Successfully connected
TLS 1.3 OK; HelloRetryRequest used;
Detailed description:
v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)
HelloRetryRequest used to (re)negotiate DH group
First ClientHello, key shares: 0x001D
Second ClientHello, key shares: 0x0017
CRYPTO_CONTEXT
Protocol version: 0x0304
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
Key exchange: 0x0017 (Secp256r1)
(Handshake level)
Handshake secrets:
Client: 0xB58EFC8A56BB7FBD67AF939497E647E986DEB7AD2E8BBD1C8EC9B81F3CFE4901
Server: 0xC1C3B182D5C741C1B82DD67D60FC6F8FF10153588427318BE097F940F64E4477
Handshake keys:
Client write: 0xE4CF487C50FEF48F891C63DD3C961A57
Server write: 0x9F1D66E41E9266228C7968A64599F8BC
Handshake IVs:
Client write (IV): 0xB63A5B40297BACB4C70E24EB
Server write (IV): 0x6690A4376159C7FFFE212B4A
(Traffic level)
Traffic secrets:
Client: 0x78198F34EE760121A66B2DD77EAC4354BDD26FB48124EDDCDC5EBD70A4982777
Server: 0x69CC92E982B52CB51710B6F5E60FB8E6CB9D4880D7B3C990A460021238BD5C9D
Traffic keys:
Client write: 0xD4B233FADBD5218F79B43C1585610F31
Server write: 0xE12D0419D52DDD9CA880FD703C315ED0
Traffic base IVs:
Client write (base IV): 0x61EA8691AA99D8C5DE207E38
Server write (base IV): 0x85D55383F85B4E298ED4BEAB
--- Messages ---
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: B5:4A:87:23:62:A8:EC:99:F3:56:64:D6:B8:2C:6C:04:E2:2F:09:89:5D:4C:C4:31:F9:3C:C3:ED:17:5D:CA:DB
Client SessionID: F8:C6:C5:2A:EE:AB:7C:E4:44:18:5D:7F:03:3A:62:CE:5B:2A:E6:6B:2F:05:D7:6B:C1:AB:65:18:FF:66:E9:C6
Extensions:
Type: 23 (0x0017); /non-TLS-1.3/
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 35 (0x0023); /non-TLS-1.3/
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 51 (0x0033); "key_share"
X25519 (0x001D)
x = 0xB462BC87B48CD5A4FEF5EE872AD47C7B018FC6CCE29DBABF2016A6229C4E5928
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
HELLO_RETRY_REQUEST (sent, server)
Legacy Version: 0x0303
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
SessionID: F8:C6:C5:2A:EE:AB:7C:E4:44:18:5D:7F:03:3A:62:CE:5B:2A:E6:6B:2F:05:D7:6B:C1:AB:65:18:FF:66:E9:C6
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
[Legacy ChangeCipherSpec message present (client)]
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: B5:4A:87:23:62:A8:EC:99:F3:56:64:D6:B8:2C:6C:04:E2:2F:09:89:5D:4C:C4:31:F9:3C:C3:ED:17:5D:CA:DB
Client SessionID: F8:C6:C5:2A:EE:AB:7C:E4:44:18:5D:7F:03:3A:62:CE:5B:2A:E6:6B:2F:05:D7:6B:C1:AB:65:18:FF:66:E9:C6
Extensions:
Type: 23 (0x0017); /non-TLS-1.3/
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 35 (0x0023); /non-TLS-1.3/
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x31D20AC90229E7CCC562B84E1D24E4698AF22649860B91195C2B38047EFF535C
y = 0x4D5E708BF4F60E19660679FA373B654A10ADA83F3054B32278CA70B46E3ACBDE
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
SERVER_HELLO (sent)
Legacy Version: 0x0303
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
SessionID: F8:C6:C5:2A:EE:AB:7C:E4:44:18:5D:7F:03:3A:62:CE:5B:2A:E6:6B:2F:05:D7:6B:C1:AB:65:18:FF:66:E9:C6
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x1FADAC79156E08C8532CE88DF887273141ACE16E44E9C268CE496596F41B65FA
y = 0xF82394637B6ACF004AB253F956BD2CD6CA6C9AD8454BF1FBF281A6C54A93D99C
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
SERVER_HANDSHAKE_MESSAGES (sent)
Type: 8 (0x08) - "encrypted_extensions"
Length (octets, dec.): 2
00:00
Type: 11 (0x0B) - "certificate"
Length (octets, dec.): 2700
[...] /skipped 2700 data octets/
Type: 15 (0x0F) - "certificate_verify"
Length (octets, dec.): 107
05:03:00:67:30:65:02:30:7F:15:6C:41:DF:22:6F:B1:67:B3:1E:FA:48:56:65:54:31:A0:58:79:FD:B5:95:2A
03:A0:95:17:5D:A7:82:36:4D:5A:37:47:9C:85:E8:40:C6:D7:62:91:E9:DD:4D:E3:02:31:00:F1:BE:3F:46:95
CC:3B:BB:0C:0D:DF:78:CF:5A:95:28:B2:89:61:72:F8:C8:8F:2C:7C:76:02:D9:15:DA:E0:F7:4F:5F:51:0E:79
A9:86:A1:F2:D1:98:85:54:69:A8:6E
Type: 20 (0x14) - "finished"
Length (octets, dec.): 32
79:34:A4:9C:8A:B7:91:A2:E7:15:3E:05:50:AF:29:ED:8A:95:2A:0D:22:F2:36:ED:88:A6:CE:AC:8D:69:46:47
CLIENT_FINISHED (received)
Finished value: 0x92EE76BACB1C2FE144DDBBB1FD7F85E969FC873AAA4A2BE55F666EECD843CEC8
Client Finished status: OK
CLIENT_APPLICATION_DATA (recieved)
ASCII dump (filtered):
GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
: tls13.1d.pw....
TCP: server: 194.87.103.72:443; client: 216.73.217.100:42783; timestamp: 1791245729
Contacts: dxdt.ru, alex/()\/abaabb.xyz.
/\_/\
( 0.0 )
= ^ =
/|_|\
(") (")=~
Provide ESNI to get second ASCII cat
Elapsed server side: 322ms; ServerHello sent: 145ms (including HelloRetryRequest time); TLS connection established: 321ms.