Successfully connected
TLS 1.3 OK; HelloRetryRequest used;
Detailed description:
v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)
HelloRetryRequest used to (re)negotiate DH group
First ClientHello, key shares: 0x001D
Second ClientHello, key shares: 0x0017
CRYPTO_CONTEXT
Protocol version: 0x0304
Cipher suite: 0x1302 (TLS_AES_256_GCM_SHA384)
Key exchange: 0x0017 (Secp256r1)
(Handshake level)
Handshake secrets:
Client: 0xF600F59DDD4CF23EFA6AB50B171F422D38E245E47CEC8B5C77646D41400F51D6FDDFAF5053CF609A6A6BC49846A1E331
Server: 0xA7CD07784A08844F422065B87EEB6A8C4EFF2668F836A571ADDE65C3D5A6E5DC501C1292F0EDCA4C717685EFA24C41FB
Handshake keys:
Client write: 0x4F5DF1627429B07D88D350F394E3A85E355791D3825A1329D5EC38AAF9ED4419
Server write: 0x9B708C278B668E2F977E7D65DD4D65C1E1659BBBEB209C575F732E973679CD4D
Handshake IVs:
Client write (IV): 0x8D8E2B6EF476BF94CD94C31C
Server write (IV): 0xEE298DEE4AE2092E7AF197AB
(Traffic level)
Traffic secrets:
Client: 0x7FC329F6F8C54EE558740D478DC8B61A924CD93D980FDC05F8F0A59991648388C85C0DE1E530A30256204967A77A5BA1
Server: 0x9E1171E79C3740F90CFBC1B0DA49A4AF06A0B14BAFA697112EFA39B8019D355C108EB3D3EBADFDB740CA77A4EAF94A4D
Traffic keys:
Client write: 0xABFADFB47AC2E8ABFFB178617E5403236858AF5A45BD777C00776B61B18FC247
Server write: 0x6AD753439BCE2BEA15843C8A24287159964EA5F415C8C96A3F9ADAC9A2E61516
Traffic base IVs:
Client write (base IV): 0xC5CC0025B71D1EA3FA679F40
Server write (base IV): 0xC9F1BBCEAF35F6D6E93ADA56
--- Messages ---
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: 06:BF:F8:3B:9C:AC:F5:49:7B:36:73:4D:8D:22:83:03:46:59:D0:08:68:F4:2C:3E:41:FB:DB:36:E1:1E:BC:49
Client SessionID: 29:21:08:3D:47:D2:38:84:DB:CC:20:C9:D3:FD:BD:9A:E7:D4:9E:4D:18:00:BB:41:79:23:D4:8B:A5:B3:22:94
Extensions:
Type: 51 (0x0033); "key_share"
X25519 (0x001D)
x = 0xAF7EBB7FF7A1373DAD3A262EBC6A84A2DDA64EA240730F915C6C7CDB64147D2C
Type: 35 (0x0023); /non-TLS-1.3/
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 23 (0x0017); /non-TLS-1.3/
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
HELLO_RETRY_REQUEST (sent, server)
Legacy Version: 0x0303
Cipher suite: 0x1302 (TLS_AES_256_GCM_SHA384)
HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
SessionID: 29:21:08:3D:47:D2:38:84:DB:CC:20:C9:D3:FD:BD:9A:E7:D4:9E:4D:18:00:BB:41:79:23:D4:8B:A5:B3:22:94
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
[Legacy ChangeCipherSpec message present (client)]
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: 06:BF:F8:3B:9C:AC:F5:49:7B:36:73:4D:8D:22:83:03:46:59:D0:08:68:F4:2C:3E:41:FB:DB:36:E1:1E:BC:49
Client SessionID: 29:21:08:3D:47:D2:38:84:DB:CC:20:C9:D3:FD:BD:9A:E7:D4:9E:4D:18:00:BB:41:79:23:D4:8B:A5:B3:22:94
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x1EDD6AB8886B1EF8724997E13450B85A2121537818C3DA93914CAEC642F0AEC0
y = 0x7038BA79A59A230606BCAF60C4A655F5F50E019AB7C20CBB6311957FAC5A546F
Type: 35 (0x0023); /non-TLS-1.3/
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 23 (0x0017); /non-TLS-1.3/
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
SERVER_HELLO (sent)
Legacy Version: 0x0303
Cipher suite: 0x1302 (TLS_AES_256_GCM_SHA384)
Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
SessionID: 29:21:08:3D:47:D2:38:84:DB:CC:20:C9:D3:FD:BD:9A:E7:D4:9E:4D:18:00:BB:41:79:23:D4:8B:A5:B3:22:94
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x1FADAC79156E08C8532CE88DF887273141ACE16E44E9C268CE496596F41B65FA
y = 0xF82394637B6ACF004AB253F956BD2CD6CA6C9AD8454BF1FBF281A6C54A93D99C
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
SERVER_HANDSHAKE_MESSAGES (sent)
Type: 8 (0x08) - "encrypted_extensions"
Length (octets, dec.): 2
00:00
Type: 11 (0x0B) - "certificate"
Length (octets, dec.): 2699
[...] /skipped 2699 data octets/
Type: 15 (0x0F) - "certificate_verify"
Length (octets, dec.): 107
05:03:00:67:30:65:02:30:06:3F:BD:8A:62:86:7F:86:A6:B7:C2:54:4B:6B:38:08:09:81:C9:4E:79:DB:08:CC
10:58:16:22:9C:F3:54:9F:E9:F1:30:1A:EA:36:D1:ED:A9:C8:12:8A:AA:1A:C8:58:02:31:00:F1:38:49:BC:F7
A1:AF:30:15:17:64:0F:FD:B1:FD:A4:43:BA:63:05:5A:9E:9F:82:0E:2D:AC:4B:25:A0:7A:63:AF:91:86:57:F4
40:44:92:D6:25:75:F7:84:85:50:BC
Type: 20 (0x14) - "finished"
Length (octets, dec.): 48
32:F1:41:95:06:A7:C7:9B:3D:07:DB:64:56:28:48:82:DA:85:4F:53:F0:9D:E5:D5:2F:EB:E8:C0:04:2B:59:D7
AA:E7:05:29:0C:D1:87:A1:20:46:52:7D:14:B9:03:87
CLIENT_FINISHED (received)
Finished value: 0x40E6B1DC307F560C399AE768561B15A9E8A6A4B693DA9999F90D1313F5225DC762399B9F7949A30AE835D7FA5D457F21
Client Finished status: OK
CLIENT_APPLICATION_DATA (recieved)
ASCII dump (filtered):
GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
: tls13.1d.pw....
TCP: server: 194.87.103.72:443; client: 216.73.217.78:1973; timestamp: 1790727799
Contacts: dxdt.ru, alex/()\/abaabb.xyz.
/\_/\
( 0.0 )
= ^ =
/|_|\
(") (")=~
Provide ESNI to get second ASCII cat
Elapsed server side: 281ms; ServerHello sent: 142ms (including HelloRetryRequest time); TLS connection established: 280ms.