Successfully connected
TLS 1.3 OK; HelloRetryRequest used;
Detailed description:
v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)
HelloRetryRequest used to (re)negotiate DH group
First ClientHello, key shares: 0x001D
Second ClientHello, key shares: 0x0017
CRYPTO_CONTEXT
Protocol version: 0x0304
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
Key exchange: 0x0017 (Secp256r1)
(Handshake level)
Handshake secrets:
Client: 0xBDCFC08DABD783A8822B4D7765BB49261E1F7098F01D160D9BB550F4C57EF03F
Server: 0x6AFE0385D1A3DD5D075BA629252A60CDF68413F7F5A783C9573BA502817C4ACB
Handshake keys:
Client write: 0xB47881217B16347057DB8C49F43D6EE0
Server write: 0x271E786ECC68C09D55A8379050C34BE8
Handshake IVs:
Client write (IV): 0xF8A21819551566A87112C014
Server write (IV): 0x5251FB899EB40C2DDC11CC5C
(Traffic level)
Traffic secrets:
Client: 0x893F3123169EE7E6600D1004D39C9388B55ABAEFDA43DB65A82B89BCBC96C0E5
Server: 0xC8614B551F5827310F0C7A52D6FA6F404352061E2982F8E7F7062A20C8816268
Traffic keys:
Client write: 0x981FEE0AEEDC58E6330EA9774A81BA8E
Server write: 0xF931084FEF05A7618103AAE3AD27764D
Traffic base IVs:
Client write (base IV): 0x5759B087EF813978D6B618CE
Server write (base IV): 0xA94F48F51EC5F08B08CAC5B3
--- Messages ---
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: BA:69:68:E3:D3:E4:73:28:BA:39:43:C1:82:14:4C:CF:13:6F:41:CC:07:18:D4:15:5C:44:A3:18:D4:94:57:34
Client SessionID: 50:DD:1F:65:72:8D:68:F0:CA:46:E4:E7:4E:49:DA:F5:F6:53:46:B9:4C:45:68:CC:2E:B8:21:10:8F:DC:5C:8B
Extensions:
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 23 (0x0017); /non-TLS-1.3/
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 35 (0x0023); /non-TLS-1.3/
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 51 (0x0033); "key_share"
X25519 (0x001D)
x = 0x0641D0BE14B3A3DA391880B363A8486707256C3FF2BB9E2305F7418EDDDCD33C
HELLO_RETRY_REQUEST (sent, server)
Legacy Version: 0x0303
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
SessionID: 50:DD:1F:65:72:8D:68:F0:CA:46:E4:E7:4E:49:DA:F5:F6:53:46:B9:4C:45:68:CC:2E:B8:21:10:8F:DC:5C:8B
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
[Legacy ChangeCipherSpec message present (client)]
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: BA:69:68:E3:D3:E4:73:28:BA:39:43:C1:82:14:4C:CF:13:6F:41:CC:07:18:D4:15:5C:44:A3:18:D4:94:57:34
Client SessionID: 50:DD:1F:65:72:8D:68:F0:CA:46:E4:E7:4E:49:DA:F5:F6:53:46:B9:4C:45:68:CC:2E:B8:21:10:8F:DC:5C:8B
Extensions:
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 23 (0x0017); /non-TLS-1.3/
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 35 (0x0023); /non-TLS-1.3/
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0xB57256D6589B69BBC8EC20D04257DD6F48BB90B351140827D7306B4BCD3B0D47
y = 0x7F6292E578148E1536DD9D7260C72755A20CDB7D40101DD4464B038C16591B78
SERVER_HELLO (sent)
Legacy Version: 0x0303
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
SessionID: 50:DD:1F:65:72:8D:68:F0:CA:46:E4:E7:4E:49:DA:F5:F6:53:46:B9:4C:45:68:CC:2E:B8:21:10:8F:DC:5C:8B
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x1FADAC79156E08C8532CE88DF887273141ACE16E44E9C268CE496596F41B65FA
y = 0xF82394637B6ACF004AB253F956BD2CD6CA6C9AD8454BF1FBF281A6C54A93D99C
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
SERVER_HANDSHAKE_MESSAGES (sent)
Type: 8 (0x08) - "encrypted_extensions"
Length (octets, dec.): 2
00:00
Type: 11 (0x0B) - "certificate"
Length (octets, dec.): 2699
[...] /skipped 2699 data octets/
Type: 15 (0x0F) - "certificate_verify"
Length (octets, dec.): 108
05:03:00:68:30:66:02:31:00:C1:F7:40:77:E5:13:9F:C2:FA:69:DF:72:32:4D:6C:AD:5B:A6:F9:40:E9:61:3C
6B:AA:DB:A8:11:0C:F0:53:78:78:B1:0F:AC:DA:A5:3B:C1:10:06:4B:83:50:FF:E9:2C:02:31:00:F1:8F:88:91
A3:64:13:AC:38:BF:44:F6:0D:73:23:BE:D7:52:CF:0D:2D:82:F5:95:EE:B4:3F:23:6B:51:C5:83:4F:B3:5D:B2
88:57:C0:5E:3E:1C:0E:90:35:DD:9D:E4
Type: 20 (0x14) - "finished"
Length (octets, dec.): 32
90:F7:A0:79:93:CC:AF:03:F0:56:AF:17:12:56:83:E7:6D:43:C3:E8:F8:66:FB:9D:A6:10:D2:71:17:04:BA:C3
CLIENT_FINISHED (received)
Finished value: 0x6351876249FCFEF5975113C1B9F8186C18B829D3D16800F281F0AB9179F20749
Client Finished status: OK
CLIENT_APPLICATION_DATA (recieved)
ASCII dump (filtered):
GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
: tls13.1d.pw....
TCP: server: 194.87.103.72:443; client: 216.73.216.40:21114; timestamp: 1789192221
Contacts: dxdt.ru, alex/()\/abaabb.xyz.
/\_/\
( 0.0 )
= ^ =
/|_|\
(") (")=~
Provide ESNI to get second ASCII cat
Elapsed server side: 287ms; ServerHello sent: 145ms (including HelloRetryRequest time); TLS connection established: 287ms.