iTP Secure WebServer System Administrator's Guide (iTPWebSvr 6.0+)

Configuring for Secure Transport
iTP Secure WebServer System Administrator’s Guide523346-002
4-31
Constraints on Cipher Use
For a list of the cipher-hashing algorithms iTP Secure WebServer supports, refer to
AcceptSecureTransport on page A-5.
Constraints on Cipher Use
The iTP Secure WebServer imposes the following constraints:
The nonexportable version of the iTP Secure WebServer supports the RC4/RC2
ciphers that have either 40-bit or 128-bit keys.
The exportable version of the iTP Secure WebServer supports the RC4/RC2
ciphers that have 40-bit keys only.
The actual key used depends on the web client’s choice. The session is terminated if
the web client does not support the key sizes supported by the iTP Secure WebServer.
Figure 4-1. Cipher Negotiation Between Web Client and Server Lists
114CDT .CDD
DEC-CBC3-SHA1
RC2-CBC-SHA1
EXP-RC4-MD5
RC4--MD5
RC4-MD5
DES-CBC3-MD5
RC2-CBC-SHA1
Web Client List Server List
RC2-CBC-SHA1
This cypher is usedWhen this list... is compared to this list...