HI Patrick,
you are right. I completely missed that you suggested excluding MD5. Sorry about that. I guess we agree that Lalitha needs to get an actual list of cipher suites and compare it with list of "allowed" ciphers from their security vendor.
Cheers