Transport Layer Security (TLS) Parameters

Created
2005-08-23
Last Updated
2010-01-07

This registry is also available in XML and plain text formats.

Registries included below

TLS ClientCertificateType Identifiers Registry

Reference
[RFC5246]
Range Registration Procedures
0-63 Standards Action
64-223 Specification Required
224-255 Reserved for Private Use
Value Description Reference
0 Unassigned
1 rsa_sign [RFC5246]
2 dss_sign [RFC5246]
3 rsa_fixed_dh [RFC5246]
4 dss_fixed_dh [RFC5246]
5 rsa_ephemeral_dh_RESERVED [RFC5246]
6 dss_ephemeral_dh_RESERVED [RFC5246]
7-19 Unassigned
20 fortezza_dms_RESERVED [RFC5246]
21-63 Unassigned
64 ecdsa_sign [RFC4492]
65 rsa_fixed_ecdh [RFC4492]
66 ecdsa_fixed_ecdh [RFC4492]
67-223 Unassigned
224-255 Reserved for Private Use [RFC5246]

TLS Cipher Suite Registry

Reference
[RFC5246]
Range Registration Procedures Notes
0-191 Standards Action Refers to value of first byte
192-254 Specification Required Refers to value of first byte
255 Reserved for Private Use Refers to value of first byte
Value Description Reference
0x00,0x00 TLS_NULL_WITH_NULL_NULL [RFC5246]
0x00,0x01 TLS_RSA_WITH_NULL_MD5 [RFC5246]
0x00,0x02 TLS_RSA_WITH_NULL_SHA [RFC5246]
0x00,0x03 TLS_RSA_EXPORT_WITH_RC4_40_MD5 [RFC4346]
0x00,0x04 TLS_RSA_WITH_RC4_128_MD5 [RFC5246]
0x00,0x05 TLS_RSA_WITH_RC4_128_SHA [RFC5246]
0x00,0x06 TLS_RSA_EXPORT_WITH_RC2_CBC_40_MD5 [RFC4346]
0x00,0x07 TLS_RSA_WITH_IDEA_CBC_SHA [RFC5469]
0x00,0x08 TLS_RSA_EXPORT_WITH_DES40_CBC_SHA [RFC4346]
0x00,0x09 TLS_RSA_WITH_DES_CBC_SHA [RFC5469]
0x00,0x0A TLS_RSA_WITH_3DES_EDE_CBC_SHA [RFC5246]
0x00,0x0B TLS_DH_DSS_EXPORT_WITH_DES40_CBC_SHA [RFC4346]
0x00,0x0C TLS_DH_DSS_WITH_DES_CBC_SHA [RFC5469]
0x00,0x0D TLS_DH_DSS_WITH_3DES_EDE_CBC_SHA [RFC5246]
0x00,0x0E TLS_DH_RSA_EXPORT_WITH_DES40_CBC_SHA [RFC4346]
0x00,0x0F TLS_DH_RSA_WITH_DES_CBC_SHA [RFC5469]
0x00,0x10 TLS_DH_RSA_WITH_3DES_EDE_CBC_SHA [RFC5246]
0x00,0x11 TLS_DHE_DSS_EXPORT_WITH_DES40_CBC_SHA [RFC4346]
0x00,0x12 TLS_DHE_DSS_WITH_DES_CBC_SHA [RFC5469]
0x00,0x13 TLS_DHE_DSS_WITH_3DES_EDE_CBC_SHA [RFC5246]
0x00,0x14 TLS_DHE_RSA_EXPORT_WITH_DES40_CBC_SHA [RFC4346]
0x00,0x15 TLS_DHE_RSA_WITH_DES_CBC_SHA [RFC5469]
0x00,0x16 TLS_DHE_RSA_WITH_3DES_EDE_CBC_SHA [RFC5246]
0x00,0x17 TLS_DH_anon_EXPORT_WITH_RC4_40_MD5 [RFC4346]
0x00,0x18 TLS_DH_anon_WITH_RC4_128_MD5 [RFC5246]
0x00,0x19 TLS_DH_anon_EXPORT_WITH_DES40_CBC_SHA [RFC4346]
0x00,0x1A TLS_DH_anon_WITH_DES_CBC_SHA [RFC5469]
0x00,0x1B TLS_DH_anon_WITH_3DES_EDE_CBC_SHA [RFC5246]
0x00,0x1C-1D Reserved to avoid conflicts with SSLv3 [RFC5246]
0x00,0x1E TLS_KRB5_WITH_DES_CBC_SHA [RFC2712]
0x00,0x1F TLS_KRB5_WITH_3DES_EDE_CBC_SHA [RFC2712]
0x00,0x20 TLS_KRB5_WITH_RC4_128_SHA [RFC2712]
0x00,0x21 TLS_KRB5_WITH_IDEA_CBC_SHA [RFC2712]
0x00,0x22 TLS_KRB5_WITH_DES_CBC_MD5 [RFC2712]
0x00,0x23 TLS_KRB5_WITH_3DES_EDE_CBC_MD5 [RFC2712]
0x00,0x24 TLS_KRB5_WITH_RC4_128_MD5 [RFC2712]
0x00,0x25 TLS_KRB5_WITH_IDEA_CBC_MD5 [RFC2712]
0x00,0x26 TLS_KRB5_EXPORT_WITH_DES_CBC_40_SHA [RFC2712]
0x00,0x27 TLS_KRB5_EXPORT_WITH_RC2_CBC_40_SHA [RFC2712]
0x00,0x28 TLS_KRB5_EXPORT_WITH_RC4_40_SHA [RFC2712]
0x00,0x29 TLS_KRB5_EXPORT_WITH_DES_CBC_40_MD5 [RFC2712]
0x00,0x2A TLS_KRB5_EXPORT_WITH_RC2_CBC_40_MD5 [RFC2712]
0x00,0x2B TLS_KRB5_EXPORT_WITH_RC4_40_MD5 [RFC2712]
0x00,0x2C TLS_PSK_WITH_NULL_SHA [RFC4785]
0x00,0x2D TLS_DHE_PSK_WITH_NULL_SHA [RFC4785]
0x00,0x2E TLS_RSA_PSK_WITH_NULL_SHA [RFC4785]
0x00,0x2F TLS_RSA_WITH_AES_128_CBC_SHA [RFC5246]
0x00,0x30 TLS_DH_DSS_WITH_AES_128_CBC_SHA [RFC5246]
0x00,0x31 TLS_DH_RSA_WITH_AES_128_CBC_SHA [RFC5246]
0x00,0x32 TLS_DHE_DSS_WITH_AES_128_CBC_SHA [RFC5246]
0x00,0x33 TLS_DHE_RSA_WITH_AES_128_CBC_SHA [RFC5246]
0x00,0x34 TLS_DH_anon_WITH_AES_128_CBC_SHA [RFC5246]
0x00,0x35 TLS_RSA_WITH_AES_256_CBC_SHA [RFC5246]
0x00,0x36 TLS_DH_DSS_WITH_AES_256_CBC_SHA [RFC5246]
0x00,0x37 TLS_DH_RSA_WITH_AES_256_CBC_SHA [RFC5246]
0x00,0x38 TLS_DHE_DSS_WITH_AES_256_CBC_SHA [RFC5246]
0x00,0x39 TLS_DHE_RSA_WITH_AES_256_CBC_SHA [RFC5246]
0x00,0x3A TLS_DH_anon_WITH_AES_256_CBC_SHA [RFC5246]
0x00,0x3B TLS_RSA_WITH_NULL_SHA256 [RFC5246]
0x00,0x3C TLS_RSA_WITH_AES_128_CBC_SHA256 [RFC5246]
0x00,0x3D TLS_RSA_WITH_AES_256_CBC_SHA256 [RFC5246]
0x00,0x3E TLS_DH_DSS_WITH_AES_128_CBC_SHA256 [RFC5246]
0x00,0x3F TLS_DH_RSA_WITH_AES_128_CBC_SHA256 [RFC5246]
0x00,0x40 TLS_DHE_DSS_WITH_AES_128_CBC_SHA256 [RFC5246]
0x00,0x41 TLS_RSA_WITH_CAMELLIA_128_CBC_SHA [RFC4132]
0x00,0x42 TLS_DH_DSS_WITH_CAMELLIA_128_CBC_SHA [RFC4132]
0x00,0x43 TLS_DH_RSA_WITH_CAMELLIA_128_CBC_SHA [RFC4132]
0x00,0x44 TLS_DHE_DSS_WITH_CAMELLIA_128_CBC_SHA [RFC4132]
0x00,0x45 TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA [RFC4132]
0x00,0x46 TLS_DH_anon_WITH_CAMELLIA_128_CBC_SHA [RFC4132]
0x00,0x47-4F Reserved to avoid conflicts with deployed implementations [Pasi_Eronen]
0x00,0x50-58 Reserved to avoid conflicts [Pasi Eronen, <pasi.eronen&nokia.com>, 2008-04-04. 2008-04-04]
0x00,0x59-5C Reserved to avoid conflicts with deployed implementations [Pasi_Eronen]
0x00,0x5D-5F Unassigned
0x00,0x60-66 Reserved to avoid conflicts with widely deployed implementations [Pasi_Eronen]
0x00,0x67 TLS_DHE_RSA_WITH_AES_128_CBC_SHA256 [RFC5246]
0x00,0x68 TLS_DH_DSS_WITH_AES_256_CBC_SHA256 [RFC5246]
0x00,0x69 TLS_DH_RSA_WITH_AES_256_CBC_SHA256 [RFC5246]
0x00,0x6A TLS_DHE_DSS_WITH_AES_256_CBC_SHA256 [RFC5246]
0x00,0x6B TLS_DHE_RSA_WITH_AES_256_CBC_SHA256 [RFC5246]
0x00,0x6C TLS_DH_anon_WITH_AES_128_CBC_SHA256 [RFC5246]
0x00,0x6D TLS_DH_anon_WITH_AES_256_CBC_SHA256 [RFC5246]
0x00,0x6E-83 Unassigned
0x00,0x84 TLS_RSA_WITH_CAMELLIA_256_CBC_SHA [RFC4132]
0x00,0x85 TLS_DH_DSS_WITH_CAMELLIA_256_CBC_SHA [RFC4132]
0x00,0x86 TLS_DH_RSA_WITH_CAMELLIA_256_CBC_SHA [RFC4132]
0x00,0x87 TLS_DHE_DSS_WITH_CAMELLIA_256_CBC_SHA [RFC4132]
0x00,0x88 TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA [RFC4132]
0x00,0x89 TLS_DH_anon_WITH_CAMELLIA_256_CBC_SHA [RFC4132]
0x00,0x8A TLS_PSK_WITH_RC4_128_SHA [RFC4279]
0x00,0x8B TLS_PSK_WITH_3DES_EDE_CBC_SHA [RFC4279]
0x00,0x8C TLS_PSK_WITH_AES_128_CBC_SHA [RFC4279]
0x00,0x8D TLS_PSK_WITH_AES_256_CBC_SHA [RFC4279]
0x00,0x8E TLS_DHE_PSK_WITH_RC4_128_SHA [RFC4279]
0x00,0x8F TLS_DHE_PSK_WITH_3DES_EDE_CBC_SHA [RFC4279]
0x00,0x90 TLS_DHE_PSK_WITH_AES_128_CBC_SHA [RFC4279]
0x00,0x91 TLS_DHE_PSK_WITH_AES_256_CBC_SHA [RFC4279]
0x00,0x92 TLS_RSA_PSK_WITH_RC4_128_SHA [RFC4279]
0x00,0x93 TLS_RSA_PSK_WITH_3DES_EDE_CBC_SHA [RFC4279]
0x00,0x94 TLS_RSA_PSK_WITH_AES_128_CBC_SHA [RFC4279]
0x00,0x95 TLS_RSA_PSK_WITH_AES_256_CBC_SHA [RFC4279]
0x00,0x96 TLS_RSA_WITH_SEED_CBC_SHA [RFC4162]
0x00,0x97 TLS_DH_DSS_WITH_SEED_CBC_SHA [RFC4162]
0x00,0x98 TLS_DH_RSA_WITH_SEED_CBC_SHA [RFC4162]
0x00,0x99 TLS_DHE_DSS_WITH_SEED_CBC_SHA [RFC4162]
0x00,0x9A TLS_DHE_RSA_WITH_SEED_CBC_SHA [RFC4162]
0x00,0x9B TLS_DH_anon_WITH_SEED_CBC_SHA [RFC4162]
0x00,0x9C TLS_RSA_WITH_AES_128_GCM_SHA256 [RFC5288]
0x00,0x9D TLS_RSA_WITH_AES_256_GCM_SHA384 [RFC5288]
0x00,0x9E TLS_DHE_RSA_WITH_AES_128_GCM_SHA256 [RFC5288]
0x00,0x9F TLS_DHE_RSA_WITH_AES_256_GCM_SHA384 [RFC5288]
0x00,0xA0 TLS_DH_RSA_WITH_AES_128_GCM_SHA256 [RFC5288]
0x00,0xA1 TLS_DH_RSA_WITH_AES_256_GCM_SHA384 [RFC5288]
0x00,0xA2 TLS_DHE_DSS_WITH_AES_128_GCM_SHA256 [RFC5288]
0x00,0xA3 TLS_DHE_DSS_WITH_AES_256_GCM_SHA384 [RFC5288]
0x00,0xA4 TLS_DH_DSS_WITH_AES_128_GCM_SHA256 [RFC5288]
0x00,0xA5 TLS_DH_DSS_WITH_AES_256_GCM_SHA384 [RFC5288]
0x00,0xA6 TLS_DH_anon_WITH_AES_128_GCM_SHA256 [RFC5288]
0x00,0xA7 TLS_DH_anon_WITH_AES_256_GCM_SHA384 [RFC5288]
0x00,0xA8 TLS_PSK_WITH_AES_128_GCM_SHA256 [RFC5487]
0x00,0xA9 TLS_PSK_WITH_AES_256_GCM_SHA384 [RFC5487]
0x00,0xAA TLS_DHE_PSK_WITH_AES_128_GCM_SHA256 [RFC5487]
0x00,0xAB TLS_DHE_PSK_WITH_AES_256_GCM_SHA384 [RFC5487]
0x00,0xAC TLS_RSA_PSK_WITH_AES_128_GCM_SHA256 [RFC5487]
0x00,0xAD TLS_RSA_PSK_WITH_AES_256_GCM_SHA384 [RFC5487]
0x00,0xAE TLS_PSK_WITH_AES_128_CBC_SHA256 [RFC5487]
0x00,0xAF TLS_PSK_WITH_AES_256_CBC_SHA384 [RFC5487]
0x00,0xB0 TLS_PSK_WITH_NULL_SHA256 [RFC5487]
0x00,0xB1 TLS_PSK_WITH_NULL_SHA384 [RFC5487]
0x00,0xB2 TLS_DHE_PSK_WITH_AES_128_CBC_SHA256 [RFC5487]
0x00,0xB3 TLS_DHE_PSK_WITH_AES_256_CBC_SHA384 [RFC5487]
0x00,0xB4 TLS_DHE_PSK_WITH_NULL_SHA256 [RFC5487]
0x00,0xB5 TLS_DHE_PSK_WITH_NULL_SHA384 [RFC5487]
0x00,0xB6 TLS_RSA_PSK_WITH_AES_128_CBC_SHA256 [RFC5487]
0x00,0xB7 TLS_RSA_PSK_WITH_AES_256_CBC_SHA384 [RFC5487]
0x00,0xB8 TLS_RSA_PSK_WITH_NULL_SHA256 [RFC5487]
0x00,0xB9 TLS_RSA_PSK_WITH_NULL_SHA384 [RFC5487]
0x00,0xBA-FE Unassigned
0x00,0xFF TLS_RENEGO_PROTECTION_REQUEST [RFC-ietf-tls-renegotiation-03]
0x01-BF,* Unassigned
0xC0,0x01 TLS_ECDH_ECDSA_WITH_NULL_SHA [RFC4492]
0xC0,0x02 TLS_ECDH_ECDSA_WITH_RC4_128_SHA [RFC4492]
0xC0,0x03 TLS_ECDH_ECDSA_WITH_3DES_EDE_CBC_SHA [RFC4492]
0xC0,0x04 TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHA [RFC4492]
0xC0,0x05 TLS_ECDH_ECDSA_WITH_AES_256_CBC_SHA [RFC4492]
0xC0,0x06 TLS_ECDHE_ECDSA_WITH_NULL_SHA [RFC4492]
0xC0,0x07 TLS_ECDHE_ECDSA_WITH_RC4_128_SHA [RFC4492]
0xC0,0x08 TLS_ECDHE_ECDSA_WITH_3DES_EDE_CBC_SHA [RFC4492]
0xC0,0x09 TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA [RFC4492]
0xC0,0x0A TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA [RFC4492]
0xC0,0x0B TLS_ECDH_RSA_WITH_NULL_SHA [RFC4492]
0xC0,0x0C TLS_ECDH_RSA_WITH_RC4_128_SHA [RFC4492]
0xC0,0x0D TLS_ECDH_RSA_WITH_3DES_EDE_CBC_SHA [RFC4492]
0xC0,0x0E TLS_ECDH_RSA_WITH_AES_128_CBC_SHA [RFC4492]
0xC0,0x0F TLS_ECDH_RSA_WITH_AES_256_CBC_SHA [RFC4492]
0xC0,0x10 TLS_ECDHE_RSA_WITH_NULL_SHA [RFC4492]
0xC0,0x11 TLS_ECDHE_RSA_WITH_RC4_128_SHA [RFC4492]
0xC0,0x12 TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA [RFC4492]
0xC0,0x13 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA [RFC4492]
0xC0,0x14 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA [RFC4492]
0xC0,0x15 TLS_ECDH_anon_WITH_NULL_SHA [RFC4492]
0xC0,0x16 TLS_ECDH_anon_WITH_RC4_128_SHA [RFC4492]
0xC0,0x17 TLS_ECDH_anon_WITH_3DES_EDE_CBC_SHA [RFC4492]
0xC0,0x18 TLS_ECDH_anon_WITH_AES_128_CBC_SHA [RFC4492]
0xC0,0x19 TLS_ECDH_anon_WITH_AES_256_CBC_SHA [RFC4492]
0xC0,0x1A TLS_SRP_SHA_WITH_3DES_EDE_CBC_SHA [RFC5054]
0xC0,0x1B TLS_SRP_SHA_RSA_WITH_3DES_EDE_CBC_SHA [RFC5054]
0xC0,0x1C TLS_SRP_SHA_DSS_WITH_3DES_EDE_CBC_SHA [RFC5054]
0xC0,0x1D TLS_SRP_SHA_WITH_AES_128_CBC_SHA [RFC5054]
0xC0,0x1E TLS_SRP_SHA_RSA_WITH_AES_128_CBC_SHA [RFC5054]
0xC0,0x1F TLS_SRP_SHA_DSS_WITH_AES_128_CBC_SHA [RFC5054]
0xC0,0x20 TLS_SRP_SHA_WITH_AES_256_CBC_SHA [RFC5054]
0xC0,0x21 TLS_SRP_SHA_RSA_WITH_AES_256_CBC_SHA [RFC5054]
0xC0,0x22 TLS_SRP_SHA_DSS_WITH_AES_256_CBC_SHA [RFC5054]
0xC0,0x23 TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256 [RFC5289]
0xC0,0x24 TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384 [RFC5289]
0xC0,0x25 TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHA256 [RFC5289]
0xC0,0x26 TLS_ECDH_ECDSA_WITH_AES_256_CBC_SHA384 [RFC5289]
0xC0,0x27 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 [RFC5289]
0xC0,0x28 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384 [RFC5289]
0xC0,0x29 TLS_ECDH_RSA_WITH_AES_128_CBC_SHA256 [RFC5289]
0xC0,0x2A TLS_ECDH_RSA_WITH_AES_256_CBC_SHA384 [RFC5289]
0xC0,0x2B TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256 [RFC5289]
0xC0,0x2C TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384 [RFC5289]
0xC0,0x2D TLS_ECDH_ECDSA_WITH_AES_128_GCM_SHA256 [RFC5289]
0xC0,0x2E TLS_ECDH_ECDSA_WITH_AES_256_GCM_SHA384 [RFC5289]
0xC0,0x2F TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 [RFC5289]
0xC0,0x30 TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 [RFC5289]
0xC0,0x31 TLS_ECDH_RSA_WITH_AES_128_GCM_SHA256 [RFC5289]
0xC0,0x32 TLS_ECDH_RSA_WITH_AES_256_GCM_SHA384 [RFC5289]
0xC0,0x33 TLS_ECDHE_PSK_WITH_RC4_128_SHA [RFC5489]
0xC0,0x34 TLS_ECDHE_PSK_WITH_3DES_EDE_CBC_SHA [RFC5489]
0xC0,0x35 TLS_ECDHE_PSK_WITH_AES_128_CBC_SHA [RFC5489]
0xC0,0x36 TLS_ECDHE_PSK_WITH_AES_256_CBC_SHA [RFC5489]
0xC0,0x37 TLS_ECDHE_PSK_WITH_AES_128_CBC_SHA256 [RFC5489]
0xC0,0x38 TLS_ECDHE_PSK_WITH_AES_256_CBC_SHA384 [RFC5489]
0xC0,0x39 TLS_ECDHE_PSK_WITH_NULL_SHA [RFC5489]
0xC0,0x3A TLS_ECDHE_PSK_WITH_NULL_SHA256 [RFC5489]
0xC0,0x3B TLS_ECDHE_PSK_WITH_NULL_SHA384 [RFC5489]
0xC0,0x3C-FF Unassigned
0xC1-FD,* Unassigned
0xFE,0x00-FD Unassigned
0xFE,0xFE-FF Reserved to avoid conflicts with widely deployed implementations [Pasi_Eronen]
0xFF,0x00-FF Reserved for Private Use [RFC5246]

TLS ContentType Registry

Reference
[RFC5246]
Registration Procedures
Standards Action
Value Description Reference
0-19 Unassigned
20 change_cipher_spec [RFC5246]
21 alert [RFC5246]
22 handshake [RFC5246]
23 application_data [RFC5246]
24-255 Unassigned

TLS Alert Registry

Reference
[RFC5246]
Registration Procedures
Standards Action
Value Description Reference
0 close_notify [RFC5246]
1-9 Unassigned
10 unexpected_message [RFC5246]
11-19 Unassigned
20 bad_record_mac [RFC5246]
21 decryption_failed [RFC5246]
22 record_overflow [RFC5246]
23-29 Unassigned
30 decompression_failure [RFC5246]
31-39 Unassigned
40 handshake_failure [RFC5246]
41 no_certificate_RESERVED [RFC5246]
42 bad_certificate [RFC5246]
43 unsupported_certificate [RFC5246]
44 certificate_revoked [RFC5246]
45 certificate_expired [RFC5246]
46 certificate_unknown [RFC5246]
47 illegal_parameter [RFC5246]
48 unknown_ca [RFC5246]
49 access_denied [RFC5246]
50 decode_error [RFC5246]
51 decrypt_error [RFC5246]
52-59 Unassigned
60 export_restriction_RESERVED [RFC5246]
61-69 Unassigned
70 protocol_version [RFC5246]
71 insufficient_security [RFC5246]
72-79 Unassigned
80 internal_error [RFC5246]
81-89 Unassigned
90 user_canceled [RFC5246]
91-99 Unassigned
100 no_renegotiation [RFC5246]
101-109 Unassigned
110 unsupported_extension [RFC4366]
111 certificate_unobtainable [RFC4366]
112 unrecognized_name [RFC4366]
113 bad_certificate_status_response [RFC4366]
114 bad_certificate_hash_value [RFC4366]
115 unknown_psk_identity [RFC4279]
116-255 Unassigned

TLS HandshakeType Registry

Reference
[RFC5246]
Registration Procedures
Standards Action
Value Description Reference
0 hello_request [RFC5246]
1 client_hello [RFC5246]
2 server_hello [RFC5246]
3 hello_verify_request [RFC4347]
4 NewSessionTicket [RFC4507]
5-10 Unassigned
11 certificate [RFC5246]
12 server_key_exchange [RFC5246]
13 certificate_request [RFC5246]
14 server_hello_done [RFC5246]
15 certificate_verify [RFC5246]
16 client_key_exchange [RFC5246]
17-19 Unassigned
20 finished [RFC5246]
21 certificate_url [RFC4366]
22 certificate_status [RFC4366]
23 supplemental_data [RFC4680]
24-255 Unassigned

EC Named Curve Registry

Reference
[RFC4492]
Registration Procedures
IETF Consensus
Value Description Reference
0 Unassigned
1 sect163k1 [RFC4492]
2 sect163r1 [RFC4492]
3 sect163r2 [RFC4492]
4 sect193r1 [RFC4492]
5 sect193r2 [RFC4492]
6 sect233k1 [RFC4492]
7 sect233r1 [RFC4492]
8 sect239k1 [RFC4492]
9 sect283k1 [RFC4492]
10 sect283r1 [RFC4492]
11 sect409k1 [RFC4492]
12 sect409r1 [RFC4492]
13 sect571k1 [RFC4492]
14 sect571r1 [RFC4492]
15 secp160k1 [RFC4492]
16 secp160r1 [RFC4492]
17 secp160r2 [RFC4492]
18 secp192k1 [RFC4492]
19 secp192r1 [RFC4492]
20 secp224k1 [RFC4492]
21 secp224r1 [RFC4492]
22 secp256k1 [RFC4492]
23 secp256r1 [RFC4492]
24 secp384r1 [RFC4492]
25 secp521r1 [RFC4492]
26-65023 Unassigned
65024-65279 Reserved for Private Use [RFC4492]
65280 Unassigned
65281 arbitrary_explicit_prime_curves [RFC4492]
65282 arbitrary_explicit_char2_curves [RFC4492]
65283-65535 Unassigned

EC Point Format Registry

Reference
[RFC4492]
Registration Procedures
IETF Consensus
Value Description Reference
0 uncompressed [RFC4492]
1 ansiX962_compressed_prime [RFC4492]
2 ansiX962_compressed_char2 [RFC4492]
3-247 Unassigned
248-255 Reserved for Private Use [RFC4492]

EC Curve Type Registry

Reference
[RFC4492]
Registration Procedures
IETF Consensus
Value Description Reference
0 Unassigned
1 explicit_prime [RFC4492]
2 explicit_char2 [RFC4492]
3 named_curve [RFC4492]
4-247 Unassigned
248-255 Reserved for Private Use [RFC4492]

TLS Supplemental Data Formats (SupplementalDataType)

Reference
[RFC4680]
Range Registration Procedures
0-16385 Standards Action
16386-65279 IETF Consensus
65280-65535 Reserved for Private Use
Value Description Reference
0 user_mapping_data [RFC4681]
1-16385 Unassigned
16386 authz_data [RFC-housley-tls-authz-extns-09]
16387-65279 Unassigned
65280-65535 Reserved for Private Use [RFC4680]

TLS UserMappingType Values

Reference
[RFC4681]
Range Registration Procedures
0-63 Standards Action
64-223 Specification Required
224-255 Reserved for Private Use
Value Description Reference
0-63 Unassigned
64 upn_domain_hint [RFC4681]
65-223 Unassigned
224-255 Reserved for Private Use [RFC4681]

TLS SignatureAlgorithm Registry

Reference
[RFC5246]
Range Registration Procedures
0-63 Standards Action
64-223 Specification Required
224-255 Reserved for Private Use
Value Description Reference
0 anonymous [RFC5246]
1 rsa [RFC5246]
2 dsa [RFC5246]
3 ecdsa [RFC5246]
4-223 Unassigned
224-255 Reserved for Private Use [RFC5246]

TLS HashAlgorithm Registry

Reference
[RFC5246]
Range Registration Procedures
0-63 Standards Action
64-223 Specification Required
224-255 Reserved for Private Use
Value Description Reference
0 none [RFC5246]
1 md5 [RFC5246]
2 sha1 [RFC5246]
3 sha224 [RFC5246]
4 sha256 [RFC5246]
5 sha384 [RFC5246]
6 sha512 [RFC5246]
7-223 Unassigned
224-255 Reserved for Private Use [RFC5246]

TLS Exporter Label Registry

Reference
[RFC-ietf-tls-extractor-07]
Note
(1) These entries are reserved and MUST NOT be used for the purpose described in [RFC-ietf-tls-extractor-07], 
in order to avoid confusion with similar, but distinct use in [RFC5246].
    
Registration Procedures
Specification Required
Value Reference Note
client finished [RFC5246] (1)
server finished [RFC5246] (1)
master secret [RFC5246] (1)
key expansion [RFC5246] (1)
client EAP encryption [RFC5216]
ttls keying material [RFC5281]
ttls challenge [RFC5281]
EXTRACTOR-dtls_srtp [RFC-ietf-avt-dtls-srtp-07]

TLS Authorization Data Formats

Reference
[RFC-housley-tls-authz-extns-09]
Range Registration Procedures
0-63 IETF Review
64-223 Specification Required
Value Description Reference
0 x509_attr_cert [RFC-housley-tls-authz-extns-09]
1 saml_assertion [RFC-housley-tls-authz-extns-09]
2 x509_attr_cert_url [RFC-housley-tls-authz-extns-09]
3 saml_assertion_url [RFC-housley-tls-authz-extns-09]
4-223 Unassigned
224-255 Reserved for Private Use [RFC-housley-tls-authz-extns-09]

People

ID Name Contact URI Last Updated
[Pasi_Eronen] Pasi Eronen pasi.eronen&nokia.com 2008-04-04