ServiceSSLCipherSuites
- Last Updated: May 12, 2026
- 2 minute read
- OpenAccess SDK
- Version 9.0
- Documentation
Note: The ADO and ADO.NET clients are currently available only in OpenAccess SDK 8.1. However, they are compatible with the OpenAccess SDK 9.0 server.
Specifies the SSL cipher suites that OpenAccess SDK supports for data transfers between the OpenAccess SDK Client and OpenAccess SDK Server.
OpenAccess SDK supports the use of anonymous ciphers. Anonymous ciphers allow the SSL connection to succeed without proper authentication of the peer by using the Diffie-Helmann algorithm. However, it should be noted that TLS version 1.3 does not support anonymous cipher suites. The cipher suites supported by TLS version 1.3 and those supported by other protocol versions are mutually exclusive.
NOTE FOR .NET USERS: Because support for SSL in the .NET Framework requires the use of server certificates, you must set the default value for this service attribute to a TLS1.2 value specified in the table "TLS1.2 Support With Server Certificate Support" or a TLS1.3 value specified in the table "TLS1.3 Support".
The table "TLS1.2 Support With Server Certificate Support" lists the cryptographic strong SSL cipher suites that must be used with a server certificate. Cipher suites that support server certificates provide additional protection. See ServiceSSLKeyStore for supported values.
TLS1.2 Support With Server Certificate Support
| Cipher Suite | ODBC Client | JDBC Client | ADO Client | ADO.NET Client |
| TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384 | X | X | X | |
| TLS_RSA_WITH_AES_128_GCM_SHA256 | X | X | X | |
| TLS_RSA_WITH_AES_256_GCM_SHA384 | X | X | X | |
| TLS_RSA_WITH_AES_128_CBC_SHA256 | X | X | X | |
| TLS_RSA_WITH_AES_256_CBC_SHA256 | X | X | X | |
| TLS_DHE_RSA_WITH_AES_128_CBC_SHA256 | X | X | X | |
| TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384 | X | X | X | |
| TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 | X | X | X | |
| TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256 | X | X | X | |
| TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 | X | X | X | |
| TLS_DHE_RSA_WITH_AES_256_CBC_SHA256 | X | X | X | |
| TLS_DHE_RSA_WITH_AES_256_GCM_SHA384 | X | X | X | |
| TLS_DHE_RSA_WITH_AES_128_GCM_SHA256 | X | X | X | |
| TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384 | X | X | X | |
| TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 | X | X | X | |
| TLS_DHE_DSS_WITH_AES_128_CBC_SHA256 | X | X | X | |
| TLS_DHE_DSS_WITH_AES_256_GCM_SHA384 | X | X | X | |
| TLS_DHE_DSS_WITH_AES_128_GCM_SHA256 | X | X | X | |
| TLS_DHE_DSS_WITH_AES_256_CBC_SHA256 | X | X | X | |
| TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256 | X | X | X | |
| TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA | X | X | X | |
| TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA | X | X | X | |
| TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA | X | X | X | |
| TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA | X | X | X | |
| TLS_DHE_DSS_WITH_AES_256_GCM_SHA384 | X | X | X | |
| TLS_DHE_DSS_WITH_AES_128_GCM_SHA256 | X | X | X | |
| TLS_DHE_DSS_WITH_AES_256_CBC_SHA256 | X | X | X | |
| TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256 | X | X | X | |
| TLS_ECDHE_RSA_WITH_RC4_128_SHA | X | X | X | |
| TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA | X | X | X | |
| TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA | X | X | X | |
| TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA | X | X | X | |
| TLS_ECDHE_ECDSA_WITH_RC4_128_SHA | X | X | X | |
| TLS_ECDHE_ECDSA_WITH_3DES_EDE_CBC_SHA | X | X | X | |
| TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA | X | X | X | |
| TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA | X | X | X |
The table "TLS1.3 Support With Server Certificate Support" lists the cryptographic strong SSL cipher suites that must be used with a server certificate. Cipher suites that support server certificates provide additional protection. See ServiceSSLKeyStore for supported values.
TLS1.3 Support With Server Certificate Support
Note for .NET Users: TLS version 1.3 is supported in .NET Framework 4.8 and later versions, and in Windows 11 and Windows Server 2022.
Note for Java Users: TLSv1.3 is supported only in JDK 11 and later versions and JDK 8u261 and later versions.
| Cipher Suite | ODBC Client | JDBC Client | ADO Client | ADO.NET Client |
| TLS_AES_256_GCM_SHA384 | X | X | X | |
| TLS_CHACHA20_POLY1305_SHA256 | X | X | ||
| TLS_AES_128_GCM_SHA256 | X | X | X | |
| TLS_AES_128_CCM_8_SHA256 | X | X | ||
| TLS_AES_128_CCM_SHA256 | X | X |
Default values for TLSv1.3
TLS_AES_256_GCM_SHA384, TLS_CHACHA20_POLY1305_SHA256, and TLS_AES_128_GCM_SHA256
Default value for TLSv1.2
TLS_DH_anon_WITH_AES_128_CBC_SHA
Type
Static