Successfully connected
TLS 1.3 OK; HelloRetryRequest used;
Detailed description:
v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)
HelloRetryRequest used to (re)negotiate DH group
First ClientHello, key shares: 0x001D
Second ClientHello, key shares: 0x0018
CRYPTO_CONTEXT
Protocol version: 0x0304
Cipher suite: 0x1303 (TLS_CHACHA20_POLY1305_SHA256)
Key exchange: 0x0018 (Secp384r1)
(Handshake level)
Handshake secrets:
Client: 0x57DFAEDD30F8C757D5207AEAECD36567F98A27B11C18C279B7A3AFD96D8A33A9
Server: 0xF15B48CF888699C5E3C34914B73414E13AE8DB1CBE4C822025D7C12CA3D2F6E5
Handshake keys:
Client write: 0x056A2F5D05D7969693FB1D4714BFD1EAC90D0A090C872421E7E002C14ED355A5
Server write: 0xFA0701458DC3D9BF0171C767250E6D210423F79027D063152E76019A82B0DC06
Handshake IVs:
Client write (IV): 0x20836C20B00237E8CA4807C5
Server write (IV): 0xC87443D6773849AAA7ABCBCE
(Traffic level)
Traffic secrets:
Client: 0x64489B5AC7A7F982E36A74FA2946CA2B98CD806059D4D04B4D1BB25F75CF9FF5
Server: 0xE8B55ED90122A59CBED2B110A347AACAA5D0DFC1F473FE7EF68ABBEA38B45EB9
Traffic keys:
Client write: 0x6ADA28603E6EBEB5BB95A81577F53AD6277C5FDC545F36E7EEBEA982867AC010
Server write: 0x793E43896C2CD33B24F1CEF524F2380F0BEF92D8CE4D60A17785E0DC55C82B3D
Traffic base IVs:
Client write (base IV): 0x83B1921C00787F7867A2E82A
Server write (base IV): 0x2F293B6CE78D8E96E0846CEE
--- Messages ---
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: D6:1C:13:F1:4F:CC:C6:1C:D9:C9:E1:DE:F4:9A:99:EE:9E:0A:73:AF:86:5B:A0:B6:82:74:18:D4:1D:2F:D4:44
Client SessionID: BC:42:D0:F6:F5:59:08:41:71:AA:FA:8B:1C:72:35:9F:03:33:71:49:F9:CE:79:8E:B3:60:D9:08:62:45:DE:20
Extensions:
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 23 (0x0017); /non-TLS-1.3/
Type: 51 (0x0033); "key_share"
X25519 (0x001D)
x = 0xE41A79F037CAFB9ADDE06456FC38A9DA4DE3B1CFF592EAC3165227C3C716144E
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 35 (0x0023); /non-TLS-1.3/
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
HELLO_RETRY_REQUEST (sent, server)
Legacy Version: 0x0303
Cipher suite: 0x1303 (TLS_CHACHA20_POLY1305_SHA256)
HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
SessionID: BC:42:D0:F6:F5:59:08:41:71:AA:FA:8B:1C:72:35:9F:03:33:71:49:F9:CE:79:8E:B3:60:D9:08:62:45:DE:20
Extensions:
Type: 51 (0x0033); "key_share"
Secp384r1 (0x0018)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
[Legacy ChangeCipherSpec message present (client)]
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: D6:1C:13:F1:4F:CC:C6:1C:D9:C9:E1:DE:F4:9A:99:EE:9E:0A:73:AF:86:5B:A0:B6:82:74:18:D4:1D:2F:D4:44
Client SessionID: BC:42:D0:F6:F5:59:08:41:71:AA:FA:8B:1C:72:35:9F:03:33:71:49:F9:CE:79:8E:B3:60:D9:08:62:45:DE:20
Extensions:
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 23 (0x0017); /non-TLS-1.3/
Type: 51 (0x0033); "key_share"
Secp384r1 (0x0018)
x = 0x873F0E75EF8689561FDDAE4CC898DCFB1FBDB7812511B87DCCD192479ABFC1917B494373D71263D009E07DC1DC25D63C
y = 0xFD791493E41184E56A211B337CCDFFF4EB5030D4488CBB79D62D8F2A15E909A12E0D6A5150096497239B2B1512BADB2E
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 35 (0x0023); /non-TLS-1.3/
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
SERVER_HELLO (sent)
Legacy Version: 0x0303
Cipher suite: 0x1303 (TLS_CHACHA20_POLY1305_SHA256)
Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
SessionID: BC:42:D0:F6:F5:59:08:41:71:AA:FA:8B:1C:72:35:9F:03:33:71:49:F9:CE:79:8E:B3:60:D9:08:62:45:DE:20
Extensions:
Type: 51 (0x0033); "key_share"
Secp384r1 (0x0018)
x = 0x884DFC0FE9602539133D59E3779E9DE8644D3532211C1061EFD16D15BE349D6723496325775E87CF3D396F1C02FCC5CF
y = 0x063315C18E34D26B9085A96A495F17B8557DB379DB6ABED0788C60417FCE917ADD8976BB955D9E7E1B1CC6C06F577280
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
SERVER_HANDSHAKE_MESSAGES (sent)
Type: 8 (0x08) - "encrypted_extensions"
Length (octets, dec.): 2
00:00
Type: 11 (0x0B) - "certificate"
Length (octets, dec.): 3401
[...] /skipped 3401 data octets/
Type: 15 (0x0F) - "certificate_verify"
Length (octets, dec.): 106
05:03:00:66:30:64:02:30:43:C9:B4:A5:19:43:E3:66:15:78:DA:CE:E6:A7:44:51:8E:04:10:D2:8C:64:F2:04
2A:DB:B1:15:B8:0D:26:F3:B4:28:5B:C6:D1:A1:B4:7B:00:92:DA:05:42:6A:02:54:02:30:6D:92:A8:7E:6A:8B
2B:7B:BA:F4:40:71:71:0E:3E:39:7C:9F:80:6A:2A:AA:6C:67:7D:2E:7F:18:00:AB:8C:88:AD:41:97:02:FD:5C
22:15:62:5D:30:32:49:56:5F:05
Type: 20 (0x14) - "finished"
Length (octets, dec.): 32
E2:79:E4:7F:5E:E5:7B:EC:16:33:66:26:F3:DE:F6:FF:09:48:5F:04:1B:68:52:48:F8:F8:C3:C8:27:B4:9F:5F
CLIENT_FINISHED (received)
Finished value: 0x78BB83ED8A0E55B841C9F824B93F223A27FA27F700F28A28F6604E00EFD69D04
Client Finished status: OK
CLIENT_APPLICATION_DATA (recieved)
ASCII dump (filtered):
GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
: tls13.1d.pw....
TCP: server: 194.87.103.72:443; client: 216.73.217.101:5308; timestamp: 1785033930
Contacts: dxdt.ru, alex/()\/abaabb.xyz.
/\_/\
( 0.0 )
= ^ =
/|_|\
(") (")=~
Provide ESNI to get second ASCII cat
Elapsed server side: 287ms; ServerHello sent: 147ms (including HelloRetryRequest time); TLS connection established: 286ms.