LDAP-UX Client Services B.05.00 Administrator's Guide

and servers may support different cipher suites, or sets of ciphers, depending on a variety of
factors. The ciphers currently supported by LDAP-UX are listed in Table 2-5 (page 83).
Table 2-5 Supported ciphers
Message
authenticationKey lengthEncryptionKey exchangeVersion
MD5 (Message Digest
algorithm)
128RC4 (Rivest
encryption)
RSA (A public-key
algorithm for both
encryption and
authentication)
SSL3 and TLS
SHA1 (Secure Hash
Algorithm)
1683DES (Data
Encryption Standard
applied three times)
RSASSL3 and TLS
SHA156DES (Data Encryption
Standard)
RSASSL3 and TLS
MD540RC4RSASSL3 and TLS
MD540RC2RSASSL3 and TLS
SHA156RC4RSA (1024–bit public
key)
TLS
SHA156DESRSA (1024–bit public
key)
TLS
If vulnerabilities are discovered in cipher systems, administrators can use this list to determine
whether the cited vulnerabilities might affect their systems. If a cipher with a known vulnerability
is indeed being used, the appropriate administrator can disable the cipher in the central directory
server (not in LDAP-UX). For information about managing available ciphers for use with HP-UX
Directory Server, see the HP-UX Directory Server administrator guide.
2.4 Customized installation (setup) 83