TLS 1.3 Connection Test Server at tls13.1d.pw

Successfully connected

TLS 1.3 OK; HelloRetryRequest used; server-initiated key update accomplished;

Detailed description:

v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)

HelloRetryRequest used to (re)negotiate DH group
	First ClientHello, key shares:	0x001D
	Second ClientHello, key shares:	0x0017

CRYPTO_CONTEXT

	Protocol version: 0x0304
	Cipher suite: 0x1303 (TLS_CHACHA20_POLY1305_SHA256)
	Key exchange: 0x0017 (Secp256r1)

	(Handshake level)
	Handshake secrets:
		Client: 0xFEBA7209EFF84B64B3E0D2793BE8D62F0FFA40CF50F74DEF9B5C490BD5CAA0E1
		Server: 0x406D2AD383CDED5F03B0DF639610AD6ABDBDC9970591B6700C82D89CB2DBB950
	Handshake keys:
		Client write: 0x83440763A76EEFC8B5C12C2F26F2A25C426FBE341BC47B8794DB1A17568A24B2
		Server write: 0xD6CA93857A724071F06249668BCC9DD1CDBF48F412365A2C0BB30D8E73D98355
	Handshake IVs:
		Client write (IV): 0x2FDBD65C9AE8AAE9FDB48E4A
		Server write (IV): 0x5DDFD6F950572C5AD58800CA

	(Traffic level)
	Traffic secrets:
		Client: 0xD97F5B7EFAB2A7476735C0986094A1FE71D4876934CE06B129CF9F23D0BA9C4D
		Server: 0x886E86B3C9969F34C6FFC7105746FF60B0C9D376E52E3FAFE3FB0C5692163539
		KeyUpdates log, server:
			0: 0x769AE5DE0E702971724BEF287117E37B9929061B25D255435A34527F725C5917
	Traffic keys:
		Client write: 0xCBE393AFBFB4123320A1C1AE375066F20D96C1FC27EE2628434B686B2C2C8EB0
		Server write: 0x0B4ECCD755053FF1C0A251A155E3819E2A7409640733AA539BFBB0E15160F81F
		KeyUpdates log, server:
			0: 0x65AD349A1E81C8EF620B3C11F1B94E454830DBA6ADE7A376382484555E0AAA56
	Traffic base IVs:
		Client write (base IV): 0x62C9D1346368F65A98C9ED9B
		Server write (base IV): 0x60E740E523928BBEC557699E
		KeyUpdates log, server:
			0: 0xB492B6157CF3A390F78F4252

--- Messages ---

CLIENT_HELLO (recieved)

	Version: 0x0303
	Cipher suites:
		0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
		0xCCA8,0x00FF
	Client Random: 2F:1B:E4:9D:70:39:F8:AA:B7:25:AF:11:8E:62:75:65:F5:CC:F6:F5:BA:83:4F:3F:98:79:4A:C6:F5:CE:CE:A8
	Client SessionID: 6C:FC:12:6E:FA:7D:22:E9:3C:B8:70:84:46:FC:B2:44:B0:BE:B5:01:13:26:A1:9A:F6:98:D5:30:42:13:5D:FD
	Extensions:
		Type: 16 (0x0010); "application_layer_protocol_negotiation"
			68:32 (HTTP/2/TLS)
			68:74:74:70:2F:31:2E:31 (HTTP/1.1)
		Type: 43 (0x002B); "supported_versions"
			0x0304 (TLS 1.3)
			0x0303 (TLS 1.2)
		Type: 13 (0x000D); "signature_algorithms"
			0x0503 (ECDSA_SECP384R1_SHA384)
			0x0403 (ECDSA_SECP256R1_SHA256)
			0x0807 (ED25519)
			0x0806 (RSA_PSS_RSAE_SHA512)
			0x0805 (RSA_PSS_RSAE_SHA384)
			0x0804 (RSA_PSS_RSAE_SHA256)
			0x0601 (RSA_PKCS1_SHA512)
			0x0501 (RSA_PKCS1_SHA384)
			0x0401 (RSA_PKCS1_SHA256)
		Type: 35 (0x0023); /non-TLS-1.3/
		Type: 10 (0x000A); "supported_groups"
			0x001D (X25519)
			0x0017 (Secp256r1)
			0x0018 (Secp384r1)
		Type: 23 (0x0017); /non-TLS-1.3/
		Type: 00 (0x0000); "server_name"
			00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
			hostname: tls13.1d.pw
		Type: 51 (0x0033); "key_share"
			X25519 (0x001D)
				x = 0xDB3B0EEA3945389D40FD8F48880DBAD84D98D6FCFEBD268438D2ADFA73D57169
		Type: 11 (0x000B); /non-TLS-1.3/
			01:00
		Type: 05 (0x0005); "status_request"
			01:00:00:00:00
		Type: 45 (0x002D); "psk_key_exchange_modes"
			01:01

HELLO_RETRY_REQUEST (sent, server)

	Legacy Version: 0x0303
	Cipher suite: 0x1303 (TLS_CHACHA20_POLY1305_SHA256)
	HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
	SessionID: 6C:FC:12:6E:FA:7D:22:E9:3C:B8:70:84:46:FC:B2:44:B0:BE:B5:01:13:26:A1:9A:F6:98:D5:30:42:13:5D:FD
	Extensions:
		Type: 51 (0x0033); "key_share"
			Secp256r1 (0x0017)
		Type: 44 (0x002C); "cookie"
			00:08:0C:00:FE:E1:C0:DE:FA:57
		Type: 43 (0x002B); "supported_versions"
			0x0304

[Legacy ChangeCipherSpec message sent (server)]

[Legacy ChangeCipherSpec message present (client)]

CLIENT_HELLO (recieved)

	Version: 0x0303
	Cipher suites:
		0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
		0xCCA8,0x00FF
	Client Random: 2F:1B:E4:9D:70:39:F8:AA:B7:25:AF:11:8E:62:75:65:F5:CC:F6:F5:BA:83:4F:3F:98:79:4A:C6:F5:CE:CE:A8
	Client SessionID: 6C:FC:12:6E:FA:7D:22:E9:3C:B8:70:84:46:FC:B2:44:B0:BE:B5:01:13:26:A1:9A:F6:98:D5:30:42:13:5D:FD
	Extensions:
		Type: 16 (0x0010); "application_layer_protocol_negotiation"
			68:32 (HTTP/2/TLS)
			68:74:74:70:2F:31:2E:31 (HTTP/1.1)
		Type: 43 (0x002B); "supported_versions"
			0x0304 (TLS 1.3)
			0x0303 (TLS 1.2)
		Type: 44 (0x002C); "cookie"
			00:08:0C:00:FE:E1:C0:DE:FA:57
		Type: 13 (0x000D); "signature_algorithms"
			0x0503 (ECDSA_SECP384R1_SHA384)
			0x0403 (ECDSA_SECP256R1_SHA256)
			0x0807 (ED25519)
			0x0806 (RSA_PSS_RSAE_SHA512)
			0x0805 (RSA_PSS_RSAE_SHA384)
			0x0804 (RSA_PSS_RSAE_SHA256)
			0x0601 (RSA_PKCS1_SHA512)
			0x0501 (RSA_PKCS1_SHA384)
			0x0401 (RSA_PKCS1_SHA256)
		Type: 35 (0x0023); /non-TLS-1.3/
		Type: 10 (0x000A); "supported_groups"
			0x001D (X25519)
			0x0017 (Secp256r1)
			0x0018 (Secp384r1)
		Type: 23 (0x0017); /non-TLS-1.3/
		Type: 00 (0x0000); "server_name"
			00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
			hostname: tls13.1d.pw
		Type: 51 (0x0033); "key_share"
			Secp256r1 (0x0017)
				x = 0xAF99213B954CA7F38D790594B9437D898BED548D35FA164F6A87952CC9CDFE41
				y = 0x565673EC321D2AB44504A14E655B15DB569E19DE7D1AF913A41D271723689054
		Type: 11 (0x000B); /non-TLS-1.3/
			01:00
		Type: 05 (0x0005); "status_request"
			01:00:00:00:00
		Type: 45 (0x002D); "psk_key_exchange_modes"
			01:01

SERVER_HELLO (sent)

	Legacy Version: 0x0303
	Cipher suite: 0x1303 (TLS_CHACHA20_POLY1305_SHA256)
	Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
	SessionID: 6C:FC:12:6E:FA:7D:22:E9:3C:B8:70:84:46:FC:B2:44:B0:BE:B5:01:13:26:A1:9A:F6:98:D5:30:42:13:5D:FD
	Extensions:
		Type: 51 (0x0033); "key_share"
			Secp256r1 (0x0017)
				x = 0x1FADAC79156E08C8532CE88DF887273141ACE16E44E9C268CE496596F41B65FA
				y = 0xF82394637B6ACF004AB253F956BD2CD6CA6C9AD8454BF1FBF281A6C54A93D99C
		Type: 43 (0x002B); "supported_versions"
			0x0304

[Legacy ChangeCipherSpec message sent (server)]

SERVER_HANDSHAKE_MESSAGES (sent)

	Type: 8 (0x08) - "encrypted_extensions"
		Length (octets, dec.): 2
		00:00
	Type: 11 (0x0B) - "certificate"
		Length (octets, dec.): 3890
		[...] /skipped 3890 data octets/
	Type: 15 (0x0F) - "certificate_verify"
		Length (octets, dec.): 106
		05:03:00:66:30:64:02:30:62:D4:D0:35:0F:B2:0F:5E:49:F2:AB:66:BC:01:6C:2B:FF:8A:23:53:02:28:11:42
		EA:29:FB:96:01:2A:F8:D2:79:18:86:3F:7D:D6:99:04:81:27:74:7A:0B:44:32:EC:02:30:0E:45:B1:82:25:F5
		2E:74:DD:1D:23:DE:83:79:26:01:FA:C6:D1:FA:7B:A0:BC:08:25:01:72:65:1F:44:6D:3D:42:37:7F:6C:27:B4
		59:68:A1:D4:46:2B:9E:B1:72:19
	Type: 20 (0x14) - "finished"
		Length (octets, dec.): 32
		22:B3:31:82:EE:F4:7C:95:3D:92:F0:99:92:EE:3B:E6:F3:4B:3B:ED:0C:C2:9D:7E:4E:C9:F1:5F:5C:8A:8F:C4


CLIENT_FINISHED (received)

	Finished value: 0x961B3395E7FC791EA7DA6499609B62D0C15D94ACE5EC37D8AAB0E2F48045B60D
	Client Finished status: OK

CLIENT_APPLICATION_DATA (recieved)

	ASCII dump (filtered):
		GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
		/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
		t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
		: tls13.1d.pw....

[Server KeyUpdate sent /message skipped/]



TCP: server: 194.87.103.72:443; client: 3.145.106.222:37452; timestamp: 1743750419


Contacts: dxdt.ru, alex/()\/abaabb.xyz.

 /\_/\
( 0.0 )
 = ^ =
 /|_|\
(") (")=~


Provide ESNI to get second ASCII cat

Elapsed server side: 295ms; ServerHello sent: 149ms (including HelloRetryRequest time); TLS connection established: 294ms.