Successfully connected
TLS 1.3 OK; HelloRetryRequest used;
Detailed description:
v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)
HelloRetryRequest used to (re)negotiate DH group
First ClientHello, key shares: 0x001D
Second ClientHello, key shares: 0x0017
CRYPTO_CONTEXT
Protocol version: 0x0304
Cipher suite: 0x1303 (TLS_CHACHA20_POLY1305_SHA256)
Key exchange: 0x0017 (Secp256r1)
(Handshake level)
Handshake secrets:
Client: 0x886971738C92468AE551D4DEB1689075C303A0A6E9FCEA8BC55FFA887DD9AF6E
Server: 0x91523EAE5C0336D2EBFBF99FA4D5DC3F4B1AA4FA1B550B5554976F21190BBA0A
Handshake keys:
Client write: 0xD7161D8A4D11DF430B4AA74549FAA89BDB4D01EE2CEC21D890F8BEF833A3F30A
Server write: 0xEBC12591FAFFEBAED5448CB0584013033390322EAEFAA2D5FCE8A1AE0D74E608
Handshake IVs:
Client write (IV): 0x8494A2F4E2883F299318E1CB
Server write (IV): 0x2F985F235656BBEC97C96515
(Traffic level)
Traffic secrets:
Client: 0xFD767104DE26C0AA914D97A0B1793793A3736ECC24E265CC49777044C5536D99
Server: 0xF0F33D9C1BD757754AA3CF6C77F31DCC250BB002748ADD86637DE198BDB79E71
Traffic keys:
Client write: 0xDE3938468A6726665E774F5521F27962C94A0A762071E03E1F263838B6E8CA75
Server write: 0xB8E84754C72D8A1E4608B569ECFA8453ED08AC9EEC34DE558F3C411BC083A76B
Traffic base IVs:
Client write (base IV): 0xF0CED92E9954B218D313C554
Server write (base IV): 0x04C9FAD8E751DC64A7AC9C82
--- Messages ---
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: 59:F8:8F:19:74:F0:89:BA:EE:15:A5:85:BD:BE:B2:15:84:65:3E:F7:75:37:08:FC:B4:28:FB:A5:F0:8F:D1:B7
Client SessionID: 1F:4A:6D:7F:74:A7:B1:7D:FB:96:65:9B:E7:2A:B7:E7:BD:50:B0:FF:8E:38:8A:4E:C8:DA:21:E3:4E:F0:10:C1
Extensions:
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 51 (0x0033); "key_share"
X25519 (0x001D)
x = 0xC03760A63744FA138F1143A63C10AEA0655383D426AB1047571D70EFD3DC8D4E
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 35 (0x0023); /non-TLS-1.3/
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 23 (0x0017); /non-TLS-1.3/
HELLO_RETRY_REQUEST (sent, server)
Legacy Version: 0x0303
Cipher suite: 0x1303 (TLS_CHACHA20_POLY1305_SHA256)
HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
SessionID: 1F:4A:6D:7F:74:A7:B1:7D:FB:96:65:9B:E7:2A:B7:E7:BD:50:B0:FF:8E:38:8A:4E:C8:DA:21:E3:4E:F0:10:C1
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
[Legacy ChangeCipherSpec message present (client)]
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: 59:F8:8F:19:74:F0:89:BA:EE:15:A5:85:BD:BE:B2:15:84:65:3E:F7:75:37:08:FC:B4:28:FB:A5:F0:8F:D1:B7
Client SessionID: 1F:4A:6D:7F:74:A7:B1:7D:FB:96:65:9B:E7:2A:B7:E7:BD:50:B0:FF:8E:38:8A:4E:C8:DA:21:E3:4E:F0:10:C1
Extensions:
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x6BD1F761FFFCB748A18FD0F6026674696302010398D697E4C3E814C341EAB49E
y = 0x9B5C09498E8D90CBF9169050C633D5587BB640342ACAF9FF1883EC28211D6B54
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 35 (0x0023); /non-TLS-1.3/
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 23 (0x0017); /non-TLS-1.3/
SERVER_HELLO (sent)
Legacy Version: 0x0303
Cipher suite: 0x1303 (TLS_CHACHA20_POLY1305_SHA256)
Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
SessionID: 1F:4A:6D:7F:74:A7:B1:7D:FB:96:65:9B:E7:2A:B7:E7:BD:50:B0:FF:8E:38:8A:4E:C8:DA:21:E3:4E:F0:10:C1
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x1FADAC79156E08C8532CE88DF887273141ACE16E44E9C268CE496596F41B65FA
y = 0xF82394637B6ACF004AB253F956BD2CD6CA6C9AD8454BF1FBF281A6C54A93D99C
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
SERVER_HANDSHAKE_MESSAGES (sent)
Type: 8 (0x08) - "encrypted_extensions"
Length (octets, dec.): 2
00:00
Type: 11 (0x0B) - "certificate"
Length (octets, dec.): 3854
[...] /skipped 3854 data octets/
Type: 15 (0x0F) - "certificate_verify"
Length (octets, dec.): 108
05:03:00:68:30:66:02:31:00:F0:2E:7F:AB:21:1A:EC:4B:38:29:0A:3D:BF:AF:C9:5D:5E:64:0F:40:74:EB:0F
37:A0:78:CF:88:9B:ED:52:DA:B0:0D:CC:CB:AE:D0:52:77:4A:96:A0:D5:7F:CE:BB:24:02:31:00:BC:3E:62:CF
18:0D:33:82:C9:0A:29:90:F9:E0:53:27:49:5C:A5:8A:24:20:EB:9C:F2:45:48:92:A5:72:6E:0E:D6:0B:61:23
F0:0E:98:46:EA:5E:18:25:B1:1A:CF:DC
Type: 20 (0x14) - "finished"
Length (octets, dec.): 32
31:DD:50:60:FB:C9:7F:6A:F6:45:23:34:63:C5:9F:D4:DC:9C:45:4E:69:37:2D:4A:5A:35:25:EC:6D:B7:07:2D
CLIENT_FINISHED (received)
Finished value: 0x1024AB29703985686CAF4A6527F9370C3114BFFC940F7D45B16EE68381974920
Client Finished status: OK
CLIENT_APPLICATION_DATA (recieved)
ASCII dump (filtered):
GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
: tls13.1d.pw....
TCP: server: 194.87.103.72:443; client: 216.73.216.84:1387; timestamp: 1765223067
Contacts: dxdt.ru, alex/()\/abaabb.xyz.
/\_/\
( 0.0 )
= ^ =
/|_|\
(") (")=~
Provide ESNI to get second ASCII cat
Elapsed server side: 299ms; ServerHello sent: 151ms (including HelloRetryRequest time); TLS connection established: 298ms.