Successfully connected
TLS 1.3 OK; HelloRetryRequest used;
Detailed description:
v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)
HelloRetryRequest used to (re)negotiate DH group
First ClientHello, key shares: 0x001D
Second ClientHello, key shares: 0x0017
CRYPTO_CONTEXT
Protocol version: 0x0304
Cipher suite: 0x1302 (TLS_AES_256_GCM_SHA384)
Key exchange: 0x0017 (Secp256r1)
(Handshake level)
Handshake secrets:
Client: 0x0D6142BA87C6AE9A9AC0A0481AC8D3F38F95611B383118EFB4218E0649DE4E6A55DBA629ED91E055ECDD8A5900C9C18F
Server: 0x8DBB033F44128D196B7A5B867E02CE4CA5F027812314491B5BD705795112F3E22AC15B82DFD80B9FC30686E99567C86C
Handshake keys:
Client write: 0xCD201379ED6B36E666D29E2A1385AF280D6FD2CAEE0D05ED067C7501336076DE
Server write: 0xE37DEFE1FF2450F19CFA2AB40D47FE86B99649BA9397BFEFED49C6AA3EE46443
Handshake IVs:
Client write (IV): 0x767DAFC7EEBC696E631639A2
Server write (IV): 0x5EB9CC8532226E0BCB83095B
(Traffic level)
Traffic secrets:
Client: 0x59745A435F477A4A1B6505D87B139B505D0DBB43E3134FE14E6F76A8496BDA9A032B2D5F676CE29A47A2B016A5FBBA20
Server: 0xA36F5017FDE1D5BBA52149AF29923FD08CD72447EA92544980A3BE0028844060843DBE84337B2172B666D697ADCFCB00
Traffic keys:
Client write: 0x86307C18B88EDAC8772C167768EEBAC42F8E367D792C052969F5772B5878D7FD
Server write: 0xEF0DCA5A784A659DC65E2474FD920DB2D13D9E3A05C1F75D915468E33ADF955D
Traffic base IVs:
Client write (base IV): 0x3DC39E28322D9ADB32097455
Server write (base IV): 0xBB476C7047DB15CBCF39DE9B
--- Messages ---
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: 24:04:42:03:66:FB:07:26:D0:47:27:8B:E7:E1:65:27:8F:BD:57:48:4D:08:81:60:AD:DC:8C:46:03:86:D8:FF
Client SessionID: E6:33:CD:07:B2:E3:8D:BA:4F:66:BE:AC:F5:70:49:A1:D9:B2:C8:C1:A2:E6:46:6D:16:29:C1:BB:6A:E8:CB:B9
Extensions:
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 51 (0x0033); "key_share"
X25519 (0x001D)
x = 0x3978FC65F958A7168530300DD60785BF0C59F5B1F14F4F68072F470A478EF121
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 35 (0x0023); /non-TLS-1.3/
Type: 23 (0x0017); /non-TLS-1.3/
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
HELLO_RETRY_REQUEST (sent, server)
Legacy Version: 0x0303
Cipher suite: 0x1302 (TLS_AES_256_GCM_SHA384)
HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
SessionID: E6:33:CD:07:B2:E3:8D:BA:4F:66:BE:AC:F5:70:49:A1:D9:B2:C8:C1:A2:E6:46:6D:16:29:C1:BB:6A:E8:CB:B9
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
[Legacy ChangeCipherSpec message present (client)]
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: 24:04:42:03:66:FB:07:26:D0:47:27:8B:E7:E1:65:27:8F:BD:57:48:4D:08:81:60:AD:DC:8C:46:03:86:D8:FF
Client SessionID: E6:33:CD:07:B2:E3:8D:BA:4F:66:BE:AC:F5:70:49:A1:D9:B2:C8:C1:A2:E6:46:6D:16:29:C1:BB:6A:E8:CB:B9
Extensions:
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x5AD9A217B566B4ECFEEEA56020369188C10FCA8AD8EFDED6C4BF411B9FFC00F5
y = 0x84EB4DAF59D3256C21477A8A9D3DD21BB76F5DAAE13D3275020FCAB9CDB44E7D
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 35 (0x0023); /non-TLS-1.3/
Type: 23 (0x0017); /non-TLS-1.3/
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
SERVER_HELLO (sent)
Legacy Version: 0x0303
Cipher suite: 0x1302 (TLS_AES_256_GCM_SHA384)
Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
SessionID: E6:33:CD:07:B2:E3:8D:BA:4F:66:BE:AC:F5:70:49:A1:D9:B2:C8:C1:A2:E6:46:6D:16:29:C1:BB:6A:E8:CB:B9
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x1FADAC79156E08C8532CE88DF887273141ACE16E44E9C268CE496596F41B65FA
y = 0xF82394637B6ACF004AB253F956BD2CD6CA6C9AD8454BF1FBF281A6C54A93D99C
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
SERVER_HANDSHAKE_MESSAGES (sent)
Type: 8 (0x08) - "encrypted_extensions"
Length (octets, dec.): 2
00:00
Type: 11 (0x0B) - "certificate"
Length (octets, dec.): 2699
[...] /skipped 2699 data octets/
Type: 15 (0x0F) - "certificate_verify"
Length (octets, dec.): 107
05:03:00:67:30:65:02:30:4D:43:27:6D:88:A4:60:9B:3F:6E:4B:13:57:5F:AD:92:BF:89:47:03:BE:34:DC:41
DB:DF:55:EF:54:E5:E6:0A:63:FF:99:12:95:59:80:82:74:6F:B0:50:7A:F5:68:3D:02:31:00:99:95:75:65:F9
28:DA:DE:F4:00:CB:A5:9C:5F:C5:A2:4D:F8:8B:14:99:2B:CA:7D:FD:9A:08:7D:0C:1A:62:A9:DE:F4:4D:99:BF
DF:01:28:35:00:BD:59:2A:6F:7E:F2
Type: 20 (0x14) - "finished"
Length (octets, dec.): 48
EA:42:BF:42:39:20:FC:A2:37:5B:78:C3:55:65:E8:B7:14:79:70:7D:0A:13:35:10:6E:53:3C:FF:28:B8:54:73
85:A9:56:E4:4C:BD:DA:86:A9:15:59:22:88:F8:96:E7
CLIENT_FINISHED (received)
Finished value: 0xDAF66576057803E719E37C7DC85E9D1BBED6DD4E4FE997B700F8DBAC51030BA9B8CFDD27A7DAD83BCF9FC43192FD4815
Client Finished status: OK
CLIENT_APPLICATION_DATA (recieved)
ASCII dump (filtered):
GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
: tls13.1d.pw....
TCP: server: 194.87.103.72:443; client: 216.73.217.138:1628; timestamp: 1789420127
Contacts: dxdt.ru, alex/()\/abaabb.xyz.
/\_/\
( 0.0 )
= ^ =
/|_|\
(") (")=~
Provide ESNI to get second ASCII cat
Elapsed server side: 297ms; ServerHello sent: 154ms (including HelloRetryRequest time); TLS connection established: 296ms.