Successfully connected
TLS 1.3 OK; HelloRetryRequest used;
Detailed description:
v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)
HelloRetryRequest used to (re)negotiate DH group
First ClientHello, key shares: 0x0017
Second ClientHello, key shares: 0x0018
CRYPTO_CONTEXT
Protocol version: 0x0304
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
Key exchange: 0x0018 (Secp384r1)
(Handshake level)
Handshake secrets:
Client: 0x1F22ADE01063253DDDC724F8D795D9927C0E66D2F67486676C19537B2271309F
Server: 0x0CD60D000F355AD3B3EA966CC0115858C49B53ED7167A441AD146CFA693BC450
Handshake keys:
Client write: 0x9C6C96E7DFC223ACFCD8EE2394977820
Server write: 0xB8B54E0BB13771C3B96DB6B35F1B8EF7
Handshake IVs:
Client write (IV): 0xC89615B9BDA31D994C3C823B
Server write (IV): 0xDE211C60FAD8A3CF33E2368A
(Traffic level)
Traffic secrets:
Client: 0x249743A3460582D1D963944AE4118CC03BCD43922BA0ED3B0F2A0415C11C4087
Server: 0x3AB40737F8E9C686D3287B0FC3477F4326E50BE12E3159B77222A7E6840B91B9
Traffic keys:
Client write: 0x3F1E585CB1928691CDDD45921B3B4FEF
Server write: 0x5777A29EE8E44BCB4A5A9DCE634B9916
Traffic base IVs:
Client write (base IV): 0x421E2332714BC4443AFA80A9
Server write (base IV): 0x52B79F29069E94C6E12D3591
--- Messages ---
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: E0:78:9A:1F:2D:B9:EE:E7:08:E8:93:45:C6:2B:AF:52:91:D8:5F:69:73:22:C9:30:0C:F0:6F:04:05:1A:F5:AC
Client SessionID: 39:9D:1C:3C:BA:45:41:82:93:6A:4A:67:C6:D8:AF:12:96:ED:98:63:4C:72:77:91:6B:7F:12:87:23:79:9B:C9
Extensions:
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 23 (0x0017); /non-TLS-1.3/
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0xBFECCC3B8164FA3D5680AE00B01BF39D7922D73247598A93523A2AEE44543C79
y = 0x39E46FADCF44A6781D33C41DE1D91DE501C92E836EF2CD11386F035E7EA59690
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 35 (0x0023); /non-TLS-1.3/
Type: 11 (0x000B); /non-TLS-1.3/
01:00
HELLO_RETRY_REQUEST (sent, server)
Legacy Version: 0x0303
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
SessionID: 39:9D:1C:3C:BA:45:41:82:93:6A:4A:67:C6:D8:AF:12:96:ED:98:63:4C:72:77:91:6B:7F:12:87:23:79:9B:C9
Extensions:
Type: 51 (0x0033); "key_share"
Secp384r1 (0x0018)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
[Legacy ChangeCipherSpec message present (client)]
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: E0:78:9A:1F:2D:B9:EE:E7:08:E8:93:45:C6:2B:AF:52:91:D8:5F:69:73:22:C9:30:0C:F0:6F:04:05:1A:F5:AC
Client SessionID: 39:9D:1C:3C:BA:45:41:82:93:6A:4A:67:C6:D8:AF:12:96:ED:98:63:4C:72:77:91:6B:7F:12:87:23:79:9B:C9
Extensions:
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 23 (0x0017); /non-TLS-1.3/
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 51 (0x0033); "key_share"
Secp384r1 (0x0018)
x = 0x6CC73C16B63B31A2601E26052BB650332F6D070098362331C584042729A9481F107C8E7CBCD1F638D2CACE68F4447F60
y = 0x163B599311F75172D656D5966356D8DF388CD41173F67705A102F49D25E13BF9EAD06ACF46F2938273AEC1E257B7F45A
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 35 (0x0023); /non-TLS-1.3/
Type: 11 (0x000B); /non-TLS-1.3/
01:00
SERVER_HELLO (sent)
Legacy Version: 0x0303
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
SessionID: 39:9D:1C:3C:BA:45:41:82:93:6A:4A:67:C6:D8:AF:12:96:ED:98:63:4C:72:77:91:6B:7F:12:87:23:79:9B:C9
Extensions:
Type: 51 (0x0033); "key_share"
Secp384r1 (0x0018)
x = 0x884DFC0FE9602539133D59E3779E9DE8644D3532211C1061EFD16D15BE349D6723496325775E87CF3D396F1C02FCC5CF
y = 0x063315C18E34D26B9085A96A495F17B8557DB379DB6ABED0788C60417FCE917ADD8976BB955D9E7E1B1CC6C06F577280
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
SERVER_HANDSHAKE_MESSAGES (sent)
Type: 8 (0x08) - "encrypted_extensions"
Length (octets, dec.): 2
00:00
Type: 11 (0x0B) - "certificate"
Length (octets, dec.): 2699
[...] /skipped 2699 data octets/
Type: 15 (0x0F) - "certificate_verify"
Length (octets, dec.): 107
05:03:00:67:30:65:02:30:0B:D9:DC:F9:5F:54:88:F5:1E:78:ED:AA:5F:B7:31:8B:6F:4F:C5:49:4B:1F:BC:39
8B:79:B4:47:36:03:BC:15:6A:E2:82:6B:4D:50:52:F2:4D:50:B2:C2:88:8A:68:74:02:31:00:8F:37:7C:2D:E7
D4:C8:C2:C8:59:C3:60:C6:0C:61:28:63:BF:EB:E8:CC:D3:9A:0E:45:39:D6:1D:7C:71:75:27:BB:3B:66:CC:45
4B:9E:8E:B3:9F:A6:8C:26:0E:E4:AB
Type: 20 (0x14) - "finished"
Length (octets, dec.): 32
89:23:8D:1E:3F:7C:27:EA:1B:9A:43:B1:BC:A0:1A:7F:41:E3:A9:69:E1:B6:35:D1:E0:FC:62:88:B3:1F:06:7F
CLIENT_FINISHED (received)
Finished value: 0x48F818309B2B05C6DA2BE4F017A7122345AD4ED1FB169D7EFB9615EE8D5F906B
Client Finished status: OK
CLIENT_APPLICATION_DATA (recieved)
ASCII dump (filtered):
GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
: tls13.1d.pw....
TCP: server: 194.87.103.72:443; client: 216.73.216.187:36385; timestamp: 1790467819
Contacts: dxdt.ru, alex/()\/abaabb.xyz.
/\_/\
( 0.0 )
= ^ =
/|_|\
(") (")=~
Provide ESNI to get second ASCII cat
Elapsed server side: 295ms; ServerHello sent: 150ms (including HelloRetryRequest time); TLS connection established: 295ms.