-
Notifications
You must be signed in to change notification settings - Fork 12
/
Copy pathREADME
36 lines (28 loc) · 1.22 KB
/
README
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
cipherTest.sh
by Patrick Bogen
------------------------------------
cipherTest.sh is a "better" SSL cipher checker in that
it uses gnutls, which has support for many more
configurations than openssl. It tests potentially ~3,200
different configurations (but does some pre-optimization
so that it minimizes "failed" checks.)
It relies on openssl and gnutls-cli
sudo apt-get install gnutls-bin
Example output:
$ cipherTest www.host.com 443
Proto Cipher MAC KeX
------------------------------------------------
SSL2.0 DES-CBC3-MD5 MD5 RSA
SSL2.0 RC2-CBC-MD5 MD5 RSA
SSL2.0 RC4-MD5 MD5 RSA
SSL2.0 DES-CBC-MD5 MD5 RSA
SSL2.0 EXP-RC2-CBC-MD5 MD5 RSA
SSL2.0 EXP-RC4-MD5 MD5 RSA
SSL3.0 3DES-CBC SHA1 RSA
SSL3.0 ARCFOUR-128 SHA1 RSA
SSL3.0 ARCFOUR-128 MD5 RSA
SSL3.0 ARCFOUR-40 MD5 RSA-EXPORT
TLS1.0 3DES-CBC SHA1 RSA
TLS1.0 ARCFOUR-128 SHA1 RSA
TLS1.0 ARCFOUR-128 MD5 RSA
TLS1.0 ARCFOUR-40 MD5 RSA-EXPORT