Skip to content

SSL_ERROR_NO_CYPHER_OVERLAP on www.amtrak.com [enable TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256] #489

@classilla

Description

@classilla

Server ciphers from ssllabs.com:

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384 (0xc028)
TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 (0xc027) 
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256 (0xcca8)
TLS_RSA_WITH_AES_256_GCM_SHA384 (0x9d) WEAK
TLS_RSA_WITH_AES_128_GCM_SHA256 (0x9c) WEAK
TLS_RSA_WITH_AES_256_CBC_SHA256 (0x3d) WEAK
TLS_RSA_WITH_AES_128_CBC_SHA256 (0x3c) WEAK

We report

Spec
Cipher Suite Name
Key Size
Description
(c0,2b)
ECDHE-ECDSA-AES128-GCM-SHA256
128 Bit
Key exchange: ECDH, encryption: AES, MAC: SHA256.
(c0,2f)
ECDHE-RSA-AES128-GCM-SHA256
128 Bit
Key exchange: ECDH, encryption: AES, MAC: SHA256.
(c0,0a)
ECDHE-ECDSA-AES256-SHA
256 Bit
Key exchange: ECDH, encryption: AES, MAC: SHA1.
(c0,09)
ECDHE-ECDSA-AES128-SHA
128 Bit
Key exchange: ECDH, encryption: AES, MAC: SHA1.
(c0,13)
ECDHE-RSA-AES128-SHA
128 Bit
Key exchange: ECDH, encryption: AES, MAC: SHA1.
(c0,14)
ECDHE-RSA-AES256-SHA
256 Bit
Key exchange: ECDH, encryption: AES, MAC: SHA1.
(00,33)
DHE-RSA-AES128-SHA
128 Bit
Key exchange: DH, encryption: AES, MAC: SHA1.
(00,39)
DHE-RSA-AES256-SHA
256 Bit
Key exchange: DH, encryption: AES, MAC: SHA1.
(00,2f)
RSA-AES128-SHA
128 Bit
Key exchange: RSA, encryption: AES, MAC: SHA1.
(00,35)
RSA-AES256-SHA
256 Bit
Key exchange: RSA, encryption: AES, MAC: SHA1.
(00,0a)
RSA-3DES-EDE-SHA
168 Bit
Key exchange: RSA, encryption: 3DES, MAC: SHA1.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions