Cipher suite decoder
Maglagay ng TLS cipher suite, bilang IANA name, OpenSSL o GnuTLS name, o hexadecimal code point, upang hatiin ito sa key exchange, authentication, cipher, mode, at MAC, kasama ang malinaw na pagtatasa ng seguridad at ang opisyal na rekomendasyon ng IANA. Ganap na tumatakbo sa iyong browser laban sa naka-embed na kopya ng IANA registry.
TLS at transportLokal na tumatakbo ang pag-decode laban sa naka-embed na kopya ng IANA TLS cipher suite registry. Walang ipinapadala kahit saan.
Mga pangkat ng key exchange
Hiwalay na pinag-uusapan ng TLS ang aktwal na pangkat ng key agreement mula sa cipher suite, sa extension na supported_groups. Dahil itinutulak ng "harvest now, decrypt later" ang paglipat sa post-quantum na key exchange, pinagsasama ng mga hybrid na pangkat sa ibaba ang isang klasikong curve sa ML-KEM.
- X25519MLKEM7680x11EC
Pinagsasama ang X25519 sa ML-KEM-768
- SecP256r1MLKEM7680x11EB
Pinagsasama ang secp256r1 (P-256) sa ML-KEM-768
- SecP384r1MLKEM10240x11ED
Pinagsasama ang secp384r1 (P-384) sa ML-KEM-1024
- curveSM2MLKEM7680x11EE
Pinagsasama ang SM2 sa ML-KEM-768
- X25519Kyber768Draft000x6399
Pinagsasama ang X25519 sa Kyber768 (draft)
- SecP256r1Kyber768Draft000x639A
Pinagsasama ang secp256r1 (P-256) sa Kyber768 (draft)
- x255190x001D
- x4480x001E
- secp256r10x0017
- secp384r10x0018
- secp521r10x0019
- secp224r10x0015
- secp192r10x0013
- ffdhe20480x0100
- ffdhe30720x0101
- ffdhe40960x0102
- ffdhe61440x0103
- ffdhe81920x0104
Ang X25519MLKEM768 ang hybrid na pangkat na ipinapadala na ngayon ng karamihan ng browser bilang default.
All results are computed locally from the cipher suite you enter. The code points, names, and the IANA "Recommended" and DTLS-OK flags come from a bundled snapshot of the IANA TLS Cipher Suite registry; the structural breakdown (key exchange, authentication, cipher, mode, MAC) and the security read-out are derived in your browser. Nothing is looked up remotely.
- IANA TLS Cipher Suites registryAuthoritative code points, names, and the Recommended / DTLS-OK flags
- RFC 8446 (TLS 1.3)TLS 1.3 cipher-suite form (symmetric cipher and hash only)
- RFC 9846 (TLS 1.3, current revision)The December 2025 revision of TLS 1.3, obsoleting RFC 8446; the cipher-suite form and the five suites carry over unchanged
- RFC 8447Meaning of the "Recommended" column (Y / N / D)
- RFC 7465RC4 prohibited for TLS
- RFC 84293DES and IDEA deprecated for TLS
- ciphersuite.infoOpenSSL and GnuTLS cross-names
- The Illustrated TLS 1.2 Connection (Michael Driscoll)Byte-by-byte annotated TLS 1.2 handshake, showing the negotiated suite on the wire
- The Illustrated TLS 1.3 Connection (Michael Driscoll)Byte-by-byte annotated TLS 1.3 handshake, showing the short suite and separate key_share negotiation