Supported SSL security protocols and ciphers

Related Tags: security best practices api powered by developers

If you are connecting to the GoodData Platform from your tool or using our API, you should use supported Protocols and Ciphers. Otherwise, your connection will be refused during the SSL/TLS handshake.

priority ciphersuite protocols pfs_keysize
1ECDHE-RSA-AES256-GCM-SHA384TLSv1.2ECDH,P-256,256bits
2ECDHE-RSA-AES128-GCM-SHA256TLSv1.2ECDH,P-256,256bits
3DHE-RSA-AES256-GCM-SHA384TLSv1.2DH,1024bits
4DHE-RSA-AES128-GCM-SHA256TLSv1.2DH,1024bits
5ECDHE-RSA-AES256-SHA384TLSv1.2ECDH,P-256,256bits
6ECDHE-RSA-AES256-SHATLSv1,TLSv1.1,TLSv1.2ECDH,P-256,256bits
7ECDHE-RSA-AES128-SHA256TLSv1.2ECDH,P-256,256bits
8ECDHE-RSA-AES128-SHATLSv1,TLSv1.1,TLSv1.2ECDH,P-256,256bits
9DHE-RSA-AES256-SHA256TLSv1.2DH,1024bits
10DHE-RSA-AES256-SHATLSv1,TLSv1.1,TLSv1.2DH,1024bits
11DHE-RSA-AES128-SHA256TLSv1.2DH,1024bits
12DHE-RSA-AES128-SHATLSv1,TLSv1.1,TLSv1.2DH,1024bits
13AES256-GCM-SHA384TLSv1.2
14AES128-GCM-SHA256TLSv1.2
15AES256-SHATLSv1,TLSv1.1,TLSv1.2
16AES128-SHATLSv1,TLSv1.1,TLSv1.2
17AES256-SHA256TLSv1.2
18AES128-SHA256TLSv1.2
19DHE-RSA-CAMELLIA256-SHATLSv1,TLSv1.1,TLSv1.2DH,1024bits
20CAMELLIA256-SHATLSv1,TLSv1.1,TLSv1.2
21DHE-RSA-CAMELLIA128-SHATLSv1,TLSv1.1,TLSv1.2DH,1024bits
22CAMELLIA128-SHATLSv1,TLSv1.1,TLSv1.2