Movatterモバイル変換


[0]ホーム

URL:


Internet Assigned Numbers Authority

Transport Layer Security (TLS) Parameters

Created
2005-08-23
Last Updated
2026-02-13
Related Registry Group(s)
[Transport Layer Security (TLS) Extensions]
Available Formats

XML

HTML

Plain text

Registries Included Below

TLS ClientCertificateType Identifiers

Expert(s)
Yoav Nir, Rich Salz, Nick Sullivan
Reference
[RFC5246][RFC8447][RFC-ietf-tls-tls12-frozen-08][RFC9847]
Note
If the "Specification Required" [RFC8126] procedure applies, registration requests can be sent to iana@iana.org or submitted via IANA's [application form], per [RFC9847]. IANA will forward the submission to the expert mailing list described in [RFC 8447, Section 17] and track its progress. See the registration procedure table below for more information.
Note
The role of the designated expert is described in [RFC8447].The designated expert [RFC8126] ensures that the specification ispublicly available.  It is sufficient to have an Internet-Draft(that is posted and never published as an RFC) or a document fromanother standards body, industry consortium, university site, etc.The expert may provide more in-depth reviews, but their approvalshould not be taken as an endorsement of the identifier.
Note
As specified in [RFC8126], assignments made in the Private Usespace are not generally useful for broad interoperability.  It isthe responsibility of those making use of the Private Use range toensure that no conflicts occur (within the intended scope of use).For widespread experiments, temporary reservations are available.
Note
The values in this registry are only applicable to (D)TLSprotocol versions prior to 1.3.
Note
Any TLS entry added after the IESG approves publication of [RFC-ietf-tls-tls12-frozen-08] is intended for TLS 1.3 or later, and makes no similar requirementon DTLS. Such entries should have an informal indication like "For TLS 1.3 or later" in that entry, such as the "Comment" column.
Note
If the "Recommended" column is set to "N", it does not necessarily mean that it is flawed; rather, it indicates that the item either has not been through the IETF consensus process, has limited applicability, or is intended only for specific use cases. If the "Recommended" column is set to "D," the item is discouraged and SHOULD NOT or MUST NOT be used, depending upon the situation; consult the item's references for clarity.
Available Formats

CSV
RangeRegistration Procedures
0-223 ("Recommended" set to/transitioning from "Y" or "D")Either Standards Action with Expert Review or IESG Approval
0-223 ("Recommended" set to "N," not transitioning from another value)Specification Required
224-255Reserved for Private Use
ValueDescriptionDTLS-OKRecommendedReferenceComment
0Unassigned
1rsa_signYY[RFC5246][RFC9847]
2dss_signYN[RFC5246][RFC9847]
3rsa_fixed_dhYD[RFC5246][RFC9847][RFC-ietf-tls-deprecate-obsolete-kex-08]
4dss_fixed_dhYD[RFC5246][RFC9847][RFC-ietf-tls-deprecate-obsolete-kex-08]
5rsa_ephemeral_dh_RESERVEDYD[RFC5246][RFC9847]
6dss_ephemeral_dh_RESERVEDYD[RFC5246][RFC9847]
7-19Unassigned
20fortezza_dms_RESERVEDYD[RFC5246][RFC9847]
21-63Unassigned
64ecdsa_signYY[RFC8422][RFC9847]
65rsa_fixed_ecdhYD[RFC8422][RFC9847][RFC-ietf-tls-deprecate-obsolete-kex-08]
66ecdsa_fixed_ecdhYD[RFC8422][RFC9847][RFC-ietf-tls-deprecate-obsolete-kex-08]
67gost_sign256YN[RFC9189][RFC9847]
68gost_sign512YN[RFC9189][RFC9847]
69-223Unassigned
224-255Reserved for Private Use[RFC5246]

TLS Cipher Suites

Expert(s)
Yoav Nir, Rich Salz, Nick Sullivan
Reference
[RFC-ietf-tls-rfc8446bis-13][RFC8447][RFC9147][RFC-ietf-tls-tls12-frozen-08][RFC9847]
Note
If the "Specification Required" [RFC8126] procedure applies, registration requests can be sent to iana@iana.org or submitted via IANA's [application form], per [RFC9847]. IANA will forward the submission to the expert mailing list described in [RFC 8447, Section 17] and track its progress. See the registration procedure table below for more information.
WARNING
Cryptographic algorithms and parameters will be broken orweakened over time.  Blindly implementing cipher suites listed here is not advised.  Implementers and users need to check that the cryptographic algorithms listed continue to provide the expected level of security.
Note
Although TLS 1.3 uses the same cipher suite space as previousversions of TLS, TLS 1.3 cipher suites are defined differently,only specifying the symmetric ciphers and hash function, andcannot be used for TLS 1.2.  Similarly, TLS 1.2 and lower ciphersuite values cannot be used with TLS 1.3.
Note
CCM_8 cipher suites are not marked as "Recommended".  Thesecipher suites have a significantly truncated authentication tagthat represents a security trade-off that may not be appropriatefor general environments.
Note
If the "Recommended" column is set to "N", it does not necessarily mean that it is flawed; rather, it indicates that the item either has not been through the IETF consensus process, has limited applicability, or is intended only for specific use cases. If the "Recommended" column is set to "D," the item is discouraged and SHOULD NOT or MUST NOT be used, depending upon the situation; consult the item's references for clarity.
Note
The role of the designated expert is described in [RFC8447].The designated expert [RFC8126] ensures that the specification ispublicly available.  It is sufficient to have an Internet-Draft(that is posted and never published as an RFC) or a document fromanother standards body, industry consortium, university site, etc.The expert may provide more in-depth reviews, but their approvalshould not be taken as an endorsement of the cipher suite.
Note
As specified in [RFC8126], assignments made in the Private Usespace are not generally useful for broad interoperability.  It isthe responsibility of those making use of the Private Use range toensure that no conflicts occur (within the intended scope of use).For widespread experiments, temporary reservations are available.
Note
Any TLS cipher suite that is specified for use with DTLS MUST define limits on the use of the associated AEAD function that preserves margins for both confidentiality and integrity, as specified in Section 4.5.3 of [RFC9147].
Note
When this registry is modified, the YANG module "iana-tls-cipher-suite-algs" [iana-tls-cipher-suite-algs] must be updated as defined in [RFC9645].
Note
Any TLS entry added after the IESG approves publication of [RFC-ietf-tls-tls12-frozen-08] is intended for TLS 1.3 or later, and makes no similar requirementon DTLS. Such entries should have an informal indication like "For TLS 1.3 or later" in that entry, such as the "Comment" column.
Available Formats

CSV
RangeRegistration Procedures
"Recommended" set to/transitioning from "Y" or "D"Either Standards Action With Expert Review or IESG Approval
"Recommended" set to "N," not transitioning from another valueSpecification Required
ValueDescriptionDTLS-OKRecommendedReferenceComment
0x00,0x00TLS_NULL_WITH_NULL_NULLYN[RFC5246]
0x00,0x01TLS_RSA_WITH_NULL_MD5YD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x02TLS_RSA_WITH_NULL_SHAYD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x03TLS_RSA_EXPORT_WITH_RC4_40_MD5ND[RFC4346][RFC6347][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x04TLS_RSA_WITH_RC4_128_MD5ND[RFC5246][RFC6347][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x05TLS_RSA_WITH_RC4_128_SHAND[RFC5246][RFC6347][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x06TLS_RSA_EXPORT_WITH_RC2_CBC_40_MD5YD[RFC4346][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x07TLS_RSA_WITH_IDEA_CBC_SHAYD[RFC8996][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x08TLS_RSA_EXPORT_WITH_DES40_CBC_SHAYD[RFC4346][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x09TLS_RSA_WITH_DES_CBC_SHAYD[RFC8996][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x0ATLS_RSA_WITH_3DES_EDE_CBC_SHAYD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x0BTLS_DH_DSS_EXPORT_WITH_DES40_CBC_SHAYD[RFC4346][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x0CTLS_DH_DSS_WITH_DES_CBC_SHAYD[RFC8996][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x0DTLS_DH_DSS_WITH_3DES_EDE_CBC_SHAYD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x0ETLS_DH_RSA_EXPORT_WITH_DES40_CBC_SHAYD[RFC4346][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x0FTLS_DH_RSA_WITH_DES_CBC_SHAYD[RFC8996][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x10TLS_DH_RSA_WITH_3DES_EDE_CBC_SHAYD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x11TLS_DHE_DSS_EXPORT_WITH_DES40_CBC_SHAYD[RFC4346][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x12TLS_DHE_DSS_WITH_DES_CBC_SHAYD[RFC8996][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x13TLS_DHE_DSS_WITH_3DES_EDE_CBC_SHAYD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x14TLS_DHE_RSA_EXPORT_WITH_DES40_CBC_SHAYD[RFC4346][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x15TLS_DHE_RSA_WITH_DES_CBC_SHAYD[RFC8996][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x16TLS_DHE_RSA_WITH_3DES_EDE_CBC_SHAYD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x17TLS_DH_anon_EXPORT_WITH_RC4_40_MD5ND[RFC4346][RFC6347][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x18TLS_DH_anon_WITH_RC4_128_MD5ND[RFC5246][RFC6347][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x19TLS_DH_anon_EXPORT_WITH_DES40_CBC_SHAYD[RFC4346][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x1ATLS_DH_anon_WITH_DES_CBC_SHAYD[RFC8996][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x1BTLS_DH_anon_WITH_3DES_EDE_CBC_SHAYD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x1C-1DReserved to avoid conflicts with SSLv3[RFC5246]
0x00,0x1ETLS_KRB5_WITH_DES_CBC_SHAYD[RFC2712][RFC9847]
0x00,0x1FTLS_KRB5_WITH_3DES_EDE_CBC_SHAYN[RFC2712]
0x00,0x20TLS_KRB5_WITH_RC4_128_SHAND[RFC2712][RFC6347][RFC9847]
0x00,0x21TLS_KRB5_WITH_IDEA_CBC_SHAYD[RFC2712][RFC9847]
0x00,0x22TLS_KRB5_WITH_DES_CBC_MD5YD[RFC2712][RFC9847]
0x00,0x23TLS_KRB5_WITH_3DES_EDE_CBC_MD5YN[RFC2712]
0x00,0x24TLS_KRB5_WITH_RC4_128_MD5ND[RFC2712][RFC6347][RFC9847]
0x00,0x25TLS_KRB5_WITH_IDEA_CBC_MD5YD[RFC2712][RFC9847]
0x00,0x26TLS_KRB5_EXPORT_WITH_DES_CBC_40_SHAYD[RFC2712][RFC9847]
0x00,0x27TLS_KRB5_EXPORT_WITH_RC2_CBC_40_SHAYD[RFC2712][RFC9847]
0x00,0x28TLS_KRB5_EXPORT_WITH_RC4_40_SHAND[RFC2712][RFC6347][RFC9847]
0x00,0x29TLS_KRB5_EXPORT_WITH_DES_CBC_40_MD5YD[RFC2712][RFC9847]
0x00,0x2ATLS_KRB5_EXPORT_WITH_RC2_CBC_40_MD5YD[RFC2712][RFC9847]
0x00,0x2BTLS_KRB5_EXPORT_WITH_RC4_40_MD5ND[RFC2712][RFC6347][RFC9847]
0x00,0x2CTLS_PSK_WITH_NULL_SHAYD[RFC4785][RFC9847]
0x00,0x2DTLS_DHE_PSK_WITH_NULL_SHAYD[RFC4785][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x2ETLS_RSA_PSK_WITH_NULL_SHAYD[RFC4785][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x2FTLS_RSA_WITH_AES_128_CBC_SHAYD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x30TLS_DH_DSS_WITH_AES_128_CBC_SHAYD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x31TLS_DH_RSA_WITH_AES_128_CBC_SHAYD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x32TLS_DHE_DSS_WITH_AES_128_CBC_SHAYD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x33TLS_DHE_RSA_WITH_AES_128_CBC_SHAYD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x34TLS_DH_anon_WITH_AES_128_CBC_SHAYD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x35TLS_RSA_WITH_AES_256_CBC_SHAYD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x36TLS_DH_DSS_WITH_AES_256_CBC_SHAYD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x37TLS_DH_RSA_WITH_AES_256_CBC_SHAYD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x38TLS_DHE_DSS_WITH_AES_256_CBC_SHAYD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x39TLS_DHE_RSA_WITH_AES_256_CBC_SHAYD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x3ATLS_DH_anon_WITH_AES_256_CBC_SHAYD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x3BTLS_RSA_WITH_NULL_SHA256YD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x3CTLS_RSA_WITH_AES_128_CBC_SHA256YD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x3DTLS_RSA_WITH_AES_256_CBC_SHA256YD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x3ETLS_DH_DSS_WITH_AES_128_CBC_SHA256YD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x3FTLS_DH_RSA_WITH_AES_128_CBC_SHA256YD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x40TLS_DHE_DSS_WITH_AES_128_CBC_SHA256YD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x41TLS_RSA_WITH_CAMELLIA_128_CBC_SHAYD[RFC5932][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x42TLS_DH_DSS_WITH_CAMELLIA_128_CBC_SHAYD[RFC5932][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x43TLS_DH_RSA_WITH_CAMELLIA_128_CBC_SHAYD[RFC5932][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x44TLS_DHE_DSS_WITH_CAMELLIA_128_CBC_SHAYD[RFC5932][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x45TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHAYD[RFC5932][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x46TLS_DH_anon_WITH_CAMELLIA_128_CBC_SHAYD[RFC5932][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x47-4FReserved to avoid conflicts with deployed implementations[Pasi_Eronen]
0x00,0x50-58Reserved to avoid conflicts[Pasi Eronen, <pasi.eronen&nokia.com>, 2008-04-04. 2008-04-04]
0x00,0x59-5CReserved to avoid conflicts with deployed implementations[Pasi_Eronen]
0x00,0x5D-5FUnassigned
0x00,0x60-66Reserved to avoid conflicts withwidely deployed implementations[Pasi_Eronen]
0x00,0x67TLS_DHE_RSA_WITH_AES_128_CBC_SHA256YD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x68TLS_DH_DSS_WITH_AES_256_CBC_SHA256YD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x69TLS_DH_RSA_WITH_AES_256_CBC_SHA256YD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x6ATLS_DHE_DSS_WITH_AES_256_CBC_SHA256YD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x6BTLS_DHE_RSA_WITH_AES_256_CBC_SHA256YD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x6CTLS_DH_anon_WITH_AES_128_CBC_SHA256YD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x6DTLS_DH_anon_WITH_AES_256_CBC_SHA256YD[RFC5246][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x6ETLS_ASCONAEAD128_ASCONHASH256YN[https://doi.org/10.6028/NIST.SP.800-232]Combining Ascon-AEAD128 with Ascon-Hash256
0x00,0x6FTLS_ASCONAEAD128_SHA256YN[https://doi.org/10.6028/NIST.SP.800-232][draft-ietf-tls-rfc8446bis-13]Combining Ascon-AEAD128 with SHA256
0x00,0x70TLS_AES_128_GCM_ASCONHASH256YN[https://doi.org/10.6028/NIST.SP.800-232][draft-ietf-tls-rfc8446bis-13]Combining AES128 in GCM mode with Ascon-Hash256
0x00,0x71TLS_AES_128_CCM_ASCONHASH256YN[https://doi.org/10.6028/NIST.SP.800-232][draft-ietf-tls-rfc8446bis-13]Combining AES128 in CCM mode with Ascon-Hash256
0x00,0x72-83Unassigned
0x00,0x84TLS_RSA_WITH_CAMELLIA_256_CBC_SHAYD[RFC5932][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x85TLS_DH_DSS_WITH_CAMELLIA_256_CBC_SHAYD[RFC5932][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x86TLS_DH_RSA_WITH_CAMELLIA_256_CBC_SHAYN[RFC5932]
0x00,0x87TLS_DHE_DSS_WITH_CAMELLIA_256_CBC_SHAYD[RFC5932][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x88TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHAYD[RFC5932][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x89TLS_DH_anon_WITH_CAMELLIA_256_CBC_SHAYN[RFC5932]
0x00,0x8ATLS_PSK_WITH_RC4_128_SHAND[RFC4279][RFC6347][RFC9847]
0x00,0x8BTLS_PSK_WITH_3DES_EDE_CBC_SHAYN[RFC4279]
0x00,0x8CTLS_PSK_WITH_AES_128_CBC_SHAYN[RFC4279]
0x00,0x8DTLS_PSK_WITH_AES_256_CBC_SHAYN[RFC4279]
0x00,0x8ETLS_DHE_PSK_WITH_RC4_128_SHAND[RFC4279][RFC6347][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x8FTLS_DHE_PSK_WITH_3DES_EDE_CBC_SHAYD[RFC4279][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x90TLS_DHE_PSK_WITH_AES_128_CBC_SHAYD[RFC4279][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x91TLS_DHE_PSK_WITH_AES_256_CBC_SHAYD[RFC4279][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x92TLS_RSA_PSK_WITH_RC4_128_SHAND[RFC4279][RFC6347][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x93TLS_RSA_PSK_WITH_3DES_EDE_CBC_SHAYD[RFC4279][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x94TLS_RSA_PSK_WITH_AES_128_CBC_SHAYD[RFC4279][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x95TLS_RSA_PSK_WITH_AES_256_CBC_SHAYD[RFC4279][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x96TLS_RSA_WITH_SEED_CBC_SHAYD[RFC4162][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x97TLS_DH_DSS_WITH_SEED_CBC_SHAYD[RFC4162][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x98TLS_DH_RSA_WITH_SEED_CBC_SHAYD[RFC4162][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x99TLS_DHE_DSS_WITH_SEED_CBC_SHAYD[RFC4162][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x9ATLS_DHE_RSA_WITH_SEED_CBC_SHAYD[RFC4162][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x9BTLS_DH_anon_WITH_SEED_CBC_SHAYD[RFC4162][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x9CTLS_RSA_WITH_AES_128_GCM_SHA256YD[RFC5288][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x9DTLS_RSA_WITH_AES_256_GCM_SHA384YD[RFC5288][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x9ETLS_DHE_RSA_WITH_AES_128_GCM_SHA256YD[RFC5288][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0x9FTLS_DHE_RSA_WITH_AES_256_GCM_SHA384YD[RFC5288][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xA0TLS_DH_RSA_WITH_AES_128_GCM_SHA256YD[RFC5288][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xA1TLS_DH_RSA_WITH_AES_256_GCM_SHA384YD[RFC5288][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xA2TLS_DHE_DSS_WITH_AES_128_GCM_SHA256YD[RFC5288][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xA3TLS_DHE_DSS_WITH_AES_256_GCM_SHA384YD[RFC5288][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xA4TLS_DH_DSS_WITH_AES_128_GCM_SHA256YD[RFC5288][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xA5TLS_DH_DSS_WITH_AES_256_GCM_SHA384YD[RFC5288][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xA6TLS_DH_anon_WITH_AES_128_GCM_SHA256YD[RFC5288][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xA7TLS_DH_anon_WITH_AES_256_GCM_SHA384YD[RFC5288][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xA8TLS_PSK_WITH_AES_128_GCM_SHA256YN[RFC5487]
0x00,0xA9TLS_PSK_WITH_AES_256_GCM_SHA384YN[RFC5487]
0x00,0xAATLS_DHE_PSK_WITH_AES_128_GCM_SHA256YD[RFC5487][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xABTLS_DHE_PSK_WITH_AES_256_GCM_SHA384YD[RFC5487][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xACTLS_RSA_PSK_WITH_AES_128_GCM_SHA256YD[RFC5487][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xADTLS_RSA_PSK_WITH_AES_256_GCM_SHA384YD[RFC5487][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xAETLS_PSK_WITH_AES_128_CBC_SHA256YN[RFC5487]
0x00,0xAFTLS_PSK_WITH_AES_256_CBC_SHA384YN[RFC5487]
0x00,0xB0TLS_PSK_WITH_NULL_SHA256YD[RFC5487][RFC9847]
0x00,0xB1TLS_PSK_WITH_NULL_SHA384YD[RFC5487][RFC9847]
0x00,0xB2TLS_DHE_PSK_WITH_AES_128_CBC_SHA256YD[RFC5487][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xB3TLS_DHE_PSK_WITH_AES_256_CBC_SHA384YD[RFC5487][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xB4TLS_DHE_PSK_WITH_NULL_SHA256YD[RFC5487][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xB5TLS_DHE_PSK_WITH_NULL_SHA384YD[RFC5487][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xB6TLS_RSA_PSK_WITH_AES_128_CBC_SHA256YD[RFC5487][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xB7TLS_RSA_PSK_WITH_AES_256_CBC_SHA384YD[RFC5487][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xB8TLS_RSA_PSK_WITH_NULL_SHA256YD[RFC5487][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xB9TLS_RSA_PSK_WITH_NULL_SHA384YD[RFC5487][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xBATLS_RSA_WITH_CAMELLIA_128_CBC_SHA256YD[RFC5932][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xBBTLS_DH_DSS_WITH_CAMELLIA_128_CBC_SHA256YD[RFC5932][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xBCTLS_DH_RSA_WITH_CAMELLIA_128_CBC_SHA256YD[RFC5932][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xBDTLS_DHE_DSS_WITH_CAMELLIA_128_CBC_SHA256YD[RFC5932][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xBETLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA256YD[RFC5932][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xBFTLS_DH_anon_WITH_CAMELLIA_128_CBC_SHA256YD[RFC5932][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xC0TLS_RSA_WITH_CAMELLIA_256_CBC_SHA256YD[RFC5932][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xC1TLS_DH_DSS_WITH_CAMELLIA_256_CBC_SHA256YD[RFC5932][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xC2TLS_DH_RSA_WITH_CAMELLIA_256_CBC_SHA256YD[RFC5932][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xC3TLS_DHE_DSS_WITH_CAMELLIA_256_CBC_SHA256YD[RFC5932][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xC4TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA256YD[RFC5932][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xC5TLS_DH_anon_WITH_CAMELLIA_256_CBC_SHA256YD[RFC5932][RFC-ietf-tls-deprecate-obsolete-kex-08]
0x00,0xC6TLS_SM4_GCM_SM3NN[RFC8998]
0x00,0xC7TLS_SM4_CCM_SM3NN[RFC8998]
0x00,0xC8-FEUnassigned
0x00,0xFFTLS_EMPTY_RENEGOTIATION_INFO_SCSVYN[RFC5746]
0x01-09,*Unassigned
0x0A,0x00-09Unassigned
0x0A,0x0AReservedYN[RFC8701]
0x0A,0x0B-FFUnassigned
0x0B-12,*Unassigned
0x13,0x00Unassigned
0x13,0x01TLS_AES_128_GCM_SHA256YY[RFC-ietf-tls-rfc8446bis-13]
0x13,0x02TLS_AES_256_GCM_SHA384YY[RFC-ietf-tls-rfc8446bis-13]
0x13,0x03TLS_CHACHA20_POLY1305_SHA256YY[RFC-ietf-tls-rfc8446bis-13]
0x13,0x04TLS_AES_128_CCM_SHA256YY[RFC-ietf-tls-rfc8446bis-13]
0x13,0x05TLS_AES_128_CCM_8_SHA256YN[RFC-ietf-tls-rfc8446bis-13][IESG Action 2018-08-16]
0x13,0x06TLS_AEGIS_256_SHA512YN[draft-irtf-cfrg-aegis-aead-08]
0x13,0x07TLS_AEGIS_128L_SHA256YN[draft-irtf-cfrg-aegis-aead-08]
0x13,0x08-FFUnassigned
0x14-19,*Unassigned
0x1A,0x00-19Unassigned
0x1A,0x1AReservedYN[RFC8701]
0x1A,0x1B-FFUnassigned
0x1B-29,*Unassigned
0x2A,0x00-29Unassigned
0x2A,0x2AReservedYN[RFC8701]
0x2A,0x2B-FFUnassigned
0x2B-39,*Unassigned
0x3A,0x00-39Unassigned
0x3A,0x3AReservedYN[RFC8701]
0x3A,0x3B-FFUnassigned
0x3B-49,*Unassigned
0x4A,0x00-49Unassigned
0x4A,0x4AReservedYN[RFC8701]
0x4A,0x4B-FFUnassigned
0x4B-55,*Unassigned
0x56,0x00TLS_FALLBACK_SCSVYN[RFC7507]
0x56,0x01-FFUnassigned
0x57-59,*Unassigned
0x5A,0x00-59Unassigned
0x5A,0x5AReservedYN[RFC8701]
0x5A,0x5B-FFUnassigned
0x5B-69,*Unassigned
0x6A,0x00-69Unassigned
0x6A,0x6AReservedYN[RFC8701]
0x6A,0x6B-FFUnassigned
0x6B-79,*Unassigned
0x7A,0x00-79Unassigned
0x7A,0x7AReservedYN[RFC8701]
0x7A,0x7B-FFUnassigned
0x7B-89,*Unassigned
0x8A,0x00-89Unassigned
0x8A,0x8AReservedYN[RFC8701]
0x8A,0x8B-FFUnassigned
0x8B-99,*Unassigned
0x9A,0x00-99Unassigned
0x9A,0x9AReservedYN[RFC8701]
0x9A,0x9B-FFUnassigned
0x9B-A9,*Unassigned
0xAA,0x00-A9Unassigned
0xAA,0xAAReservedYN[RFC8701]
0xAA,0xAB-FFUnassigned
0xAB-B9,*Unassigned
0xBA,0x00-B9Unassigned
0xBA,0xBAReservedYN[RFC8701]
0xBA,0xBB-FFUnassigned
0xBB-BF,*Unassigned
0xC0,0x00Unassigned
0xC0,0x01TLS_ECDH_ECDSA_WITH_NULL_SHAYD[RFC8422][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x02TLS_ECDH_ECDSA_WITH_RC4_128_SHAND[RFC8422][RFC6347][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x03TLS_ECDH_ECDSA_WITH_3DES_EDE_CBC_SHAYD[RFC8422][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x04TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHAYN[RFC8422]
0xC0,0x05TLS_ECDH_ECDSA_WITH_AES_256_CBC_SHAYN[RFC8422]
0xC0,0x06TLS_ECDHE_ECDSA_WITH_NULL_SHAYD[RFC8422][RFC9847]
0xC0,0x07TLS_ECDHE_ECDSA_WITH_RC4_128_SHAND[RFC8422][RFC6347][RFC9847]
0xC0,0x08TLS_ECDHE_ECDSA_WITH_3DES_EDE_CBC_SHAYN[RFC8422]
0xC0,0x09TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHAYN[RFC8422]
0xC0,0x0ATLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHAYN[RFC8422]
0xC0,0x0BTLS_ECDH_RSA_WITH_NULL_SHAYD[RFC8422][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x0CTLS_ECDH_RSA_WITH_RC4_128_SHAND[RFC8422][RFC6347][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x0DTLS_ECDH_RSA_WITH_3DES_EDE_CBC_SHAYD[RFC8422][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x0ETLS_ECDH_RSA_WITH_AES_128_CBC_SHAYD[RFC8422][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x0FTLS_ECDH_RSA_WITH_AES_256_CBC_SHAYD[RFC8422][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x10TLS_ECDHE_RSA_WITH_NULL_SHAYD[RFC8422][RFC9847]
0xC0,0x11TLS_ECDHE_RSA_WITH_RC4_128_SHAND[RFC8422][RFC6347][RFC9847]
0xC0,0x12TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHAYN[RFC8422]
0xC0,0x13TLS_ECDHE_RSA_WITH_AES_128_CBC_SHAYN[RFC8422]
0xC0,0x14TLS_ECDHE_RSA_WITH_AES_256_CBC_SHAYN[RFC8422]
0xC0,0x15TLS_ECDH_anon_WITH_NULL_SHAYD[RFC8422][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x16TLS_ECDH_anon_WITH_RC4_128_SHAND[RFC8422][RFC6347][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x17TLS_ECDH_anon_WITH_3DES_EDE_CBC_SHAYD[RFC8422][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x18TLS_ECDH_anon_WITH_AES_128_CBC_SHAYD[RFC8422][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x19TLS_ECDH_anon_WITH_AES_256_CBC_SHAYD[RFC8422][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x1ATLS_SRP_SHA_WITH_3DES_EDE_CBC_SHAYN[RFC5054]
0xC0,0x1BTLS_SRP_SHA_RSA_WITH_3DES_EDE_CBC_SHAYN[RFC5054]
0xC0,0x1CTLS_SRP_SHA_DSS_WITH_3DES_EDE_CBC_SHAYN[RFC5054]
0xC0,0x1DTLS_SRP_SHA_WITH_AES_128_CBC_SHAYN[RFC5054]
0xC0,0x1ETLS_SRP_SHA_RSA_WITH_AES_128_CBC_SHAYN[RFC5054]
0xC0,0x1FTLS_SRP_SHA_DSS_WITH_AES_128_CBC_SHAYN[RFC5054]
0xC0,0x20TLS_SRP_SHA_WITH_AES_256_CBC_SHAYN[RFC5054]
0xC0,0x21TLS_SRP_SHA_RSA_WITH_AES_256_CBC_SHAYN[RFC5054]
0xC0,0x22TLS_SRP_SHA_DSS_WITH_AES_256_CBC_SHAYN[RFC5054]
0xC0,0x23TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256YN[RFC5289]
0xC0,0x24TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384YN[RFC5289]
0xC0,0x25TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHA256YD[RFC5289][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x26TLS_ECDH_ECDSA_WITH_AES_256_CBC_SHA384YD[RFC5289][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x27TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256YN[RFC5289]
0xC0,0x28TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384YN[RFC5289]
0xC0,0x29TLS_ECDH_RSA_WITH_AES_128_CBC_SHA256YD[RFC5289][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x2ATLS_ECDH_RSA_WITH_AES_256_CBC_SHA384YD[RFC5289][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x2BTLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256YY[RFC5289]
0xC0,0x2CTLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384YY[RFC5289]
0xC0,0x2DTLS_ECDH_ECDSA_WITH_AES_128_GCM_SHA256YD[RFC5289][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x2ETLS_ECDH_ECDSA_WITH_AES_256_GCM_SHA384YD[RFC5289][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x2FTLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256YY[RFC5289]
0xC0,0x30TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384YY[RFC5289]
0xC0,0x31TLS_ECDH_RSA_WITH_AES_128_GCM_SHA256YD[RFC5289][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x32TLS_ECDH_RSA_WITH_AES_256_GCM_SHA384YD[RFC5289][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x33TLS_ECDHE_PSK_WITH_RC4_128_SHAND[RFC5489][RFC6347][RFC9847]
0xC0,0x34TLS_ECDHE_PSK_WITH_3DES_EDE_CBC_SHAYN[RFC5489]
0xC0,0x35TLS_ECDHE_PSK_WITH_AES_128_CBC_SHAYN[RFC5489]
0xC0,0x36TLS_ECDHE_PSK_WITH_AES_256_CBC_SHAYN[RFC5489]
0xC0,0x37TLS_ECDHE_PSK_WITH_AES_128_CBC_SHA256YN[RFC5489]
0xC0,0x38TLS_ECDHE_PSK_WITH_AES_256_CBC_SHA384YN[RFC5489]
0xC0,0x39TLS_ECDHE_PSK_WITH_NULL_SHAYD[RFC5489][RFC9847]
0xC0,0x3ATLS_ECDHE_PSK_WITH_NULL_SHA256YD[RFC5489][RFC9847]
0xC0,0x3BTLS_ECDHE_PSK_WITH_NULL_SHA384YD[RFC5489][RFC9847]
0xC0,0x3CTLS_RSA_WITH_ARIA_128_CBC_SHA256YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x3DTLS_RSA_WITH_ARIA_256_CBC_SHA384YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x3ETLS_DH_DSS_WITH_ARIA_128_CBC_SHA256YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x3FTLS_DH_DSS_WITH_ARIA_256_CBC_SHA384YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x40TLS_DH_RSA_WITH_ARIA_128_CBC_SHA256YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x41TLS_DH_RSA_WITH_ARIA_256_CBC_SHA384YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x42TLS_DHE_DSS_WITH_ARIA_128_CBC_SHA256YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x43TLS_DHE_DSS_WITH_ARIA_256_CBC_SHA384YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x44TLS_DHE_RSA_WITH_ARIA_128_CBC_SHA256YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x45TLS_DHE_RSA_WITH_ARIA_256_CBC_SHA384YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x46TLS_DH_anon_WITH_ARIA_128_CBC_SHA256YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x47TLS_DH_anon_WITH_ARIA_256_CBC_SHA384YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x48TLS_ECDHE_ECDSA_WITH_ARIA_128_CBC_SHA256YN[RFC6209]
0xC0,0x49TLS_ECDHE_ECDSA_WITH_ARIA_256_CBC_SHA384YN[RFC6209]
0xC0,0x4ATLS_ECDH_ECDSA_WITH_ARIA_128_CBC_SHA256YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x4BTLS_ECDH_ECDSA_WITH_ARIA_256_CBC_SHA384YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x4CTLS_ECDHE_RSA_WITH_ARIA_128_CBC_SHA256YN[RFC6209]
0xC0,0x4DTLS_ECDHE_RSA_WITH_ARIA_256_CBC_SHA384YN[RFC6209]
0xC0,0x4ETLS_ECDH_RSA_WITH_ARIA_128_CBC_SHA256YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x4FTLS_ECDH_RSA_WITH_ARIA_256_CBC_SHA384YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x50TLS_RSA_WITH_ARIA_128_GCM_SHA256YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x51TLS_RSA_WITH_ARIA_256_GCM_SHA384YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x52TLS_DHE_RSA_WITH_ARIA_128_GCM_SHA256YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x53TLS_DHE_RSA_WITH_ARIA_256_GCM_SHA384YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x54TLS_DH_RSA_WITH_ARIA_128_GCM_SHA256YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x55TLS_DH_RSA_WITH_ARIA_256_GCM_SHA384YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x56TLS_DHE_DSS_WITH_ARIA_128_GCM_SHA256YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x57TLS_DHE_DSS_WITH_ARIA_256_GCM_SHA384YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x58TLS_DH_DSS_WITH_ARIA_128_GCM_SHA256YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x59TLS_DH_DSS_WITH_ARIA_256_GCM_SHA384YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x5ATLS_DH_anon_WITH_ARIA_128_GCM_SHA256YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x5BTLS_DH_anon_WITH_ARIA_256_GCM_SHA384YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x5CTLS_ECDHE_ECDSA_WITH_ARIA_128_GCM_SHA256YN[RFC6209]
0xC0,0x5DTLS_ECDHE_ECDSA_WITH_ARIA_256_GCM_SHA384YN[RFC6209]
0xC0,0x5ETLS_ECDH_ECDSA_WITH_ARIA_128_GCM_SHA256YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x5FTLS_ECDH_ECDSA_WITH_ARIA_256_GCM_SHA384YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x60TLS_ECDHE_RSA_WITH_ARIA_128_GCM_SHA256YN[RFC6209]
0xC0,0x61TLS_ECDHE_RSA_WITH_ARIA_256_GCM_SHA384YN[RFC6209]
0xC0,0x62TLS_ECDH_RSA_WITH_ARIA_128_GCM_SHA256YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x63TLS_ECDH_RSA_WITH_ARIA_256_GCM_SHA384YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x64TLS_PSK_WITH_ARIA_128_CBC_SHA256YN[RFC6209]
0xC0,0x65TLS_PSK_WITH_ARIA_256_CBC_SHA384YN[RFC6209]
0xC0,0x66TLS_DHE_PSK_WITH_ARIA_128_CBC_SHA256YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x67TLS_DHE_PSK_WITH_ARIA_256_CBC_SHA384YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x68TLS_RSA_PSK_WITH_ARIA_128_CBC_SHA256YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x69TLS_RSA_PSK_WITH_ARIA_256_CBC_SHA384YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x6ATLS_PSK_WITH_ARIA_128_GCM_SHA256YN[RFC6209]
0xC0,0x6BTLS_PSK_WITH_ARIA_256_GCM_SHA384YN[RFC6209]
0xC0,0x6CTLS_DHE_PSK_WITH_ARIA_128_GCM_SHA256YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x6DTLS_DHE_PSK_WITH_ARIA_256_GCM_SHA384YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x6ETLS_RSA_PSK_WITH_ARIA_128_GCM_SHA256YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x6FTLS_RSA_PSK_WITH_ARIA_256_GCM_SHA384YD[RFC6209][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x70TLS_ECDHE_PSK_WITH_ARIA_128_CBC_SHA256YN[RFC6209]
0xC0,0x71TLS_ECDHE_PSK_WITH_ARIA_256_CBC_SHA384YN[RFC6209]
0xC0,0x72TLS_ECDHE_ECDSA_WITH_CAMELLIA_128_CBC_SHA256YN[RFC6367]
0xC0,0x73TLS_ECDHE_ECDSA_WITH_CAMELLIA_256_CBC_SHA384YN[RFC6367]
0xC0,0x74TLS_ECDH_ECDSA_WITH_CAMELLIA_128_CBC_SHA256YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x75TLS_ECDH_ECDSA_WITH_CAMELLIA_256_CBC_SHA384YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x76TLS_ECDHE_RSA_WITH_CAMELLIA_128_CBC_SHA256YN[RFC6367]
0xC0,0x77TLS_ECDHE_RSA_WITH_CAMELLIA_256_CBC_SHA384YN[RFC6367]
0xC0,0x78TLS_ECDH_RSA_WITH_CAMELLIA_128_CBC_SHA256YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x79TLS_ECDH_RSA_WITH_CAMELLIA_256_CBC_SHA384YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x7ATLS_RSA_WITH_CAMELLIA_128_GCM_SHA256YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x7BTLS_RSA_WITH_CAMELLIA_256_GCM_SHA384YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x7CTLS_DHE_RSA_WITH_CAMELLIA_128_GCM_SHA256YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x7DTLS_DHE_RSA_WITH_CAMELLIA_256_GCM_SHA384YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x7ETLS_DH_RSA_WITH_CAMELLIA_128_GCM_SHA256YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x7FTLS_DH_RSA_WITH_CAMELLIA_256_GCM_SHA384YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x80TLS_DHE_DSS_WITH_CAMELLIA_128_GCM_SHA256YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x81TLS_DHE_DSS_WITH_CAMELLIA_256_GCM_SHA384YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x82TLS_DH_DSS_WITH_CAMELLIA_128_GCM_SHA256YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x83TLS_DH_DSS_WITH_CAMELLIA_256_GCM_SHA384YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x84TLS_DH_anon_WITH_CAMELLIA_128_GCM_SHA256YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x85TLS_DH_anon_WITH_CAMELLIA_256_GCM_SHA384YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x86TLS_ECDHE_ECDSA_WITH_CAMELLIA_128_GCM_SHA256YN[RFC6367]
0xC0,0x87TLS_ECDHE_ECDSA_WITH_CAMELLIA_256_GCM_SHA384YN[RFC6367]
0xC0,0x88TLS_ECDH_ECDSA_WITH_CAMELLIA_128_GCM_SHA256YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x89TLS_ECDH_ECDSA_WITH_CAMELLIA_256_GCM_SHA384YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x8ATLS_ECDHE_RSA_WITH_CAMELLIA_128_GCM_SHA256YN[RFC6367]
0xC0,0x8BTLS_ECDHE_RSA_WITH_CAMELLIA_256_GCM_SHA384YN[RFC6367]
0xC0,0x8CTLS_ECDH_RSA_WITH_CAMELLIA_128_GCM_SHA256YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x8DTLS_ECDH_RSA_WITH_CAMELLIA_256_GCM_SHA384YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x8ETLS_PSK_WITH_CAMELLIA_128_GCM_SHA256YN[RFC6367]
0xC0,0x8FTLS_PSK_WITH_CAMELLIA_256_GCM_SHA384YN[RFC6367]
0xC0,0x90TLS_DHE_PSK_WITH_CAMELLIA_128_GCM_SHA256YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x91TLS_DHE_PSK_WITH_CAMELLIA_256_GCM_SHA384YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x92TLS_RSA_PSK_WITH_CAMELLIA_128_GCM_SHA256YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x93TLS_RSA_PSK_WITH_CAMELLIA_256_GCM_SHA384YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x94TLS_PSK_WITH_CAMELLIA_128_CBC_SHA256YN[RFC6367]
0xC0,0x95TLS_PSK_WITH_CAMELLIA_256_CBC_SHA384YN[RFC6367]
0xC0,0x96TLS_DHE_PSK_WITH_CAMELLIA_128_CBC_SHA256YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x97TLS_DHE_PSK_WITH_CAMELLIA_256_CBC_SHA384YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x98TLS_RSA_PSK_WITH_CAMELLIA_128_CBC_SHA256YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x99TLS_RSA_PSK_WITH_CAMELLIA_256_CBC_SHA384YD[RFC6367][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x9ATLS_ECDHE_PSK_WITH_CAMELLIA_128_CBC_SHA256YN[RFC6367]
0xC0,0x9BTLS_ECDHE_PSK_WITH_CAMELLIA_256_CBC_SHA384YN[RFC6367]
0xC0,0x9CTLS_RSA_WITH_AES_128_CCMYD[RFC6655][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x9DTLS_RSA_WITH_AES_256_CCMYD[RFC6655][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x9ETLS_DHE_RSA_WITH_AES_128_CCMYD[RFC6655][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0x9FTLS_DHE_RSA_WITH_AES_256_CCMYD[RFC6655][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0xA0TLS_RSA_WITH_AES_128_CCM_8YD[RFC6655][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0xA1TLS_RSA_WITH_AES_256_CCM_8YD[RFC6655][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0xA2TLS_DHE_RSA_WITH_AES_128_CCM_8YD[RFC6655][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0xA3TLS_DHE_RSA_WITH_AES_256_CCM_8ND[RFC6655][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0xA4TLS_PSK_WITH_AES_128_CCMYN[RFC6655]
0xC0,0xA5TLS_PSK_WITH_AES_256_CCMYN[RFC6655]
0xC0,0xA6TLS_DHE_PSK_WITH_AES_128_CCMYD[RFC6655][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0xA7TLS_DHE_PSK_WITH_AES_256_CCMYD[RFC6655][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0xA8TLS_PSK_WITH_AES_128_CCM_8YN[RFC6655]
0xC0,0xA9TLS_PSK_WITH_AES_256_CCM_8YN[RFC6655]
0xC0,0xAATLS_PSK_DHE_WITH_AES_128_CCM_8YD[RFC6655][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0xABTLS_PSK_DHE_WITH_AES_256_CCM_8YD[RFC6655][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xC0,0xACTLS_ECDHE_ECDSA_WITH_AES_128_CCMYN[RFC7251]
0xC0,0xADTLS_ECDHE_ECDSA_WITH_AES_256_CCMYN[RFC7251]
0xC0,0xAETLS_ECDHE_ECDSA_WITH_AES_128_CCM_8YN[RFC7251]
0xC0,0xAFTLS_ECDHE_ECDSA_WITH_AES_256_CCM_8YN[RFC7251]
0xC0,0xB0TLS_ECCPWD_WITH_AES_128_GCM_SHA256YN[RFC8492]
0xC0,0xB1TLS_ECCPWD_WITH_AES_256_GCM_SHA384YN[RFC8492]
0xC0,0xB2TLS_ECCPWD_WITH_AES_128_CCM_SHA256YN[RFC8492]
0xC0,0xB3TLS_ECCPWD_WITH_AES_256_CCM_SHA384YN[RFC8492]
0xC0,0xB4TLS_SHA256_SHA256YD[RFC9150][RFC9847]
0xC0,0xB5TLS_SHA384_SHA384YD[RFC9150][RFC9847]
0xC0,0xB6-FFUnassigned
0xC1,0x00TLS_GOSTR341112_256_WITH_KUZNYECHIK_CTR_OMACNN[RFC9189]
0xC1,0x01TLS_GOSTR341112_256_WITH_MAGMA_CTR_OMACNN[RFC9189]
0xC1,0x02TLS_GOSTR341112_256_WITH_28147_CNT_IMITNN[RFC9189]
0xC1,0x03TLS_GOSTR341112_256_WITH_KUZNYECHIK_MGM_LNN[RFC9367]
0xC1,0x04TLS_GOSTR341112_256_WITH_MAGMA_MGM_LNN[RFC9367]
0xC1,0x05TLS_GOSTR341112_256_WITH_KUZNYECHIK_MGM_SNN[RFC9367]
0xC1,0x06TLS_GOSTR341112_256_WITH_MAGMA_MGM_SNN[RFC9367]
0xC1,0x07-FFUnassigned
0xC2-C9,*Unassigned
0xCA,0x00-C9Unassigned
0xCA,0xCAReservedYN[RFC8701]
0xCA,0xCB-FFUnassigned
0xCB,*Unassigned
0xCC,0x00-A7Unassigned
0xCC,0xA8TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256YY[RFC7905]
0xCC,0xA9TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256YY[RFC7905]
0xCC,0xAATLS_DHE_RSA_WITH_CHACHA20_POLY1305_SHA256YD[RFC7905][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xCC,0xABTLS_PSK_WITH_CHACHA20_POLY1305_SHA256YN[RFC7905]
0xCC,0xACTLS_ECDHE_PSK_WITH_CHACHA20_POLY1305_SHA256YY[RFC7905]
0xCC,0xADTLS_DHE_PSK_WITH_CHACHA20_POLY1305_SHA256YD[RFC7905][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xCC,0xAETLS_RSA_PSK_WITH_CHACHA20_POLY1305_SHA256YD[RFC7905][RFC-ietf-tls-deprecate-obsolete-kex-08]
0xCC,0xAF-FFUnassigned
0xCD-CF,*Unassigned
0xD0,0x00Unassigned
0xD0,0x01TLS_ECDHE_PSK_WITH_AES_128_GCM_SHA256YY[RFC8442]
0xD0,0x02TLS_ECDHE_PSK_WITH_AES_256_GCM_SHA384YY[RFC8442]
0xD0,0x03TLS_ECDHE_PSK_WITH_AES_128_CCM_8_SHA256YN[RFC8442]
0xD0,0x04Unassigned
0xD0,0x05TLS_ECDHE_PSK_WITH_AES_128_CCM_SHA256YY[RFC8442]
0xD0,0x06-FFUnassigned
0xD1-D9,*Unassigned
0xDA,0x00-D9Unassigned
0xDA,0xDAReservedYN[RFC8701]
0xDA,0xDB-FFUnassigned
0xDB-E9,*Unassigned
0xEA,0x00-E9Unassigned
0xEA,0xEAReservedYN[RFC8701]
0xEA,0xEB-FFUnassigned
0xEB-F9,*Unassigned
0xFA,0x00-C9Unassigned
0xFA,0xFAReservedYN[RFC8701]
0xFA,0xFB-FFUnassigned
0xFB-FD,*Unassigned
0xFE,0x00-FDUnassigned
0xFE,0xFE-FFReserved to avoid conflicts withwidely deployed implementations[Pasi_Eronen]
0xFF,0x00-FFReserved for Private Use[RFC-ietf-tls-rfc8446bis-13]

TLS ContentType

Registration Procedure(s)
Standards Action
Reference
[RFC-ietf-tls-rfc8446bis-13][RFC9443][RFC-ietf-tls-tls12-frozen-08][RFC9847]
Note
Any TLS entry added after the IESG approves publication of [RFC-ietf-tls-tls12-frozen-08] is intended for TLS 1.3 or later, and makes no similar requirementon DTLS. Such entries should have an informal indication like "For TLS 1.3 or later" in that entry, such as the "Comment" column.
Note
The return_routability_check content type is only applicable to DTLS 1.2 and 1.3.
Available Formats

CSV
ValueDescriptionDTLS-OKReferenceComment
0-19Unassigned (Requires coordination; see [RFC9443])[RFC5764][RFC9443]
20change_cipher_specY[RFC-ietf-tls-rfc8446bis-13]
21alertY[RFC-ietf-tls-rfc8446bis-13]
22handshakeY[RFC-ietf-tls-rfc8446bis-13]
23application_dataY[RFC-ietf-tls-rfc8446bis-13]
24heartbeatY[RFC6520]
25tls12_cidY[RFC9146]
26ACKY[RFC9147]
27return_routability_checkY[RFC-ietf-tls-dtls-rrc-20]
28-31Unassigned
32-63Reserved[RFC9147]
64-255Unassigned (Requires coordination; see [RFC9443])[RFC5764][RFC9443]

TLS Alerts

Registration Procedure(s)
Standards Action
Reference
[RFC-ietf-tls-rfc8446bis-13][RFC-ietf-tls-tls12-frozen-08]
Note
Any TLS entry added after the IESG approves publication of [RFC-ietf-tls-tls12-frozen-08] is intended for TLS 1.3 or later, and makes no similar requirementon DTLS. Such entries should have an informal indication like "For TLS 1.3 or later" in that entry, such as the "Comment" column.
Available Formats

CSV
ValueDescriptionDTLS-OKReferenceComment
0close_notifyY[RFC-ietf-tls-rfc8446bis-13][RFC Errata 7303]
1-9Unassigned
10unexpected_messageY[RFC-ietf-tls-rfc8446bis-13]
11-19Unassigned
20bad_record_macY[RFC-ietf-tls-rfc8446bis-13]
21decryption_failed_RESERVEDY[RFC-ietf-tls-rfc8446bis-13]Used in TLS versions prior to 1.3.
22record_overflowY[RFC-ietf-tls-rfc8446bis-13]
23-29Unassigned
30decompression_failure_RESERVEDY[RFC-ietf-tls-rfc8446bis-13]Used in TLS versions prior to 1.3.
31-39Unassigned
40handshake_failureY[RFC-ietf-tls-rfc8446bis-13]
41no_certificate_RESERVEDY[RFC-ietf-tls-rfc8446bis-13]Used in SSLv3 but not in TLS.
42bad_certificateY[RFC-ietf-tls-rfc8446bis-13]
43unsupported_certificateY[RFC-ietf-tls-rfc8446bis-13]
44certificate_revokedY[RFC-ietf-tls-rfc8446bis-13]
45certificate_expiredY[RFC-ietf-tls-rfc8446bis-13]
46certificate_unknownY[RFC-ietf-tls-rfc8446bis-13]
47illegal_parameterY[RFC-ietf-tls-rfc8446bis-13]
48unknown_caY[RFC-ietf-tls-rfc8446bis-13]
49access_deniedY[RFC-ietf-tls-rfc8446bis-13]
50decode_errorY[RFC-ietf-tls-rfc8446bis-13]
51decrypt_errorY[RFC-ietf-tls-rfc8446bis-13]
52too_many_cids_requestedY[RFC9147]
53-59Unassigned
60export_restriction_RESERVEDY[RFC-ietf-tls-rfc8446bis-13]Used in TLS 1.0 but not TLS 1.1 or later.
61-69Unassigned
70protocol_versionY[RFC-ietf-tls-rfc8446bis-13]
71insufficient_securityY[RFC-ietf-tls-rfc8446bis-13]
72-79Unassigned
80internal_errorY[RFC-ietf-tls-rfc8446bis-13]
81-85Unassigned
86inappropriate_fallbackY[RFC7507]
87-89Unassigned
90user_canceledY[RFC-ietf-tls-rfc8446bis-13]
91-99Unassigned
100no_renegotiation_RESERVEDY[RFC-ietf-tls-rfc8446bis-13]Used in TLS versions prior to 1.3.
101-108Unassigned
109missing_extensionY[RFC-ietf-tls-rfc8446bis-13]
110unsupported_extensionY[RFC-ietf-tls-rfc8446bis-13]
111certificate_unobtainable_RESERVEDY[RFC6066][RFC-ietf-tls-rfc8446bis-13]Used in TLS versions prior to 1.3.
112unrecognized_nameY[RFC6066]
113bad_certificate_status_responseY[RFC6066]
114bad_certificate_hash_value_RESERVEDY[RFC6066][RFC-ietf-tls-rfc8446bis-13]Used in TLS versions prior to 1.3.
115unknown_psk_identityY[RFC4279]
116certificate_requiredY[RFC-ietf-tls-rfc8446bis-13]
117general_errorY[RFC-ietf-tls-rfc8446bis-13]
118-119Unassigned
120no_application_protocolY[RFC7301][RFC8447]
121ech_requiredY[RFC-ietf-tls-esni-25]
122-255Unassigned

TLS HandshakeType

Registration Procedure(s)
Standards Action
Reference
[RFC-ietf-tls-rfc8446bis-13][RFC-ietf-tls-tls12-frozen-08]
Note
Any TLS entry added after the IESG approves publication of [RFC-ietf-tls-tls12-frozen-08] is intended for TLS 1.3 or later, and makes no similar requirementon DTLS. Such entries should have an informal indication like "For TLS 1.3 or later" in that entry, such as the "Comment" column.
Available Formats

CSV
ValueDescriptionDTLS-OKReferenceComment
0hello_request_RESERVEDY[RFC-ietf-tls-rfc8446bis-13]Used in TLS versions prior to 1.3.
1client_helloY[RFC-ietf-tls-rfc8446bis-13]
2server_helloY[RFC-ietf-tls-rfc8446bis-13]
3hello_verify_request_RESERVEDY[RFC6347][RFC-ietf-tls-rfc8446bis-13]Assigned for interim draft, but the functionality was moved to a different message.
4new_session_ticket (renamed from "NewSessionTicket")Y[RFC4507][RFC-ietf-tls-rfc8446bis-13][RFC8447][RFC Errata 7250]
5end_of_early_dataY[RFC-ietf-tls-rfc8446bis-13]
6hello_retry_request_RESERVEDY[RFC-ietf-tls-rfc8446bis-13]Assigned for interim draft, but the functionality was moved to an extension.
7Unassigned
8encrypted_extensionsY[RFC-ietf-tls-rfc8446bis-13]
9request_connection_idY[RFC9147]
10new_connection_idY[RFC9147]
11certificateY[RFC-ietf-tls-rfc8446bis-13]
12server_key_exchange_RESERVEDY[RFC-ietf-tls-rfc8446bis-13]Used in TLS versions prior to 1.3.
13certificate_requestY[RFC-ietf-tls-rfc8446bis-13]
14server_hello_done_RESERVEDY[RFC-ietf-tls-rfc8446bis-13]Used in TLS versions prior to 1.3.
15certificate_verifyY[RFC-ietf-tls-rfc8446bis-13]
16client_key_exchange_RESERVEDY[RFC-ietf-tls-rfc8446bis-13]Used in TLS versions prior to 1.3.
17client_certificate_requestY[RFC9261]Used in TLS versions prior to 1.3.
18-19Unassigned
20finishedY[RFC-ietf-tls-rfc8446bis-13]
21certificate_url_RESERVEDY[RFC6066][RFC-ietf-tls-rfc8446bis-13]Used in TLS versions prior to 1.3.
22certificate_status_RESERVEDY[RFC6066][RFC-ietf-tls-rfc8446bis-13]Used in TLS versions prior to 1.3.
23supplemental_data_RESERVEDY[RFC4680][RFC-ietf-tls-rfc8446bis-13]Used in TLS versions prior to 1.3.
24key_updateY[RFC-ietf-tls-rfc8446bis-13]
25compressed_certificateY[RFC8879]
26ekt_keyY[RFC8870]
27-253Unassigned
254message_hashY[RFC-ietf-tls-rfc8446bis-13]
255Unassigned

TLS Supported Groups

Expert(s)
Yoav Nir, Rich Salz, Nick Sullivan
Reference
[RFC8422][RFC7919][RFC-ietf-tls-rfc8446bis-13][RFC8447][RFC-ietf-tls-tls12-frozen-08][RFC9847][RFC-ietf-tls-hybrid-design-16]
Note
If the "Specification Required" [RFC8126] procedure applies, registration requests can be sent to iana@iana.org or submitted via IANA's [application form], per [RFC9847]. IANA will forward the submission to the expert mailing list described in [RFC 8447, Section 17] and track its progress. See the registration procedure table below for more information.
Note
Renamed from "EC Named Curve Registry"
Note
If the "Recommended" column is set to "N", it does not necessarily mean that it is flawed; rather, it indicates that the item either has not been through the IETF consensus process, has limited applicability, or is intended only for specific use cases. If the "Recommended" column is set to "D," the item is discouraged and SHOULD NOT or MUST NOT be used, depending upon the situation; consult the item's references for clarity.
Note
The role of the designated expert is described in [RFC8447].The designated expert [RFC8126] ensures that the specification ispublicly available.  It is sufficient to have an Internet-Draft(that is posted and never published as an RFC) or a document fromanother standards body, industry consortium, university site, etc.The expert may provide more in-depth reviews, but their approvalshould not be taken as an endorsement of the supported group.
WARNING
Cryptographic algorithms and parameters will be broken orweakened over time.  Blindly implementing supported groups listed here is not advised.  Implementers and users need to check that the cryptographic algorithms listed continue to provide the expected level of security.
Note
Any TLS entry added after the IESG approves publication of [RFC-ietf-tls-tls12-frozen-08] is intended for TLS 1.3 or later, and makes no similar requirementon DTLS. Such entries should have an informal indication like "For TLS 1.3 or later" in that entry, such as the "Comment" column.
Available Formats

CSV
RangeRegistration ProceduresNote
0-255 ("Recommended" set to/transitioning from "Y" or "D")Either Standards Action with Expert Review or IESG Approval
0-255 ("Recommended" set to "N," not transitioning from another value)Specification Required
256-511 ("Recommended" set to/transitioning from "Y" or "D")Either Standards Action with Expert Review or IESG ApprovalFinite Field Diffie-Hellman groups
256-511 ("Recommended" set to "N," not transitioning from another value)Specification RequiredFinite Field Diffie-Hellman groups
512-65535 ("Recommended" set to/transitioning from "Y" or "D")Either Standards Action with Expert Review or IESG Approval
512-65535 ("Recommended" set to "N," not transitioning from another value)Specification Required
ValueDescriptionDTLS-OKRecommendedReferenceComment
0Reserved[RFC8447]
1sect163k1YD[RFC8422][RFC9847][https://datatracker.ietf.org/meeting/118/materials/slides-118-tls-rfc8447bis-00]
2sect163r1YD[RFC8422][RFC9847][https://datatracker.ietf.org/meeting/118/materials/slides-118-tls-rfc8447bis-00]
3sect163r2YD[RFC8422][RFC9847][https://datatracker.ietf.org/meeting/118/materials/slides-118-tls-rfc8447bis-00]
4sect193r1YD[RFC8422][RFC9847][https://datatracker.ietf.org/meeting/118/materials/slides-118-tls-rfc8447bis-00]
5sect193r2YD[RFC8422][RFC9847][https://datatracker.ietf.org/meeting/118/materials/slides-118-tls-rfc8447bis-00]
6sect233k1YD[RFC8422][RFC9847][https://datatracker.ietf.org/meeting/118/materials/slides-118-tls-rfc8447bis-00]
7sect233r1YD[RFC8422][RFC9847][https://datatracker.ietf.org/meeting/118/materials/slides-118-tls-rfc8447bis-00]
8sect239k1YD[RFC8422][RFC9847][https://datatracker.ietf.org/meeting/118/materials/slides-118-tls-rfc8447bis-00]
9sect283k1YN[RFC8422]
10sect283r1YN[RFC8422]
11sect409k1YN[RFC8422]
12sect409r1YN[RFC8422]
13sect571k1YN[RFC8422]
14sect571r1YN[RFC8422]
15secp160k1YD[RFC8422][RFC9847][https://datatracker.ietf.org/meeting/118/materials/slides-118-tls-rfc8447bis-00]
16secp160r1YD[RFC8422][RFC9847][https://datatracker.ietf.org/meeting/118/materials/slides-118-tls-rfc8447bis-00]
17secp160r2YD[RFC8422][RFC9847][https://datatracker.ietf.org/meeting/118/materials/slides-118-tls-rfc8447bis-00]
18secp192k1YD[RFC8422][RFC9847][https://datatracker.ietf.org/meeting/118/materials/slides-118-tls-rfc8447bis-00]
19secp192r1YD[RFC8422][RFC9847][https://datatracker.ietf.org/meeting/118/materials/slides-118-tls-rfc8447bis-00]
20secp224k1YD[RFC8422][RFC9847][https://datatracker.ietf.org/meeting/118/materials/slides-118-tls-rfc8447bis-00]
21secp224r1YD[RFC8422][RFC9847][https://datatracker.ietf.org/meeting/118/materials/slides-118-tls-rfc8447bis-00]
22secp256k1YN[RFC8422]
23secp256r1YY[RFC8422]
24secp384r1YY[RFC8422]
25secp521r1YN[RFC8422]
26brainpoolP256r1YN[RFC7027]
27brainpoolP384r1YN[RFC7027]
28brainpoolP512r1YN[RFC7027]
29x25519YY[RFC-ietf-tls-rfc8446bis-13][RFC8422]
30x448YY[RFC-ietf-tls-rfc8446bis-13][RFC8422]
31brainpoolP256r1tls13YN[RFC8734]
32brainpoolP384r1tls13YN[RFC8734]
33brainpoolP512r1tls13YN[RFC8734]
34GC256AYN[RFC9189]
35GC256BYN[RFC9189]
36GC256CYN[RFC9189]
37GC256DYN[RFC9189]
38GC512AYN[RFC9189]
39GC512BYN[RFC9189]
40GC512CYN[RFC9189]
41curveSM2NN[RFC8998]
42-255Unassigned
256ffdhe2048YN[RFC7919]
257ffdhe3072YN[RFC7919]
258ffdhe4096YN[RFC7919]
259ffdhe6144YN[RFC7919]
260ffdhe8192YN[RFC7919]
261-507Unassigned
508-511Reserved for Private Use[RFC7919]
512MLKEM512YN[draft-connolly-tls-mlkem-key-agreement-05]FIPS 203 version of ML-KEM-512
513MLKEM768YN[draft-connolly-tls-mlkem-key-agreement-05]FIPS 203 version of ML-KEM-768
514MLKEM1024YN[draft-connolly-tls-mlkem-key-agreement-05]FIPS 203 version of ML-KEM-1024
515-2569Unassigned
2570ReservedYN[RFC8701]
2571-4586Unassigned
4587SecP256r1MLKEM768YN[RFC-ietf-tls-ecdhe-mlkem-04]Combining secp256r1 ECDH with ML-KEM-768
4588X25519MLKEM768YN[RFC-ietf-tls-ecdhe-mlkem-04]Combining X25519 ECDH with ML-KEM-768
4589SecP384r1MLKEM1024YN[RFC-ietf-tls-ecdhe-mlkem-04]Combining secp384r1 ECDH with ML-KEM-1024
4590curveSM2MLKEM768NN[draft-yang-tls-hybrid-sm2-mlkem-03]Combining SM2 ECDH with ML-KEM-768
4591-6681Unassigned
6682ReservedYN[RFC8701]
6683-10793Unassigned
10794ReservedYN[RFC8701]
10795-14905Unassigned
14906ReservedYN[RFC8701]
14907-19017Unassigned
19018ReservedYN[RFC8701]
19019-23129Unassigned
23130ReservedYN[RFC8701]
23131-25496Unassigned
25497X25519Kyber768Draft00 (OBSOLETE)YD[draft-tls-westerbaan-xyber768d00-02][RFC-ietf-tls-ecdhe-mlkem-04]Pre-standards version of Kyber768. Obsoleted by [RFC-ietf-tls-ecdhe-mlkem-04].
25498SecP256r1Kyber768Draft00 (OBSOLETE)YD[draft-kwiatkowski-tls-ecdhe-kyber-01][RFC-ietf-tls-ecdhe-mlkem-04]Pre-standards version of Kyber768. Obsoleted by [RFC-ietf-tls-ecdhe-mlkem-04].
25499-27241Unassigned
27242ReservedYN[RFC8701]
27243-31353Unassigned
31354ReservedYN[RFC8701]
31355-35465Unassigned
35466ReservedYN[RFC8701]
35467-39577Unassigned
39578ReservedYN[RFC8701]
39579-43689Unassigned
43690ReservedYN[RFC8701]
43691-47801Unassigned
47802ReservedYN[RFC8701]
47803-51913Unassigned
51914ReservedYN[RFC8701]
51915-56025Unassigned
56026ReservedYN[RFC8701]
56027-60137Unassigned
60138ReservedYN[RFC8701]
60139-64249Unassigned
64250ReservedYN[RFC8701]
64251-65023Unassigned
65024-65279Reserved for Private Use[RFC8422]
65280Unassigned
65281arbitrary_explicit_prime_curvesYN[RFC8422]
65282arbitrary_explicit_char2_curvesYN[RFC8422]
65283-65535Unassigned

TLS EC Point Formats

Registration Procedure(s)
Specification Required
Expert(s)
Yoav Nir, Rich Salz, Nick Sullivan
Reference
[RFC8422][RFC-ietf-tls-tls12-frozen-08][RFC9847]
Note
Registration requests should be sent to iana@iana.org or submitted via IANA's [application form], per [RFC9847]. IANA will forward the request to the expert mailing list described in [RFC 8447, Section 17] and track its progress.
Note
Any TLS entry added after the IESG approves publication of [RFC-ietf-tls-tls12-frozen-08] is intended for TLS 1.3 or later, and makes no similar requirementon DTLS. Such entries should have an informal indication like "For TLS 1.3 or later" in that entry, such as the "Comment" column.
Available Formats

CSV
ValueDescriptionDTLS-OKReferenceComment
0uncompressedY[RFC8422]
1ansiX962_compressed_primeY[RFC8422]
2ansiX962_compressed_char2Y[RFC8422]
3-247Unassigned
248-255Reserved for Private Use[RFC8422]

TLS EC Curve Types

Registration Procedure(s)
Specification Required
Expert(s)
Yoav Nir, Rich Salz, Nick Sullivan
Reference
[RFC8422][RFC-ietf-tls-tls12-frozen-08][RFC9847]
Note
Registration requests should be sent to iana@iana.org or submitted via IANA's [application form], per [RFC9847]. IANA will forward the request to the expert mailing list described in [RFC 8447, Section 17] and track its progress.
Note
Any TLS entry added after the IESG approves publication of [RFC-ietf-tls-tls12-frozen-08] is intended for TLS 1.3 or later, and makes no similar requirementon DTLS. Such entries should have an informal indication like "For TLS 1.3 or later" in that entry, such as the "Comment" column.
Available Formats

CSV
ValueDescriptionDTLS-OKReferenceComment
0Unassigned
1explicit_primeY[RFC8422]
2explicit_char2Y[RFC8422]
3named_curveY[RFC8422]
4-247Unassigned
248-255Reserved for Private Use[RFC8422]

TLS Supplemental Data Formats (SupplementalDataType)

Reference
[RFC4680][RFC8447][RFC-ietf-tls-tls12-frozen-08][RFC9847]
Note
Any TLS entry added after the IESG approves publication of [RFC-ietf-tls-tls12-frozen-08] is intended for TLS 1.3 or later, and makes no similar requirementon DTLS. Such entries should have an informal indication like "For TLS 1.3 or later" in that entry, such as the "Comment" column.
Available Formats

CSV
RangeRegistration Procedures
0-16385Standards Action
16386-65279IETF Review
65280-65535Reserved for Private Use
ValueDescriptionDTLS-OKReferenceComment
0user_mapping_dataY[RFC4681]
1-16385Unassigned
16386authz_dataY[RFC5878]
16387-65279Unassigned
65280-65535Reserved for Private Use[RFC4680]

TLS UserMappingType Values

Expert(s)
Yoav Nir, Rich Salz, Nick Sullivan
Reference
[RFC4681][RFC-ietf-tls-tls12-frozen-08][RFC9847]
Note
Requests for registration in the "Specification Required" [RFC8126] range should be sent to iana@iana.org or submitted via IANA's [application form], per [RFC9847]. IANA will forward the request to the expert mailing list described in [RFC 8447, Section 17] and track its progress. See the registration procedure table below for more information.
Note
Any TLS entry added after the IESG approves publication of [RFC-ietf-tls-tls12-frozen-08] is intended for TLS 1.3 or later, and makes no similar requirementon DTLS. Such entries should have an informal indication like "For TLS 1.3 or later" in that entry, such as the "Comment" column.
Available Formats

CSV
RangeRegistration Procedures
0-63Standards Action
64-223Specification Required
224-255Reserved for Private Use
ValueDescriptionDTLS-OKReferenceComment
0-63Unassigned
64upn_domain_hintY[RFC4681]
65-223Unassigned
224-255Reserved for Private Use[RFC4681]

TLS SignatureAlgorithm

Expert(s)
Yoav Nir, Rich Salz, Nick Sullivan
Reference
[RFC5246][RFC8447][RFC9155][RFC-ietf-tls-tls12-frozen-08][RFC9847]
Note
If the "Specification Required" [RFC8126] procedure applies, registration requests can be sent to iana@iana.org or submitted via IANA's [application form], per [RFC9847]. IANA will forward the submission to the expert mailing list described in [RFC 8447, Section 17] and track its progress. See the registration procedure table below for more information.
Note
The values in this registry are only applicable to (D)TLSprotocol versions prior to 1.3.  (D)TLS 1.3 and later versions'values are registered in the TLS SignatureScheme registry.
WARNING
Cryptographic algorithms and parameters will be broken orweakened over time.  Blindly implementing the cryptographic algorithms listed here is not advised.  Implementers and users need to check that the cryptographic algorithms listed continue to provide the expected level of security.
Note
Any TLS entry added after the IESG approves publication of [RFC-ietf-tls-tls12-frozen-08] is intended for TLS 1.3 or later, and makes no similar requirementon DTLS. Such entries should have an informal indication like "For TLS 1.3 or later" in that entry, such as the "Comment" column.
Note
If the "Recommended" column is set to "N", it does not necessarily mean that it is flawed; rather, it indicates that the item either has not been through the IETF consensus process, has limited applicability, or is intended only for specific use cases. If the "Recommended" column is set to "D," the item is discouraged and SHOULD NOT or MUST NOT be used, depending upon the situation; consult the item's references for clarity.
Available Formats

CSV
RangeRegistration Procedures
0-223 ("Recommended" set to/transitioning from "Y" or "D")Either Standards Action with Expert Review or IESG Approval
0-223 ("Recommended" set to "N," not transitioning from another value)Specification Required
224-255Reserved for Private Use
ValueDescriptionDTLS-OKRecommendedReferenceComment
0anonymousYN[RFC5246][RFC9847]
1rsaYY[RFC5246][RFC9847]
2dsaYN[RFC5246][RFC9847]
3ecdsaYY[RFC5246][RFC9847]
4-6Reserved[RFC8447]
7ed25519YY[RFC8422][RFC9847]
8ed448YY[RFC8422][RFC9847]
9-63Reserved[RFC8447]
64gostr34102012_256YN[1][RFC9189][RFC9847]
65gostr34102012_512YN[1][RFC9189][RFC9847]
66-223Reserved[RFC8447]
224-255Reserved for Private Use[RFC5246]

TLS HashAlgorithm

Expert(s)
Yoav Nir, Rich Salz, Nick Sullivan
Reference
[RFC5246][RFC8447][RFC9155][RFC-ietf-tls-tls12-frozen-08][RFC9847]
Note
If the "Specification Required" [RFC8126] procedure applies, registration requests can be sent to iana@iana.org or submitted via IANA's [application form], per [RFC9847]. IANA will forward the submission to the expert mailing list described in [RFC 8447, Section 17] and track its progress. See the registration procedure table below for more information.
Note
The values in this registry are only applicable to (D)TLSprotocol versions prior to 1.3.  (D)TLS 1.3 and later versions'values are registered in the TLS SignatureScheme registry.
WARNING
Cryptographic algorithms and parameters will be broken orweakened over time.  Blindly implementing the cryptographic algorithms listed here is not advised.  Implementers and users need to check that the cryptographic algorithms listed continue to provide the expected level of security.
Note
Any TLS entry added after the IESG approves publication of [RFC-ietf-tls-tls12-frozen-08] is intended for TLS 1.3 or later, and makes no similar requirementon DTLS. Such entries should have an informal indication like "For TLS 1.3 or later" in that entry, such as the "Comment" column.
Note
If the "Recommended" column is set to "N", it does not necessarily mean that it is flawed; rather, it indicates that the item either has not been through the IETF consensus process, has limited applicability, or is intended only for specific use cases. If the "Recommended" column is set to "D," the item is discouraged and SHOULD NOT or MUST NOT be used, depending upon the situation; consult the item's references for clarity.
Available Formats

CSV
RangeRegistration Procedures
0-223 ("Recommended" set to/transitioning from "Y" or "D")Either Standards Action with Expert Review or IESG Approval
0-223 ("Recommended" set to "N," not transitioning from another value)Specification Required
224-255Reserved for Private Use
ValueDescriptionDTLS-OKRecommendedReferenceComment
0noneYY[RFC5246][RFC9847]
1md5YD[RFC5246][RFC9847]
2sha1YD[RFC5246][RFC9847]
3sha224YD[RFC5246][RFC9847]
4sha256YY[RFC5246][RFC9847]
5sha384YY[RFC5246][RFC9847]
6sha512YY[RFC5246][RFC9847]
7Reserved[RFC8447]
8IntrinsicYY[RFC8422][RFC9847]
9-223Reserved[RFC8447]
224-255Reserved for Private Use[RFC5246]

TLS Exporter Labels

Expert(s)
Yoav Nir, Rich Salz, Nick Sullivan
Reference
[RFC5705][RFC8447][RFC9847]
Note
If the "Expert Review" [RFC8126] procedure applies, registration requests can be sent to iana@iana.org or submitted via IANA's [application form], per [RFC9847]. IANA will forward the submission to the expert mailing list described in [RFC 8447, Section 17] and track its progress. See the registration procedure table below for more information.
Note
(1) These entries are reserved and MUST NOT be used for the purpose described in [RFC5705], in order to avoid confusion with similar, but distinct use in [RFC5246].
Note
[RFC5705] defines keying material exporters for TLS in termsof the TLS PRF.  [RFC-ietf-tls-rfc8446bis-13] replaced the PRF with HKDF,thus requiring a new construction.  The exporter interface remainsthe same; however, the value is computed differently.
Note
The role of the designated expert is described in [RFC 8447, Section 17]. Even though this registry does not require a specification, the designated expert [RFC8126] will strongly encourage registrants to provide a link to a publicly available specification. An Internet-Draft (that is posted and never published as an RFC) or a document from another standards body, industry consortium, university site, etc. are suitable for these purposes. The expert may provide more in-depth reviews, but their approval should not be taken as an endorsement of the exporter label. The expert also verifies that the label is a string consisting of printable ASCII characters beginning with "EXPORTER". IANA MUST also verify that one label is not a prefix of any other label. For example, labels "key" or "master secretary" are forbidden.
Note
If the "Recommended" column is set to "N", it does not necessarily mean that it is flawed; rather, it indicates that the item either has not been through the IETF consensus process, has limited applicability, or is intended only for specific use cases. If the "Recommended" column is set to "D," the item is discouraged and SHOULD NOT or MUST NOT be used, depending upon the situation; consult the item's references for clarity.
Available Formats

CSV
RangeRegistration Procedures
"Recommended" set to/transitioning from "Y" or "D"Either Standards Action With Expert Review or IESG Approval
"Recommended" set to "N," not transitioning from another valueExpert Review
ValueDTLS-OKRecommendedReferenceComment
client finishedYY[RFC5246](1)
server finishedYY[RFC5246](1)
master secretYY[RFC5246](1)
key expansionYY[RFC5246](1)
client EAP encryptionNY[RFC5216][RFC6347]
ttls keying materialNN[RFC5281][RFC6347]
ttls challengeNN[RFC5281][RFC6347]
EXTRACTOR-dtls_srtpYY[RFC5764]
EXPORTER_DTLS_OVER_SCTPYY[RFC6083]
EXPORTER-ETSI-TC-M2M-BootstrapYN[TS 102 921 v2.0.3][Miguel_Angel_Reina_Ortega]
EXPORTER-ETSI-TC-M2M-ConnectionYN[TS 102 921 v2.0.3][Miguel_Angel_Reina_Ortega]
TLS_MK_ExtrYN[TR 33.222][Silke_Holtmanns]
EXPORTER_GBA_DigestYN[TS 33.220 Annex M.6][Silke_Holtmanns]
EXPORTER: teap session key seedNY[RFC-ietf-emu-rfc7170bis-19]
EXPORTER-oneM2M-BootstrapYN[oneM2M Security Solutions][Miguel_Angel_Reina_Ortega]
EXPORTER-oneM2M-ConnectionYN[oneM2M Security Solutions][Miguel_Angel_Reina_Ortega]
EXPORTER-oneM2M-ESCertKEYN[oneM2M Security Solutions][Miguel_Angel_Reina_Ortega]
EXPORTER-Token-BindingYY[RFC8471]
EXPORTER-BBF-Dying-GaspNN[TR-301 Issue 2 Amendment 1]
EXPORTER-network-time-securityYY[RFC8915, Section 4.3]
EXPORTER_3GPP_N32_MASTERNN[3GPP TS 33.501]
EXPORTER-ACE-MQTT-Sign-ChallengeNN[RFC9431]
EXPORTER_EAP_TLS_Key_MaterialNY[RFC9190]
EXPORTER_EAP_TLS_Method-IdNY[RFC9190]
EXPORTER-BBF-USP-RecordNN[TR-369][Broadband_Forum]
EXPORTER-client authenticator handshake contextYY[RFC9261]
EXPORTER-server authenticator handshake contextYY[RFC9261]
EXPORTER-client authenticator finished keyYY[RFC9261]
EXPORTER-server authenticator finished keyYY[RFC9261]
EXPORTER-Channel-BindingYY[RFC9266]
EXPORTER: teap session key seedNY[RFC9427]
EXPORTER: Inner Methods Compound KeysNY[RFC9427]
EXPORTER: Session Key Generating FunctionNY[RFC9427]
EXPORTER: Extended Session Key Generating FunctionNY[RFC9427]
TEAPbindkey@ietf.orgNY[RFC9427]
EXPORTER-HTTP-Concealed-AuthenticationNY[RFC9729]

TLS Authorization Data Formats

Expert(s)
Yoav Nir, Rich Salz, Nick Sullivan
Reference
[RFC5878][RFC8447][RFC-ietf-tls-tls12-frozen-08][RFC9847]
Note
Requests for registration in the "Specification Required" [RFC8126] range should be sent to iana@iana.org or submitted via IANA's [application form], per [RFC9847]. IANA will forward the request to the expert mailing list described in [RFC 8447, Section 17] and track its progress. See the registration procedure table below for more information.
Note
Any TLS entry added after the IESG approves publication of [RFC-ietf-tls-tls12-frozen-08] is intended for TLS 1.3 or later, and makes no similar requirementon DTLS. Such entries should have an informal indication like "For TLS 1.3 or later" in that entry, such as the "Comment" column.
Available Formats

CSV
RangeRegistration Procedures
0-63IETF Review
64-223Specification Required
224-255Reserved for Private Use
ValueDescriptionDTLS-OKReferenceComment
0x509_attr_certY[RFC5878]
1saml_assertionY[RFC5878]
2x509_attr_cert_urlY[RFC5878]
3saml_assertion_urlY[RFC5878]
4-63Unassigned
64keynote_assertion_listY[RFC6042]
65keynote_assertion_list_urlY[RFC6042]
66dtcp_authorizationY[RFC7562]
67-223Unassigned
224-255Reserved for Private Use[RFC5878]

TLS Heartbeat Message Types

Registration Procedure(s)
Expert Review
Expert(s)
Yoav Nir, Rich Salz, Nick Sullivan
Reference
[RFC6520][RFC8447][RFC-ietf-tls-tls12-frozen-08][RFC9847]
Note
Registration requests should be sent to iana@iana.org or submitted via IANA's [application form], per [RFC9847]. IANA will forward the request to the expert mailing list described in [RFC 8447, Section 17] and track its progress.
Note
Any TLS entry added after the IESG approves publication of [RFC-ietf-tls-tls12-frozen-08] is intended for TLS 1.3 or later, and makes no similar requirementon DTLS. Such entries should have an informal indication like "For TLS 1.3 or later" in that entry, such as the "Comment" column.
Available Formats

CSV
ValueDescriptionDTLS-OKReferenceComment
0Reserved[RFC6520]
1heartbeat_requestY[RFC6520]
2heartbeat_responseY[RFC6520]
3-254Unassigned
255Reserved[RFC6520]

TLS Heartbeat Modes

Registration Procedure(s)
Expert Review
Expert(s)
Yoav Nir, Rich Salz, Nick Sullivan
Reference
[RFC6520][RFC8447][RFC-ietf-tls-tls12-frozen-08][RFC9847]
Note
Registration requests should be sent to iana@iana.org or submitted via IANA's [application form], per [RFC9847]. IANA will forward the request to the expert mailing list described in [RFC 8447, Section 17] and track its progress.
Note
Any TLS entry added after the IESG approves publication of [RFC-ietf-tls-tls12-frozen-08] is intended for TLS 1.3 or later, and makes no similar requirementon DTLS. Such entries should have an informal indication like "For TLS 1.3 or later" in that entry, such as the "Comment" column.
Available Formats

CSV
ValueDescriptionDTLS-OKReferenceComment
0Reserved[RFC6520]
1peer_allowed_to_sendY[RFC6520]
2peer_not_allowed_to_sendY[RFC6520]
3-254Unassigned
255Reserved[RFC6520]

TLS SignatureScheme

Expert(s)
Yoav Nir, Rich Salz, Nick Sullivan
Reference
[RFC-ietf-tls-rfc8446bis-13][RFC-ietf-tls-tls12-frozen-08][RFC9847]
Note
If the "Specification Required" [RFC8126] procedure applies, registration requests can be sent to iana@iana.org or submitted via IANA's [application form], per [RFC9847]. IANA will forward the submission to the expert mailing list described in [RFC 8447, Section 17] and track its progress. See the registration procedure table below for more information.
WARNING
Cryptographic algorithms and parameters will be broken orweakened over time.  Blindly implementing signature schemes listed here is not advised.  Implementers and users need to check that the cryptographic algorithms listed continue to provide the expected level of security.
Note
As specified in [RFC8126], assignments made in the Private Usespace are not generally useful for broad interoperability.  It isthe responsibility of those making use of the Private Use range toensure that no conflicts occur (within the intended scope of use).For widespread experiments, temporary reservations are available.
Note
Any TLS entry added after the IESG approves publication of [RFC-ietf-tls-tls12-frozen-08] is intended for TLS 1.3 or later, and makes no similar requirementon DTLS. Such entries should have an informal indication like "For TLS 1.3 or later" in that entry, such as the "Comment" column.
Note
If the "Recommended" column is set to "N", it does not necessarily mean that it is flawed; rather, it indicates that the item either has not been through the IETF consensus process, has limited applicability, or is intended only for specific use cases. If the "Recommended" column is set to "D," the item is discouraged and SHOULD NOT or MUST NOT be used, depending upon the situation; consult the item's references for clarity.
Available Formats

CSV
RangeRegistration Procedures
"Recommended" set to/transitioning from "Y" or "D"Either Standards Action With Expert Review or IESG Approval
"Recommended" set to "N," not transitioning from another valueSpecification Required
ValueDescriptionRecommendedReferenceComment
0x0000-0x0200Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x0201rsa_pkcs1_sha1N[RFC-ietf-tls-rfc8446bis-13][RFC9155]
0x0202Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x0203ecdsa_sha1N[RFC-ietf-tls-rfc8446bis-13][RFC9155]
0x0204-0x0400Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x0401rsa_pkcs1_sha256Y[RFC-ietf-tls-rfc8446bis-13]
0x0402Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x0403ecdsa_secp256r1_sha256Y[RFC-ietf-tls-rfc8446bis-13]
0x0404-0x041FReserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x0420rsa_pkcs1_sha256_legacyN[RFC-ietf-tls-tls13-pkcs1-07]
0x0421-0x0500Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x0501rsa_pkcs1_sha384Y[RFC-ietf-tls-rfc8446bis-13]
0x0502Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x0503ecdsa_secp384r1_sha384Y[RFC-ietf-tls-rfc8446bis-13]
0x0504-0x051FReserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x0520rsa_pkcs1_sha384_legacyN[RFC-ietf-tls-tls13-pkcs1-07]
0x0521-0x0600Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x0601rsa_pkcs1_sha512Y[RFC-ietf-tls-rfc8446bis-13]
0x0602Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x0603ecdsa_secp521r1_sha512Y[RFC-ietf-tls-rfc8446bis-13]
0x0604-0x061FReserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x0620rsa_pkcs1_sha512_legacyN[RFC-ietf-tls-tls13-pkcs1-07]
0x0621-0x0703Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x0704eccsi_sha256N[draft-wang-tls-raw-public-key-with-ibc-02]
0x0705iso_ibs1N[draft-wang-tls-raw-public-key-with-ibc-02]
0x0706iso_ibs2N[draft-wang-tls-raw-public-key-with-ibc-02]
0x0707iso_chinese_ibsN[draft-wang-tls-raw-public-key-with-ibc-02]
0x0708sm2sig_sm3N[RFC8998]
0x0709gostr34102012_256aN[RFC9367]
0x070Agostr34102012_256bN[RFC9367]
0x070Bgostr34102012_256cN[RFC9367]
0x070Cgostr34102012_256dN[RFC9367]
0x070Dgostr34102012_512aN[RFC9367]
0x070Egostr34102012_512bN[RFC9367]
0x070Fgostr34102012_512cN[RFC9367]
0x0710-0x07FFUnassigned
0x0800-0x0803Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x0804rsa_pss_rsae_sha256Y[RFC-ietf-tls-rfc8446bis-13]
0x0805rsa_pss_rsae_sha384Y[RFC-ietf-tls-rfc8446bis-13]
0x0806rsa_pss_rsae_sha512Y[RFC-ietf-tls-rfc8446bis-13]
0x0807ed25519Y[RFC-ietf-tls-rfc8446bis-13]
0x0808ed448Y[RFC-ietf-tls-rfc8446bis-13]
0x0809rsa_pss_pss_sha256Y[RFC-ietf-tls-rfc8446bis-13]
0x080Arsa_pss_pss_sha384Y[RFC-ietf-tls-rfc8446bis-13]
0x080Brsa_pss_pss_sha512Y[RFC-ietf-tls-rfc8446bis-13]
0x080C-0x0819Unassigned
0x081Aecdsa_brainpoolP256r1tls13_sha256N[RFC8734]
0x081Becdsa_brainpoolP384r1tls13_sha384N[RFC8734]
0x081Cecdsa_brainpoolP512r1tls13_sha512N[RFC8734]
0x081D-0x083FUnassigned
0x0840Reserved for backward compatibilityN[RFC9189]
0x0841Reserved for backward compatibilityN[RFC9189]
0x0842-0x08FFUnassigned
0x0900-0x0903Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x0904mldsa44N[draft-ietf-tls-mldsa-00]
0x0905mldsa65N[draft-ietf-tls-mldsa-00]
0x0906mldsa87N[draft-ietf-tls-mldsa-00]
0x0907-0x0910Unassigned
0x0911slhdsa_sha2_128sN[draft-reddy-tls-slhdsa-01]
0x0912slhdsa_sha2_128fN[draft-reddy-tls-slhdsa-01]
0x0913slhdsa_sha2_192sN[draft-reddy-tls-slhdsa-01]
0x0914slhdsa_sha2_192fN[draft-reddy-tls-slhdsa-01]
0x0915slhdsa_sha2_256sN[draft-reddy-tls-slhdsa-01]
0x0916slhdsa_sha2_256fN[draft-reddy-tls-slhdsa-01]
0x0917slhdsa_shake_128sN[draft-reddy-tls-slhdsa-01]
0x0918slhdsa_shake_128fN[draft-reddy-tls-slhdsa-01]
0x0919slhdsa_shake_192sN[draft-reddy-tls-slhdsa-01]
0x091Aslhdsa_shake_192fN[draft-reddy-tls-slhdsa-01]
0x091Bslhdsa_shake_256sN[draft-reddy-tls-slhdsa-01]
0x091Cslhdsa_shake_256fN[draft-reddy-tls-slhdsa-01]
0x091D-0x09FFUnassigned
0x0A00-0x0A03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x0A04-0x0AFFUnassigned
0x0B00-0x0B03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x0B04-0x0BFFUnassigned
0x0C00-0x0C03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x0C04-0x0CFFUnassigned
0x0D00-0x0D03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x0D04-0x0DFFUnassigned
0x0E00-0x0E03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x0E04-0x0EFFUnassigned
0x0F00-0x0F03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x0F04-0x0FFFUnassigned
0x1000-0x1003Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x1004-0x10FFUnassigned
0x1100-0x1103Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x1104-0x11FFUnassigned
0x1200-0x1203Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x1204-0x12FFUnassigned
0x1300-0x1303Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x1304-0x13FFUnassigned
0x1400-0x1403Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x1404-0x14FFUnassigned
0x1500-0x1503Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x1504-0x15FFUnassigned
0x1600-0x1603Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x1604-0x16FFUnassigned
0x1700-0x1703Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x1704-0x17FFUnassigned
0x1800-0x1803Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x1804-0x18FFUnassigned
0x1900-0x1903Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x1904-0x19FFUnassigned
0x1A00-0x1A03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x1A04-0x1AFFUnassigned
0x1B00-0x1B03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x1B04-0x1BFFUnassigned
0x1C00-0x1C03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x1C04-0x1CFFUnassigned
0x1D00-0x1D03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x1D04-0x1DFFUnassigned
0x1E00-0x1E03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x1E04-0x1EFFUnassigned
0x1F00-0x1F03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x1F04-0x1FFFUnassigned
0x2000-0x2003Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x2004-0x20FFUnassigned
0x2100-0x2103Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x2104-0x21FFUnassigned
0x2200-0x2203Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x2204-0x22FFUnassigned
0x2300-0x2303Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x2304-0x23FFUnassigned
0x2400-0x2403Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x2404-0x24FFUnassigned
0x2500-0x2503Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x2504-0x25FFUnassigned
0x2600-0x2603Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x2604-0x26FFUnassigned
0x2700-0x2703Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x2704-0x27FFUnassigned
0x2800-0x2803Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x2804-0x28FFUnassigned
0x2900-0x2903Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x2904-0x29FFUnassigned
0x2A00-0x2A03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x2A04-0x2AFFUnassigned
0x2B00-0x2B03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x2B04-0x2BFFUnassigned
0x2C00-0x2C03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x2C04-0x2CFFUnassigned
0x2D00-0x2D03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x2D04-0x2DFFUnassigned
0x2E00-0x2E03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x2E04-0x2EFFUnassigned
0x2F00-0x2F03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x2F04-0x2FFFUnassigned
0x3000-0x3003Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x3004-0x30FFUnassigned
0x3100-0x3103Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x3104-0x31FFUnassigned
0x3200-0x3203Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x3204-0x32FFUnassigned
0x3300-0x3303Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x3304-0x33FFUnassigned
0x3400-0x3403Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x3404-0x34FFUnassigned
0x3500-0x3503Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x3504-0x35FFUnassigned
0x3600-0x3603Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x3604-0x36FFUnassigned
0x3700-0x3703Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x3704-0x37FFUnassigned
0x3800-0x3803Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x3804-0x38FFUnassigned
0x3900-0x3903Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x3904-0x39FFUnassigned
0x3A00-0x3A03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x3A04-0x3AFFUnassigned
0x3B00-0x3B03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x3B04-0x3BFFUnassigned
0x3C00-0x3C03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x3C04-0x3CFFUnassigned
0x3D00-0x3D03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x3D04-0x3DFFUnassigned
0x3E00-0x3E03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x3E04-0x3EFFUnassigned
0x3F00-0x3F03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x3F04-0x3FFFUnassigned
0x4000-0x4003Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x4004-0x40FFUnassigned
0x4100-0x4103Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x4104-0x41FFUnassigned
0x4200-0x4203Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x4204-0x42FFUnassigned
0x4300-0x4303Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x4304-0x43FFUnassigned
0x4400-0x4403Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x4404-0x44FFUnassigned
0x4500-0x4503Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x4504-0x45FFUnassigned
0x4600-0x4603Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x4604-0x46FFUnassigned
0x4700-0x4703Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x4704-0x47FFUnassigned
0x4800-0x4803Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x4804-0x48FFUnassigned
0x4900-0x4903Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x4904-0x49FFUnassigned
0x4A00-0x4A03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x4A04-0x4AFFUnassigned
0x4B00-0x4B03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x4B04-0x4BFFUnassigned
0x4C00-0x4C03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x4C04-0x4CFFUnassigned
0x4D00-0x4D03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x4D04-0x4DFFUnassigned
0x4E00-0x4E03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x4E04-0x4EFFUnassigned
0x4F00-0x4F03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x4F04-0x4FFFUnassigned
0x5000-0x5003Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x5004-0x50FFUnassigned
0x5100-0x5103Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x5104-0x51FFUnassigned
0x5200-0x5203Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x5204-0x52FFUnassigned
0x5300-0x5303Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x5304-0x53FFUnassigned
0x5400-0x5403Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x5404-0x54FFUnassigned
0x5500-0x5503Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x5504-0x55FFUnassigned
0x5600-0x5603Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x5604-0x56FFUnassigned
0x5700-0x5703Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x5704-0x57FFUnassigned
0x5800-0x5803Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x5804-0x58FFUnassigned
0x5900-0x5903Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x5904-0x59FFUnassigned
0x5A00-0x5A03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x5A04-0x5AFFUnassigned
0x5B00-0x5B03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x5B04-0x5BFFUnassigned
0x5C00-0x5C03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x5C04-0x5CFFUnassigned
0x5D00-0x5D03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x5D04-0x5DFFUnassigned
0x5E00-0x5E03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x5E04-0x5EFFUnassigned
0x5F00-0x5F03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x5F04-0x5FFFUnassigned
0x6000-0x6003Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x6004-0x60FFUnassigned
0x6100-0x6103Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x6104-0x61FFUnassigned
0x6200-0x6203Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x6204-0x62FFUnassigned
0x6300-0x6303Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x6304-0x63FFUnassigned
0x6400-0x6403Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x6404-0x64FFUnassigned
0x6500-0x6503Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x6504-0x65FFUnassigned
0x6600-0x6603Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x6604-0x66FFUnassigned
0x6700-0x6703Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x6704-0x67FFUnassigned
0x6800-0x6803Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x6804-0x68FFUnassigned
0x6900-0x6903Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x6904-0x69FFUnassigned
0x6A00-0x6A03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x6A04-0x6AFFUnassigned
0x6B00-0x6B03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x6B04-0x6BFFUnassigned
0x6C00-0x6C03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x6C04-0x6CFFUnassigned
0x6D00-0x6D03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x6D04-0x6DFFUnassigned
0x6E00-0x6E03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x6E04-0x6EFFUnassigned
0x6F00-0x6F03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x6F04-0x6FFFUnassigned
0x7000-0x7003Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x7004-0x70FFUnassigned
0x7100-0x7103Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x7104-0x71FFUnassigned
0x7200-0x7203Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x7204-0x72FFUnassigned
0x7300-0x7303Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x7304-0x73FFUnassigned
0x7400-0x7403Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x7404-0x74FFUnassigned
0x7500-0x7503Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x7504-0x75FFUnassigned
0x7600-0x7603Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x7604-0x76FFUnassigned
0x7700-0x7703Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x7704-0x77FFUnassigned
0x7800-0x7803Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x7804-0x78FFUnassigned
0x7900-0x7903Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x7904-0x79FFUnassigned
0x7A00-0x7A03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x7A04-0x7AFFUnassigned
0x7B00-0x7B03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x7B04-0x7BFFUnassigned
0x7C00-0x7C03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x7C04-0x7CFFUnassigned
0x7D00-0x7D03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x7D04-0x7DFFUnassigned
0x7E00-0x7E03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x7E04-0x7EFFUnassigned
0x7F00-0x7F03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x7F04-0x7FFFUnassigned
0x8000-0x8003Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x8004-0x80FFUnassigned
0x8100-0x8103Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x8104-0x81FFUnassigned
0x8200-0x8203Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x8204-0x82FFUnassigned
0x8300-0x8303Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x8304-0x83FFUnassigned
0x8400-0x8403Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x8404-0x84FFUnassigned
0x8500-0x8503Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x8504-0x85FFUnassigned
0x8600-0x8603Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x8604-0x86FFUnassigned
0x8700-0x8703Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x8704-0x87FFUnassigned
0x8800-0x8803Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x8804-0x88FFUnassigned
0x8900-0x8903Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x8904-0x89FFUnassigned
0x8A00-0x8A03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x8A04-0x8AFFUnassigned
0x8B00-0x8B03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x8B04-0x8BFFUnassigned
0x8C00-0x8C03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x8C04-0x8CFFUnassigned
0x8D00-0x8D03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x8D04-0x8DFFUnassigned
0x8E00-0x8E03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x8E04-0x8EFFUnassigned
0x8F00-0x8F03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x8F04-0x8FFFUnassigned
0x9000-0x9003Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x9004-0x90FFUnassigned
0x9100-0x9103Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x9104-0x91FFUnassigned
0x9200-0x9203Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x9204-0x92FFUnassigned
0x9300-0x9303Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x9304-0x93FFUnassigned
0x9400-0x9403Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x9404-0x94FFUnassigned
0x9500-0x9503Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x9504-0x95FFUnassigned
0x9600-0x9603Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x9604-0x96FFUnassigned
0x9700-0x9703Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x9704-0x97FFUnassigned
0x9800-0x9803Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x9804-0x98FFUnassigned
0x9900-0x9903Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x9904-0x99FFUnassigned
0x9A00-0x9A03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x9A04-0x9AFFUnassigned
0x9B00-0x9B03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x9B04-0x9BFFUnassigned
0x9C00-0x9C03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x9C04-0x9CFFUnassigned
0x9D00-0x9D03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x9D04-0x9DFFUnassigned
0x9E00-0x9E03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x9E04-0x9EFFUnassigned
0x9F00-0x9F03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0x9F04-0x9FFFUnassigned
0xA000-0xA003Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xA004-0xA0FFUnassigned
0xA100-0xA103Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xA104-0xA1FFUnassigned
0xA200-0xA203Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xA204-0xA2FFUnassigned
0xA300-0xA303Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xA304-0xA3FFUnassigned
0xA400-0xA403Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xA404-0xA4FFUnassigned
0xA500-0xA503Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xA504-0xA5FFUnassigned
0xA600-0xA603Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xA604-0xA6FFUnassigned
0xA700-0xA703Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xA704-0xA7FFUnassigned
0xA800-0xA803Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xA804-0xA8FFUnassigned
0xA900-0xA903Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xA904-0xA9FFUnassigned
0xAA00-0xAA03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xAA04-0xAAFFUnassigned
0xAB00-0xAB03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xAB04-0xABFFUnassigned
0xAC00-0xAC03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xAC04-0xACFFUnassigned
0xAD00-0xAD03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xAD04-0xADFFUnassigned
0xAE00-0xAE03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xAE04-0xAEFFUnassigned
0xAF00-0xAF03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xAF04-0xAFFFUnassigned
0xB000-0xB003Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xB004-0xB0FFUnassigned
0xB100-0xB103Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xB104-0xB1FFUnassigned
0xB200-0xB203Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xB204-0xB2FFUnassigned
0xB300-0xB303Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xB304-0xB3FFUnassigned
0xB400-0xB403Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xB404-0xB4FFUnassigned
0xB500-0xB503Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xB504-0xB5FFUnassigned
0xB600-0xB603Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xB604-0xB6FFUnassigned
0xB700-0xB703Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xB704-0xB7FFUnassigned
0xB800-0xB803Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xB804-0xB8FFUnassigned
0xB900-0xB903Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xB904-0xB9FFUnassigned
0xBA00-0xBA03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xBA04-0xBAFFUnassigned
0xBB00-0xBB03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xBB04-0xBBFFUnassigned
0xBC00-0xBC03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xBC04-0xBCFFUnassigned
0xBD00-0xBD03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xBD04-0xBDFFUnassigned
0xBE00-0xBE03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xBE04-0xBEFFUnassigned
0xBF00-0xBF03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xBF04-0xBFFFUnassigned
0xC000-0xC003Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xC004-0xC0FFUnassigned
0xC100-0xC103Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xC104-0xC1FFUnassigned
0xC200-0xC203Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xC204-0xC2FFUnassigned
0xC300-0xC303Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xC304-0xC3FFUnassigned
0xC400-0xC403Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xC404-0xC4FFUnassigned
0xC500-0xC503Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xC504-0xC5FFUnassigned
0xC600-0xC603Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xC604-0xC6FFUnassigned
0xC700-0xC703Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xC704-0xC7FFUnassigned
0xC800-0xC803Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xC804-0xC8FFUnassigned
0xC900-0xC903Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xC904-0xC9FFUnassigned
0xCA00-0xCA03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xCA04-0xCAFFUnassigned
0xCB00-0xCB03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xCB04-0xCBFFUnassigned
0xCC00-0xCC03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xCC04-0xCCFFUnassigned
0xCD00-0xCD03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xCD04-0xCDFFUnassigned
0xCE00-0xCE03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xCE04-0xCEFFUnassigned
0xCF00-0xCF03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xCF04-0xCFFFUnassigned
0xD000-0xD003Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xD004-0xD0FFUnassigned
0xD100-0xD103Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xD104-0xD1FFUnassigned
0xD200-0xD203Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xD204-0xD2FFUnassigned
0xD300-0xD303Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xD304-0xD3FFUnassigned
0xD400-0xD403Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xD404-0xD4FFUnassigned
0xD500-0xD503Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xD504-0xD5FFUnassigned
0xD600-0xD603Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xD604-0xD6FFUnassigned
0xD700-0xD703Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xD704-0xD7FFUnassigned
0xD800-0xD803Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xD804-0xD8FFUnassigned
0xD900-0xD903Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xD904-0xD9FFUnassigned
0xDA00-0xDA03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xDA04-0xDAFFUnassigned
0xDB00-0xDB03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xDB04-0xDBFFUnassigned
0xDC00-0xDC03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xDC04-0xDCFFUnassigned
0xDD00-0xDD03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xDD04-0xDDFFUnassigned
0xDE00-0xDE03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xDE04-0xDEFFUnassigned
0xDF00-0xDF03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xDF04-0xDFFFUnassigned
0xE000-0xE003Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xE004-0xE0FFUnassigned
0xE100-0xE103Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xE104-0xE1FFUnassigned
0xE200-0xE203Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xE204-0xE2FFUnassigned
0xE300-0xE303Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xE304-0xE3FFUnassigned
0xE400-0xE403Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xE404-0xE4FFUnassigned
0xE500-0xE503Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xE504-0xE5FFUnassigned
0xE600-0xE603Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xE604-0xE6FFUnassigned
0xE700-0xE703Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xE704-0xE7FFUnassigned
0xE800-0xE803Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xE804-0xE8FFUnassigned
0xE900-0xE903Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xE904-0xE9FFUnassigned
0xEA00-0xEA03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xEA04-0xEAFFUnassigned
0xEB00-0xEB03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xEB04-0xEBFFUnassigned
0xEC00-0xEC03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xEC04-0xECFFUnassigned
0xED00-0xED03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xED04-0xEDFFUnassigned
0xEE00-0xEE03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xEE04-0xEEFFUnassigned
0xEF00-0xEF03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xEF04-0xEFFFUnassigned
0xF000-0xF003Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xF004-0xF0FFUnassigned
0xF100-0xF103Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xF104-0xF1FFUnassigned
0xF200-0xF203Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xF204-0xF2FFUnassigned
0xF300-0xF303Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xF304-0xF3FFUnassigned
0xF400-0xF403Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xF404-0xF4FFUnassigned
0xF500-0xF503Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xF504-0xF5FFUnassigned
0xF600-0xF603Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xF604-0xF6FFUnassigned
0xF700-0xF703Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xF704-0xF7FFUnassigned
0xF800-0xF803Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xF804-0xF8FFUnassigned
0xF900-0xF903Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xF904-0xF9FFUnassigned
0xFA00-0xFA03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xFA04-0xFAFFUnassigned
0xFB00-0xFB03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xFB04-0xFBFFUnassigned
0xFC00-0xFC03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xFC04-0xFCFFUnassigned
0xFD00-0xFD03Reserved for backward compatibility[RFC-ietf-tls-rfc8446bis-13]
0xFD04-0xFDFFUnassigned
0xFE00-0xFFFFReserved for Private Use[RFC-ietf-tls-rfc8446bis-13]

TLS PskKeyExchangeMode

Expert(s)
Yoav Nir, Rich Salz, Nick Sullivan
Reference
[RFC-ietf-tls-rfc8446bis-13][RFC-ietf-tls-tls12-frozen-08][RFC9847]
Note
If the "Specification Required" [RFC8126] procedure applies, registration requests can be sent to iana@iana.org or submitted via IANA's [application form], per [RFC9847]. IANA will forward the submission to the expert mailing list described in [RFC 8447, Section 17] and track its progress. See the registration procedure table below for more information.
Note
If the "Recommended" column is set to "N", it does not necessarily mean that it is flawed; rather, it indicates that the item either has not been through the IETF consensus process, has limited applicability, or is intended only for specific use cases. If the "Recommended" column is set to "D," the item is discouraged and SHOULD NOT or MUST NOT be used, depending upon the situation; consult the item's references for clarity.
Note
The role of the designated expert is described in [RFC8447].The designated expert [RFC8126] ensures that the specification ispublicly available.  It is sufficient to have an Internet-Draft(that is posted and never published as an RFC) or a document fromanother standards body, industry consortium, university site, etc.The expert may provide more in depth reviews, but their approvalshould not be taken as an endorsement of the key exchange mode.
Note
Any TLS entry added after the IESG approves publication of [RFC-ietf-tls-tls12-frozen-08] is intended for TLS 1.3 or later, and makes no similar requirementon DTLS. Such entries should have an informal indication like "For TLS 1.3 or later" in that entry, such as the "Comment" column.
Available Formats

CSV
RangeRegistration Procedures
"Recommended" set to/transitioning from "Y" or "D"Either Standards Action With Expert Review or IESG Approval
"Recommended" set to "N," not transitioning from another valueSpecification Required
ValueDescriptionRecommendedReferenceComment
0psk_keY[RFC-ietf-tls-rfc8446bis-13]
1psk_dhe_keY[RFC-ietf-tls-rfc8446bis-13]
2-253Unassigned
254-255Reserved for Private Use[RFC-ietf-tls-rfc8446bis-13]

TLS KDF Identifiers

Expert(s)
Rich Salz, Nick Sullivan
Reference
[RFC9258][RFC-ietf-tls-tls12-frozen-08][RFC9847]
Note
Registration requests should be sent to iana@iana.org or submitted via IANA's [application form], per [RFC9847]. IANA will forward the request to the expert mailing list described in [RFC 8447, Section 17] and track its progress.
Note
Any TLS entry added after the IESG approves publication of [RFC-ietf-tls-tls12-frozen-08] is intended for TLS 1.3 or later, and makes no similar requirementon DTLS. Such entries should have an informal indication like "For TLS 1.3 or later" in that entry, such as the "Comment" column.
Available Formats

CSV
RangeRegistration Procedures
0x0000-0xfeffSpecification Required
0xff00-0xffffPrivate Use
ValueKDF DescriptionReferenceComment
0x0000Reserved[RFC9258]
0x0001HKDF_SHA256[RFC5869]
0x0002HKDF_SHA384[RFC5869]
0x0003-0xfeffUnassigned
0xff00-0xffffReserved for Private Use[RFC9258]

TLS SSLKEYLOGFILE Labels

Registration Procedure(s)
Specification Required
Expert(s)
Unassigned
Reference
[RFC-ietf-tls-keylogfile-05][RFC9847]
Note
Registration requests should be sent to iana@iana.org or submitted via IANA's [application form], per [RFC9847]. IANA will forward the request to the expert mailing list described in [RFC 8447, Section 17] and track its progress.
Available Formats

CSV
ValueDescriptionReferenceComment
CLIENT_RANDOMMaster secret in TLS 1.2 and earlier[RFC-ietf-tls-keylogfile-05]
CLIENT_EARLY_TRAFFIC_SECRETSecret for client early data records[RFC-ietf-tls-keylogfile-05]
EARLY_EXPORTER_SECRETEarly exporter secret[RFC-ietf-tls-keylogfile-05]
CLIENT_HANDSHAKE_TRAFFIC_SECRETSecret protecting client handshake[RFC-ietf-tls-keylogfile-05]
SERVER_HANDSHAKE_TRAFFIC_SECRETSecret protecting server handshake[RFC-ietf-tls-keylogfile-05]
CLIENT_TRAFFIC_SECRET_0Secret protecting client records post handshake[RFC-ietf-tls-keylogfile-05]
SERVER_TRAFFIC_SECRET_0Secret protecting server records post handshake[RFC-ietf-tls-keylogfile-05]
EXPORTER_SECRETExporter secret after handshake[RFC-ietf-tls-keylogfile-05]
ECH_SECRETHPKE KEM shared secret used in the ECH[RFC-ietf-tls-keylogfile-05]
ECH_CONFIGECHConfig used for construction of the ECH[RFC-ietf-tls-keylogfile-05]

TLS RRC Message Types

Registration Procedure(s)
Expert Review
Expert(s)
Unassigned
Reference
[RFC-ietf-tls-dtls-rrc-20]
Note
Registration requests should be sent to iana@iana.org or submitted via IANA's [application form], per [RFC9847]. IANA will forward the request to the expert mailing list described in [RFC 8447, Section 17] and track its progress.
Note
As specified in [RFC8126], assignments made in the Private Use space are not generally useful for broad interoperability. Those making use of thePrivate Use range are responsible for ensuring that no conflicts occurwithin the intended scope of use. For widespread experiments, provisionalregistrations (Section 4.13 of [RFC8126]) are available.
Available Formats

CSV
ValueDescriptionDTLS-OnlyRecommendedReferenceComment
0path_challengeYY[RFC-ietf-tls-dtls-rrc-20]
1path_responseYY[RFC-ietf-tls-dtls-rrc-20]
2path_dropYY[RFC-ietf-tls-dtls-rrc-20]
3-253Unassigned
254-255Reserved for Private UseY[RFC-ietf-tls-dtls-rrc-20]

Contact Information

IDNameContact URILast Updated
[Broadband_Forum]Broadband Forummailto:help&broadband-forum.org2022-03-25
[Miguel_Angel_Reina_Ortega]Miguel Angel Reina Ortegamailto:MiguelAngel.ReinaOrtega&etsi.org2018-02-16
[Pasi_Eronen]Pasi Eronenmailto:pasi.eronen&nokia.com2008-04-04
[Silke_Holtmanns]Silke Holtmannsmailto:Silke.Holtmanns&nokia.com2013-01-30

Footnote

[1]
These values were allocated from the Reserved state due to a misunderstanding of the difference between Reserved and Unallocated that went undetected for a long time.  Additional allocations from the Reserved state are not expected, and the TLS SignatureScheme registry is suitable for use for new allocations instead of this registry.

[8]ページ先頭

©2009-2026 Movatter.jp