Successfully connected
TLS 1.3 OK; HelloRetryRequest used;
Detailed description:
v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)
HelloRetryRequest used to (re)negotiate DH group
First ClientHello, key shares: 0x001D
Second ClientHello, key shares: 0x0017
CRYPTO_CONTEXT
Protocol version: 0x0304
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
Key exchange: 0x0017 (Secp256r1)
(Handshake level)
Handshake secrets:
Client: 0x354DCD632019B5EAC1C84304E212A9922068A9FDBBCFFFDC78D53D66EB693AAC
Server: 0x8810B6F3B235E616AFD25E3166BC9245EE1CC0F41AD6112D15900D4D67F89CAC
Handshake keys:
Client write: 0x2CC422DF43975F381B89201AC70083E2
Server write: 0x6E226D5739663D57A4AA873A6AE28DD0
Handshake IVs:
Client write (IV): 0x2A8A829B49FA910103D02314
Server write (IV): 0xB1C7DE236EEE069A04A99B46
(Traffic level)
Traffic secrets:
Client: 0x3F05D1E67E58E5C73AAD5B4E208206978B736CFAAD7327E95553898F82F2BC4F
Server: 0x91E272B621657E5D64EB20A30F6F7127D91A7198AD044FE09C20C16472D5C2AB
Traffic keys:
Client write: 0x2068EFCC9C0021EF8BC3DBD2E4980DF6
Server write: 0x8B1360AE3D05E7D12CD3758593ABA236
Traffic base IVs:
Client write (base IV): 0xD25B5D9E97CF82CE835DA0A7
Server write (base IV): 0x8A9A4E3E4639E3F5C98A25C5
--- Messages ---
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: B5:13:87:4F:68:23:35:72:EF:1C:D1:7F:17:24:A2:C9:91:77:91:43:10:7C:92:1E:60:20:C2:C8:93:A2:FD:9E
Client SessionID: 25:03:92:16:7D:79:18:A2:43:4E:AE:F7:27:0D:0B:73:72:74:51:10:E3:45:F7:EF:67:31:5D:1C:44:22:DA:42
Extensions:
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 35 (0x0023); /non-TLS-1.3/
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 23 (0x0017); /non-TLS-1.3/
Type: 51 (0x0033); "key_share"
X25519 (0x001D)
x = 0x335B06A5F225CFFDBA026A64C07FCA386C990C4179B69D6E2A82A7BFEE29C34B
HELLO_RETRY_REQUEST (sent, server)
Legacy Version: 0x0303
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
SessionID: 25:03:92:16:7D:79:18:A2:43:4E:AE:F7:27:0D:0B:73:72:74:51:10:E3:45:F7:EF:67:31:5D:1C:44:22:DA:42
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
[Legacy ChangeCipherSpec message present (client)]
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: B5:13:87:4F:68:23:35:72:EF:1C:D1:7F:17:24:A2:C9:91:77:91:43:10:7C:92:1E:60:20:C2:C8:93:A2:FD:9E
Client SessionID: 25:03:92:16:7D:79:18:A2:43:4E:AE:F7:27:0D:0B:73:72:74:51:10:E3:45:F7:EF:67:31:5D:1C:44:22:DA:42
Extensions:
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 35 (0x0023); /non-TLS-1.3/
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 23 (0x0017); /non-TLS-1.3/
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x7F4FE3BAA952DBA852A8A4A392E226ABB5A22F2BB15DDB4A0DFE49C1BB20DBC3
y = 0xCF00DB774C78C13454740910E560AC7367AFC07A05A6EE6E6697F9F838CFA480
SERVER_HELLO (sent)
Legacy Version: 0x0303
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
SessionID: 25:03:92:16:7D:79:18:A2:43:4E:AE:F7:27:0D:0B:73:72:74:51:10:E3:45:F7:EF:67:31:5D:1C:44:22:DA:42
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x1FADAC79156E08C8532CE88DF887273141ACE16E44E9C268CE496596F41B65FA
y = 0xF82394637B6ACF004AB253F956BD2CD6CA6C9AD8454BF1FBF281A6C54A93D99C
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
SERVER_HANDSHAKE_MESSAGES (sent)
Type: 8 (0x08) - "encrypted_extensions"
Length (octets, dec.): 2
00:00
Type: 11 (0x0B) - "certificate"
Length (octets, dec.): 3857
[...] /skipped 3857 data octets/
Type: 15 (0x0F) - "certificate_verify"
Length (octets, dec.): 106
05:03:00:66:30:64:02:30:16:8B:E2:B5:49:BC:9E:A4:CF:16:6A:EE:2D:74:39:C7:DC:22:22:A4:21:66:5F:8A
06:C4:73:BA:C5:E4:EB:25:8F:5E:B8:5C:86:2E:3B:2B:9C:1E:DD:10:F8:D9:17:87:02:30:74:CC:D1:67:19:15
4C:DD:28:6A:EA:FA:8F:B9:5B:CC:0D:90:99:B2:4B:31:77:F0:D4:7B:A1:79:F9:7B:96:82:47:19:80:F1:C3:49
A9:54:41:07:25:F3:09:6B:E0:2C
Type: 20 (0x14) - "finished"
Length (octets, dec.): 32
3B:32:D4:87:CC:C4:0C:A0:17:37:6B:CE:17:73:71:26:05:0F:CF:0F:50:AC:05:8A:92:2C:4B:65:8B:17:8E:79
CLIENT_FINISHED (received)
Finished value: 0x768A5C16ED0BF4559F59860DF09437EF7D42CD004E328EA58DDDBDE387A2E828
Client Finished status: OK
CLIENT_APPLICATION_DATA (recieved)
ASCII dump (filtered):
GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
: tls13.1d.pw....
TCP: server: 194.87.103.72:443; client: 216.73.216.84:19241; timestamp: 1764984329
Contacts: dxdt.ru, alex/()\/abaabb.xyz.
/\_/\
( 0.0 )
= ^ =
/|_|\
(") (")=~
Provide ESNI to get second ASCII cat
Elapsed server side: 310ms; ServerHello sent: 156ms (including HelloRetryRequest time); TLS connection established: 309ms.