Wednesday, January 6, 2016

how to check website's available ciphers with OPENSSL



Sometimes if https://www.ssllabs.com/ cannot be used (internal page, port != 443) its helpful to check available ciphers with OPENSSL.

$ openssl s_client -connect www.twitter.com:443 -cipher ECDHE-RSA-AES128-SHA

Other Commands
show all ciphers            openssl ciphers |sed 's/:/\n/g'
show export ciphers         openssl ciphers EXPORT |sed 's/:/\n/g'
show MD5    ciphers         openssl ciphers MD5 |sed 's/:/\n/g'
show RC4    ciphers         openssl ciphers RC4 |sed 's/:/\n/g'