TLS 1.3 Connection Test Server at tls13.1d.pw

Successfully connected

TLS 1.3 OK; HelloRetryRequest used; server-initiated key update accomplished;

Detailed description:

v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)

HelloRetryRequest used to (re)negotiate DH group
	First ClientHello, key shares:	0x001D
	Second ClientHello, key shares:	0x0017

CRYPTO_CONTEXT

	Protocol version: 0x0304
	Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
	Key exchange: 0x0017 (Secp256r1)

	(Handshake level)
	Handshake secrets:
		Client: 0x283ED48D3B047B65A496EBDBC85EC349BD6B9F69F8DFD95F0551640FA23E16BD
		Server: 0xA8C6733742101583F890002943AA181733F4050EE6DEF20103C89E822151D61D
	Handshake keys:
		Client write: 0xA2A688F0493EB637F5FF3E581FA2ADC0
		Server write: 0xBE7D961EB5D287F112091FDC9E7B99B8
	Handshake IVs:
		Client write (IV): 0x8EBDE37700D8964072E9F48A
		Server write (IV): 0xA31A29356D237977025453DE

	(Traffic level)
	Traffic secrets:
		Client: 0xDED8B28A2E4DDD176B33324928A84A9C61C09FFB20972789E5A0197299A19377
		Server: 0x5438C4340AB3A8BCE9525B70BF3646E2BFE6B96A5207D1DA78AE2AF89C51B9CC
		KeyUpdates log, server:
			0: 0xAC0A13DD5D87FFF5F1E84ED88812C11608C94635336F8EF696127426938C12EC
	Traffic keys:
		Client write: 0x0E61D7FDB8E5A890FF32DECAC28A4CFE
		Server write: 0x713DBE4ACD8F7E141623BC9A7B8D467C
		KeyUpdates log, server:
			0: 0x47B7DBE5029496B4D53AF7A5BB731CF8
	Traffic base IVs:
		Client write (base IV): 0x6A7C137766721E1B7861297F
		Server write (base IV): 0x06673910789ACCCCD0037E32
		KeyUpdates log, server:
			0: 0xA84FD8EE848B6A9154BF30CD

--- Messages ---

CLIENT_HELLO (recieved)

	Version: 0x0303
	Cipher suites:
		0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
		0xCCA8,0x00FF
	Client Random: 28:7F:56:80:77:B0:60:CF:08:1B:DF:B1:19:08:1D:D2:73:7B:D1:C1:AB:28:E2:13:A3:CC:50:70:08:33:02:94
	Client SessionID: 9D:98:2A:C4:70:21:32:4A:AA:9C:66:15:4C:38:22:D9:BA:18:CE:07:2C:11:8C:2E:A7:AB:A4:98:EF:C9:5E:29
	Extensions:
		Type: 00 (0x0000); "server_name"
			00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
			hostname: tls13.1d.pw
		Type: 16 (0x0010); "application_layer_protocol_negotiation"
			68:32 (HTTP/2/TLS)
			68:74:74:70:2F:31:2E:31 (HTTP/1.1)
		Type: 35 (0x0023); /non-TLS-1.3/
		Type: 51 (0x0033); "key_share"
			X25519 (0x001D)
				x = 0x81EF233A705A0B498275F99DE0B7BBFA842643E0CE166DB56468C2A9524BC833
		Type: 45 (0x002D); "psk_key_exchange_modes"
			01:01
		Type: 10 (0x000A); "supported_groups"
			0x001D (X25519)
			0x0017 (Secp256r1)
			0x0018 (Secp384r1)
		Type: 23 (0x0017); /non-TLS-1.3/
		Type: 05 (0x0005); "status_request"
			01:00:00:00:00
		Type: 43 (0x002B); "supported_versions"
			0x0304 (TLS 1.3)
			0x0303 (TLS 1.2)
		Type: 11 (0x000B); /non-TLS-1.3/
			01:00
		Type: 13 (0x000D); "signature_algorithms"
			0x0503 (ECDSA_SECP384R1_SHA384)
			0x0403 (ECDSA_SECP256R1_SHA256)
			0x0807 (ED25519)
			0x0806 (RSA_PSS_RSAE_SHA512)
			0x0805 (RSA_PSS_RSAE_SHA384)
			0x0804 (RSA_PSS_RSAE_SHA256)
			0x0601 (RSA_PKCS1_SHA512)
			0x0501 (RSA_PKCS1_SHA384)
			0x0401 (RSA_PKCS1_SHA256)

HELLO_RETRY_REQUEST (sent, server)

	Legacy Version: 0x0303
	Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
	HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
	SessionID: 9D:98:2A:C4:70:21:32:4A:AA:9C:66:15:4C:38:22:D9:BA:18:CE:07:2C:11:8C:2E:A7:AB:A4:98:EF:C9:5E:29
	Extensions:
		Type: 51 (0x0033); "key_share"
			Secp256r1 (0x0017)
		Type: 44 (0x002C); "cookie"
			00:08:0C:00:FE:E1:C0:DE:FA:57
		Type: 43 (0x002B); "supported_versions"
			0x0304

[Legacy ChangeCipherSpec message sent (server)]

[Legacy ChangeCipherSpec message present (client)]

CLIENT_HELLO (recieved)

	Version: 0x0303
	Cipher suites:
		0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
		0xCCA8,0x00FF
	Client Random: 28:7F:56:80:77:B0:60:CF:08:1B:DF:B1:19:08:1D:D2:73:7B:D1:C1:AB:28:E2:13:A3:CC:50:70:08:33:02:94
	Client SessionID: 9D:98:2A:C4:70:21:32:4A:AA:9C:66:15:4C:38:22:D9:BA:18:CE:07:2C:11:8C:2E:A7:AB:A4:98:EF:C9:5E:29
	Extensions:
		Type: 00 (0x0000); "server_name"
			00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
			hostname: tls13.1d.pw
		Type: 16 (0x0010); "application_layer_protocol_negotiation"
			68:32 (HTTP/2/TLS)
			68:74:74:70:2F:31:2E:31 (HTTP/1.1)
		Type: 35 (0x0023); /non-TLS-1.3/
		Type: 51 (0x0033); "key_share"
			Secp256r1 (0x0017)
				x = 0xF3BC35607AE98F2D1FB539225F1E3F0E92A67C2675D9FC8AC8B674AD49C6DB09
				y = 0x39A5DA1FEB37371393CB7B799EA4341148D8387E12CD4835D5A9BD36AF16B99F
		Type: 45 (0x002D); "psk_key_exchange_modes"
			01:01
		Type: 10 (0x000A); "supported_groups"
			0x001D (X25519)
			0x0017 (Secp256r1)
			0x0018 (Secp384r1)
		Type: 23 (0x0017); /non-TLS-1.3/
		Type: 05 (0x0005); "status_request"
			01:00:00:00:00
		Type: 43 (0x002B); "supported_versions"
			0x0304 (TLS 1.3)
			0x0303 (TLS 1.2)
		Type: 44 (0x002C); "cookie"
			00:08:0C:00:FE:E1:C0:DE:FA:57
		Type: 11 (0x000B); /non-TLS-1.3/
			01:00
		Type: 13 (0x000D); "signature_algorithms"
			0x0503 (ECDSA_SECP384R1_SHA384)
			0x0403 (ECDSA_SECP256R1_SHA256)
			0x0807 (ED25519)
			0x0806 (RSA_PSS_RSAE_SHA512)
			0x0805 (RSA_PSS_RSAE_SHA384)
			0x0804 (RSA_PSS_RSAE_SHA256)
			0x0601 (RSA_PKCS1_SHA512)
			0x0501 (RSA_PKCS1_SHA384)
			0x0401 (RSA_PKCS1_SHA256)

SERVER_HELLO (sent)

	Legacy Version: 0x0303
	Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
	Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
	SessionID: 9D:98:2A:C4:70:21:32:4A:AA:9C:66:15:4C:38:22:D9:BA:18:CE:07:2C:11:8C:2E:A7:AB:A4:98:EF:C9:5E:29
	Extensions:
		Type: 51 (0x0033); "key_share"
			Secp256r1 (0x0017)
				x = 0x1FADAC79156E08C8532CE88DF887273141ACE16E44E9C268CE496596F41B65FA
				y = 0xF82394637B6ACF004AB253F956BD2CD6CA6C9AD8454BF1FBF281A6C54A93D99C
		Type: 43 (0x002B); "supported_versions"
			0x0304

[Legacy ChangeCipherSpec message sent (server)]

SERVER_HANDSHAKE_MESSAGES (sent)

	Type: 8 (0x08) - "encrypted_extensions"
		Length (octets, dec.): 2
		00:00
	Type: 11 (0x0B) - "certificate"
		Length (octets, dec.): 3856
		[...] /skipped 3856 data octets/
	Type: 15 (0x0F) - "certificate_verify"
		Length (octets, dec.): 108
		05:03:00:68:30:66:02:31:00:8E:6B:4E:EF:7F:51:36:E2:32:C4:1E:4C:54:C3:53:B5:AA:4A:10:B7:3B:F9:5F
		50:69:F1:2B:97:1E:95:49:AC:97:17:FB:5A:32:8A:2F:D9:08:60:38:98:5A:5B:18:22:02:31:00:84:8D:3C:AA
		C4:41:12:A3:60:BC:E2:D2:19:5D:95:C1:CD:85:D3:AC:5C:21:FD:E8:B2:C4:57:40:01:82:96:D2:F6:FB:F3:9F
		5E:4E:25:72:C0:82:FB:A4:BD:67:5A:72
	Type: 20 (0x14) - "finished"
		Length (octets, dec.): 32
		AA:C6:E2:64:7C:6E:19:AF:D9:39:74:D8:0C:49:0F:56:C0:52:4B:DE:42:1D:03:65:66:21:9E:DD:72:EA:A9:7D


CLIENT_FINISHED (received)

	Finished value: 0x0B65540222FC478E7C3BC41A6AB07A5D77D389E1A087640AE312F62A91862501
	Client Finished status: OK

CLIENT_APPLICATION_DATA (recieved)

	ASCII dump (filtered):
		GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
		/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
		t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
		: tls13.1d.pw....

[Server KeyUpdate sent /message skipped/]



TCP: server: 194.87.103.72:443; client: 216.73.216.141:25092; timestamp: 1758037816


Contacts: dxdt.ru, alex/()\/abaabb.xyz.

 /\_/\
( 0.0 )
 = ^ =
 /|_|\
(") (")=~


Provide ESNI to get second ASCII cat

Elapsed server side: 318ms; ServerHello sent: 157ms (including HelloRetryRequest time); TLS connection established: 318ms.