Successfully connected
TLS 1.3 OK; HelloRetryRequest used;
Detailed description:
v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)
HelloRetryRequest used to (re)negotiate DH group
First ClientHello, key shares: 0x0017
Second ClientHello, key shares: 0x0018
CRYPTO_CONTEXT
Protocol version: 0x0304
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
Key exchange: 0x0018 (Secp384r1)
(Handshake level)
Handshake secrets:
Client: 0xB8BEFB1F7A861D0A538CC57F149A3A2D8D439836C2BEB4DE73E0B2382068EF10
Server: 0xD3F494DB49732E4B0643411CE0B1916ED97C255262F9FEA0AC6748CD093A749F
Handshake keys:
Client write: 0x0C2B0A06F43ECAAAD14B8AC68EDBFAE4
Server write: 0x20147D01EFA49F5521F2469221894A9E
Handshake IVs:
Client write (IV): 0x1182CCF119A4F8E9B14A8BF3
Server write (IV): 0xCD3832D3748669CC83B69A71
(Traffic level)
Traffic secrets:
Client: 0x2F6E0ABBCFCA3CF050F435B3455FE315760DBC40A52147806DB3584B9250C4D8
Server: 0x6D9FF93801BBE911453DAA020C7B3F7194CA91B2D15B336DE0EAEAE687177846
Traffic keys:
Client write: 0x96AAF9EA366066F55C0BD4377250BD49
Server write: 0xB7401EC779D2ABB5FBBC7E00357BA859
Traffic base IVs:
Client write (base IV): 0x4C0AF20D40747A980D9FF3E7
Server write (base IV): 0x1BB1B1E4BE61ED838A09D794
--- Messages ---
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: 72:D7:46:88:2E:93:06:58:71:91:73:DE:47:BD:5F:10:94:CF:01:D0:63:0F:1E:A6:91:08:97:97:A0:EC:E5:41
Client SessionID: 0A:90:B4:C9:58:77:71:39:41:45:FA:B9:56:4F:A7:B0:69:B2:D2:1F:A4:41:78:E8:D8:E2:20:A3:BC:FD:48:BA
Extensions:
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 23 (0x0017); /non-TLS-1.3/
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x8D6B5A00DCDD905109D317DBD923786A170F6596C22EAC19E5E88D3683C47382
y = 0xE3D7CEA236ABF27CD79641C8562194075888B90DEC96E8CE96D894315D7C8627
Type: 35 (0x0023); /non-TLS-1.3/
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
HELLO_RETRY_REQUEST (sent, server)
Legacy Version: 0x0303
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
SessionID: 0A:90:B4:C9:58:77:71:39:41:45:FA:B9:56:4F:A7:B0:69:B2:D2:1F:A4:41:78:E8:D8:E2:20:A3:BC:FD:48:BA
Extensions:
Type: 51 (0x0033); "key_share"
Secp384r1 (0x0018)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
[Legacy ChangeCipherSpec message present (client)]
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: 72:D7:46:88:2E:93:06:58:71:91:73:DE:47:BD:5F:10:94:CF:01:D0:63:0F:1E:A6:91:08:97:97:A0:EC:E5:41
Client SessionID: 0A:90:B4:C9:58:77:71:39:41:45:FA:B9:56:4F:A7:B0:69:B2:D2:1F:A4:41:78:E8:D8:E2:20:A3:BC:FD:48:BA
Extensions:
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 23 (0x0017); /non-TLS-1.3/
Type: 51 (0x0033); "key_share"
Secp384r1 (0x0018)
x = 0xB2219F9AF327FDF5DE27ECC37C64916559F558AA536D0713CDADFB9E3D6F521B71F750D214A273ADE1B6A133B3446C58
y = 0x5885AE789C7D3563E7FC6CAFEE89F6DA31D95F1CCE3C5F31A1C9817E0C3A3825B77EDCF989D9A222AB18F26F86399AE2
Type: 35 (0x0023); /non-TLS-1.3/
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
SERVER_HELLO (sent)
Legacy Version: 0x0303
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
SessionID: 0A:90:B4:C9:58:77:71:39:41:45:FA:B9:56:4F:A7:B0:69:B2:D2:1F:A4:41:78:E8:D8:E2:20:A3:BC:FD:48:BA
Extensions:
Type: 51 (0x0033); "key_share"
Secp384r1 (0x0018)
x = 0x884DFC0FE9602539133D59E3779E9DE8644D3532211C1061EFD16D15BE349D6723496325775E87CF3D396F1C02FCC5CF
y = 0x063315C18E34D26B9085A96A495F17B8557DB379DB6ABED0788C60417FCE917ADD8976BB955D9E7E1B1CC6C06F577280
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
SERVER_HANDSHAKE_MESSAGES (sent)
Type: 8 (0x08) - "encrypted_extensions"
Length (octets, dec.): 2
00:00
Type: 11 (0x0B) - "certificate"
Length (octets, dec.): 3857
[...] /skipped 3857 data octets/
Type: 15 (0x0F) - "certificate_verify"
Length (octets, dec.): 106
05:03:00:66:30:64:02:30:09:43:0C:C4:C3:6C:96:A8:BC:E9:86:FC:2B:F4:3C:B4:35:CF:62:44:BA:8D:81:86
95:02:80:F9:F5:D8:7B:A3:2B:57:FD:7A:1F:CD:DA:57:AF:16:05:58:AC:68:A9:B4:02:30:12:E2:CE:00:AF:18
9F:99:F9:0D:55:4D:FD:C2:35:A9:7B:50:DC:D5:95:E8:5A:29:66:C5:D3:FD:F0:27:AB:75:8B:2C:9C:71:A6:B2
BC:EF:8B:FA:2B:28:CE:60:75:0A
Type: 20 (0x14) - "finished"
Length (octets, dec.): 32
1C:F7:4A:BB:CE:4D:CF:01:DF:AD:50:7C:FF:F4:6C:60:2A:EC:44:37:EB:66:40:D5:8E:54:87:D8:06:F0:AF:2D
CLIENT_FINISHED (received)
Finished value: 0xFB2D93B95DB45F5E858CE0DE7BCE173BFA358F73AE59497D944F88A81DB6A7A0
Client Finished status: OK
CLIENT_APPLICATION_DATA (recieved)
ASCII dump (filtered):
GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
: tls13.1d.pw....
TCP: server: 194.87.103.72:443; client: 216.73.216.84:12902; timestamp: 1764840868
Contacts: dxdt.ru, alex/()\/abaabb.xyz.
/\_/\
( 0.0 )
= ^ =
/|_|\
(") (")=~
Provide ESNI to get second ASCII cat
Elapsed server side: 317ms; ServerHello sent: 165ms (including HelloRetryRequest time); TLS connection established: 317ms.