
translates into a preferred list of ciphers that begins with all ciphers using RC4 as the encryption
algorithm, followed by all cipher suites except the eNULL ciphers (ALL). The final
!DH
string means that all cipher suites containing the DH (Diffie-Hellman) cipher are removed from
the list. (Few of the major web browsers support these ciphers.)
Modifying a Cipher List
Starting from the
RC4:ALL:!DH
cipher list, an example of a slightly modified cipher list can be:
RC4:ALL:!EXPORT:!DH
This example will remove all EXPORT ciphers, besides the DH related cipher suites. Removing
the EXPORT ciphers means that all ciphers using either 40 or 56 bits symmetric ciphers are
removed from the list. This means that browsers running export controlled crypto software
cannot access the server.
Using the OpenSSL command line tool (on a UNIX machine), it is possible to check which
cipher suites a particular cipher list corresponds to. The preceding example yields the following
output:
Supported Cipher Strings and Meanings
The following table lists each supported cipher string alias and its significance.
Modifying a Cipher List
User Guide
April 2013 159
Summary of Contents for 3050-VM
Page 1: ...User Guide Avaya VPN Gateway Release 9 0 NN46120 104 Issue 04 04 April 2013 ...
Page 4: ...4 User Guide April 2013 Comments infodev avaya com ...
Page 12: ...12 User Guide April 2013 ...
Page 20: ...New in this release 20 User Guide April 2013 Comments infodev avaya com ...
Page 30: ...Introducing the VPN Gateway 30 User Guide April 2013 Comments infodev avaya com ...
Page 36: ...Introducing the ASA 310 FIPS 36 User Guide April 2013 Comments infodev avaya com ...
Page 74: ...Upgrading the AVG Software 74 User Guide April 2013 Comments infodev avaya com ...
Page 86: ...Managing Users and Groups 86 User Guide April 2013 Comments infodev avaya com ...
Page 130: ...The Command Line Interface 130 User Guide April 2013 Comments infodev avaya com ...
Page 162: ...Supported Ciphers 162 User Guide April 2013 Comments infodev avaya com ...
Page 212: ...Syslog Messages 212 User Guide April 2013 Comments infodev avaya com ...
Page 242: ...Definition of Key Codes 242 User Guide April 2013 Comments infodev avaya com ...
Page 259: ...Creating a Port Forwarder Authenticator User Guide April 2013 259 ...
Page 266: ...Using the Port Forwarder API 266 User Guide April 2013 Comments infodev avaya com ...
Page 274: ...X 509 274 User Guide April 2013 Comments infodev avaya com ...