Penyahkod suite sifer
Masukkan suite sifer TLS, sebagai nama IANA, nama OpenSSL atau GnuTLS, atau titik kod heksadesimal, untuk memecahkannya kepada pertukaran kunci, pengesahan, sifer, mod dan MAC, dengan bacaan keselamatan dalam bahasa mudah serta saranan rasmi IANA. Berjalan sepenuhnya dalam pelayar anda terhadap salinan terbenam daftar IANA.
TLS dan pengangkutanPenyahkodan berjalan secara setempat terhadap salinan terbenam daftar suite sifer TLS IANA. Tiada apa-apa dihantar ke mana-mana.
Kumpulan pertukaran kunci
TLS merundingkan kumpulan persetujuan kunci secara berasingan daripada suite sifer, dalam sambungan supported_groups. Memandangkan "harvest now, decrypt later" mendorong peralihan kepada pertukaran kunci pasca-kuantum, kumpulan hibrid di bawah menggabungkan lengkung klasik dengan ML-KEM.
- X25519MLKEM7680x11EC
Menggabungkan X25519 dengan ML-KEM-768
- SecP256r1MLKEM7680x11EB
Menggabungkan secp256r1 (P-256) dengan ML-KEM-768
- SecP384r1MLKEM10240x11ED
Menggabungkan secp384r1 (P-384) dengan ML-KEM-1024
- curveSM2MLKEM7680x11EE
Menggabungkan SM2 dengan ML-KEM-768
- X25519Kyber768Draft000x6399
Menggabungkan X25519 dengan Kyber768 (draft)
- SecP256r1Kyber768Draft000x639A
Menggabungkan secp256r1 (P-256) dengan Kyber768 (draft)
- x255190x001D
- x4480x001E
- secp256r10x0017
- secp384r10x0018
- secp521r10x0019
- secp224r10x0015
- secp192r10x0013
- ffdhe20480x0100
- ffdhe30720x0101
- ffdhe40960x0102
- ffdhe61440x0103
- ffdhe81920x0104
X25519MLKEM768 ialah kumpulan hibrid yang kini dihantar secara lalai oleh kebanyakan pelayar.
All results are computed locally from the cipher suite you enter. The code points, names, and the IANA "Recommended" and DTLS-OK flags come from a bundled snapshot of the IANA TLS Cipher Suite registry; the structural breakdown (key exchange, authentication, cipher, mode, MAC) and the security read-out are derived in your browser. Nothing is looked up remotely.
- IANA TLS Cipher Suites registryAuthoritative code points, names, and the Recommended / DTLS-OK flags
- RFC 8446 (TLS 1.3)TLS 1.3 cipher-suite form (symmetric cipher and hash only)
- RFC 9846 (TLS 1.3, current revision)The December 2025 revision of TLS 1.3, obsoleting RFC 8446; the cipher-suite form and the five suites carry over unchanged
- RFC 8447Meaning of the "Recommended" column (Y / N / D)
- RFC 7465RC4 prohibited for TLS
- RFC 84293DES and IDEA deprecated for TLS
- ciphersuite.infoOpenSSL and GnuTLS cross-names
- The Illustrated TLS 1.2 Connection (Michael Driscoll)Byte-by-byte annotated TLS 1.2 handshake, showing the negotiated suite on the wire
- The Illustrated TLS 1.3 Connection (Michael Driscoll)Byte-by-byte annotated TLS 1.3 handshake, showing the short suite and separate key_share negotiation