) Clients that do not support Forward Secrecy (FS) are excluded when determining support for it. | |||
| (2) No support for virtual SSL hosting (SNI). Connects to the default site if the server uses SNI. | |||
| (R) Denotes a reference browser or client, with which we expect better effective security. | |||
| (All) We use defaults, but some platforms do not use their best protocols and features (e.g., Java 6 & 7, older IE). | |||
Saturday, September 13, 2014
Supported SSL Certs and OS
Subscribe to:
Post Comments (Atom)
No comments:
Post a Comment