Ironstream added support for Elliptic Curve ciphers that are compatible with the cipher defaults shipped with Splunk release 6.6 and higher. In addition, it provides enhanced reporting of cipher specification lists, Elliptic Curve lists, and signature algorithm pairs, which are issued once per Ironstream execution using a TLS connection.
The actual protocol and cipher in use on an SSL connection is now reported:
connection 10.5.67.77:9000 protocol: TLSV1.2 cipher: C027 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256