Successfully connected
TLS 1.3 OK; HelloRetryRequest used;
Detailed description:
v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)
HelloRetryRequest used to (re)negotiate DH group
First ClientHello, key shares: 0x001D
Second ClientHello, key shares: 0x0018
CRYPTO_CONTEXT
Protocol version: 0x0304
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
Key exchange: 0x0018 (Secp384r1)
(Handshake level)
Handshake secrets:
Client: 0x411C3DB98CB0FECEEB4473F3D604111B22A1B69D9A96C01475EDB4FF1F53F229
Server: 0xC2C3E77611684097DA7B48428E5E7FCDF7E0891199DE7ABA2557A680B248F19A
Handshake keys:
Client write: 0x20F1DEEDBCBA0BD735F7D5071EC996B6
Server write: 0x56544D043997BEA93AF88770B5053E98
Handshake IVs:
Client write (IV): 0xC3C123BC7675F683D9496C30
Server write (IV): 0x6B23D78F3E8BCE9D1B4AD6CC
(Traffic level)
Traffic secrets:
Client: 0x414A0CB20CDE8126056332FDA72273F24D58930A1BEC01F07CDA443FB1734A70
Server: 0x009C642C7C95595282175DCAA893BBE93F6B662FE18BE2A3854D30D74D501467
Traffic keys:
Client write: 0x28443DD440CE162B9B9F9E8A67D5553B
Server write: 0x3047FCB118B9F71A20B996A50E2F5371
Traffic base IVs:
Client write (base IV): 0x9158C06C1EFE7A362DC1E435
Server write (base IV): 0x4982141A5C52B4149E636515
--- Messages ---
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: 17:E9:6A:62:0C:0D:8B:54:A7:DA:03:2F:A2:7C:45:16:27:1B:5D:40:4F:1B:2E:B6:EA:93:A5:E0:BB:2A:4C:81
Client SessionID: 61:63:88:96:55:EE:41:AD:1E:B2:1D:7E:4E:1E:F8:28:E3:16:71:0A:CB:CC:1F:8D:66:F5:EC:DF:F6:95:91:A3
Extensions:
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 51 (0x0033); "key_share"
X25519 (0x001D)
x = 0x5C7FB6D07C4207819220A4C3FB250921E4AC04C1FA108E1DB29E79166FC74276
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 23 (0x0017); /non-TLS-1.3/
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 35 (0x0023); /non-TLS-1.3/
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 11 (0x000B); /non-TLS-1.3/
01:00
HELLO_RETRY_REQUEST (sent, server)
Legacy Version: 0x0303
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
SessionID: 61:63:88:96:55:EE:41:AD:1E:B2:1D:7E:4E:1E:F8:28:E3:16:71:0A:CB:CC:1F:8D:66:F5:EC:DF:F6:95:91:A3
Extensions:
Type: 51 (0x0033); "key_share"
Secp384r1 (0x0018)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
[Legacy ChangeCipherSpec message present (client)]
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: 17:E9:6A:62:0C:0D:8B:54:A7:DA:03:2F:A2:7C:45:16:27:1B:5D:40:4F:1B:2E:B6:EA:93:A5:E0:BB:2A:4C:81
Client SessionID: 61:63:88:96:55:EE:41:AD:1E:B2:1D:7E:4E:1E:F8:28:E3:16:71:0A:CB:CC:1F:8D:66:F5:EC:DF:F6:95:91:A3
Extensions:
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 51 (0x0033); "key_share"
Secp384r1 (0x0018)
x = 0x380382C83A1E5B68A83ADE83C8CD251D71F3068613340D34A4855AD4C0E1557C7DE1219295D22BDC90346D168CDF2F9B
y = 0xA301B2F9BEEE0E34C87A5FEF5F57895FBDC94360C270D1512E3B1FAA838A12CC41420D79EE138086DDD50F91613DEAF6
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 23 (0x0017); /non-TLS-1.3/
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 35 (0x0023); /non-TLS-1.3/
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 11 (0x000B); /non-TLS-1.3/
01:00
SERVER_HELLO (sent)
Legacy Version: 0x0303
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
SessionID: 61:63:88:96:55:EE:41:AD:1E:B2:1D:7E:4E:1E:F8:28:E3:16:71:0A:CB:CC:1F:8D:66:F5:EC:DF:F6:95:91:A3
Extensions:
Type: 51 (0x0033); "key_share"
Secp384r1 (0x0018)
x = 0x884DFC0FE9602539133D59E3779E9DE8644D3532211C1061EFD16D15BE349D6723496325775E87CF3D396F1C02FCC5CF
y = 0x063315C18E34D26B9085A96A495F17B8557DB379DB6ABED0788C60417FCE917ADD8976BB955D9E7E1B1CC6C06F577280
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
SERVER_HANDSHAKE_MESSAGES (sent)
Type: 8 (0x08) - "encrypted_extensions"
Length (octets, dec.): 2
00:00
Type: 11 (0x0B) - "certificate"
Length (octets, dec.): 3400
[...] /skipped 3400 data octets/
Type: 15 (0x0F) - "certificate_verify"
Length (octets, dec.): 107
05:03:00:67:30:65:02:31:00:C2:2B:71:DA:48:26:EA:D0:5E:3E:C6:6A:39:7E:80:10:B8:E9:B8:C9:CC:68:14
44:E3:AB:B4:58:3D:77:3A:FF:B1:EF:95:95:68:C6:D8:49:04:AC:66:B1:EB:CF:19:B3:02:30:27:2C:0A:E1:5D
9F:61:3A:DD:E3:58:C9:C2:1D:1C:87:E1:1A:68:27:10:58:75:8E:32:5A:18:B7:25:32:8A:3C:A4:19:A3:1D:24
FC:32:8B:1E:83:7E:5A:E1:60:0C:A9
Type: 20 (0x14) - "finished"
Length (octets, dec.): 32
41:64:80:43:96:CC:01:0E:F7:05:D0:EE:01:61:12:0A:0C:6B:89:7E:3A:39:9F:25:A8:17:01:C6:F4:AC:D7:0B
CLIENT_FINISHED (received)
Finished value: 0x7C3FA84D1EF479D8E321E7ACC19610BD0E8926A4767163737985008EE3F9D792
Client Finished status: OK
CLIENT_APPLICATION_DATA (recieved)
ASCII dump (filtered):
GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
: tls13.1d.pw....
TCP: server: 194.87.103.72:443; client: 216.73.217.47:6114; timestamp: 1779259370
Contacts: dxdt.ru, alex/()\/abaabb.xyz.
/\_/\
( 0.0 )
= ^ =
/|_|\
(") (")=~
Provide ESNI to get second ASCII cat
Elapsed server side: 295ms; ServerHello sent: 149ms (including HelloRetryRequest time); TLS connection established: 294ms.