TLS 1.3 Connection Test Server at tls13.1d.pw

Successfully connected

TLS 1.3 OK; HelloRetryRequest used; server-initiated key update accomplished;

Detailed description:

v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)

HelloRetryRequest used to (re)negotiate DH group
	First ClientHello, key shares:	0x001D
	Second ClientHello, key shares:	0x0017

CRYPTO_CONTEXT

	Protocol version: 0x0304
	Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
	Key exchange: 0x0017 (Secp256r1)

	(Handshake level)
	Handshake secrets:
		Client: 0x7995F591B931E167DE7ACA5AD902150F6E4AFF2DDB2AC049DCD8E65B0C06D728
		Server: 0x0C56A4547018BE999770904C41DB425ADBF59AD0CD96A536A6C7360B6FCA8F51
	Handshake keys:
		Client write: 0xC27477551A033257B8C36437C1B6DAB2
		Server write: 0xDDDB0E93A1A2109A8B4BDD3DCFE73789
	Handshake IVs:
		Client write (IV): 0x08550B3AAED0C9E141209A6D
		Server write (IV): 0x59357E0AB22D283C962B373B

	(Traffic level)
	Traffic secrets:
		Client: 0x6EDA420F186E4372F22DB4B3B3E50A3C9312C4BCF48C7D70E65F18FEBF29A569
		Server: 0x0E73BA95D199CB54CEF831843E756FD71FEB4F194D073B0790FA048D03556693
		KeyUpdates log, server:
			0: 0x15344D189577AC92447E411DC2650797FDACCC50F83E17F52C6742AAE5BE4A34
	Traffic keys:
		Client write: 0x6F0F0AD63FB04CF70ECA397282699F48
		Server write: 0xE2AAD27E428015BBE0929118DC7ABD02
		KeyUpdates log, server:
			0: 0x192251296EAB0362C5482C99A35CACE4
	Traffic base IVs:
		Client write (base IV): 0xFADBF51F8110357DED73D446
		Server write (base IV): 0xD83F1BD4EC49FB5324731C58
		KeyUpdates log, server:
			0: 0x4798337BEC493850DECDADAD

--- Messages ---

CLIENT_HELLO (recieved)

	Version: 0x0303
	Cipher suites:
		0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
		0xCCA8,0x00FF
	Client Random: E0:9F:B9:9B:03:78:03:5F:29:95:1C:11:1F:6A:57:B7:AA:10:51:8B:18:8A:09:B4:1F:E4:89:5D:0C:DF:99:13
	Client SessionID: 01:CC:59:46:85:04:8B:C1:11:30:77:C0:0D:3A:BF:18:9D:2E:5E:AE:B6:4B:6C:5D:23:CD:12:E0:D1:D6:3B:69
	Extensions:
		Type: 11 (0x000B); /non-TLS-1.3/
			01:00
		Type: 05 (0x0005); "status_request"
			01:00:00:00:00
		Type: 35 (0x0023); /non-TLS-1.3/
		Type: 10 (0x000A); "supported_groups"
			0x001D (X25519)
			0x0017 (Secp256r1)
			0x0018 (Secp384r1)
		Type: 45 (0x002D); "psk_key_exchange_modes"
			01:01
		Type: 13 (0x000D); "signature_algorithms"
			0x0503 (ECDSA_SECP384R1_SHA384)
			0x0403 (ECDSA_SECP256R1_SHA256)
			0x0807 (ED25519)
			0x0806 (RSA_PSS_RSAE_SHA512)
			0x0805 (RSA_PSS_RSAE_SHA384)
			0x0804 (RSA_PSS_RSAE_SHA256)
			0x0601 (RSA_PKCS1_SHA512)
			0x0501 (RSA_PKCS1_SHA384)
			0x0401 (RSA_PKCS1_SHA256)
		Type: 43 (0x002B); "supported_versions"
			0x0304 (TLS 1.3)
			0x0303 (TLS 1.2)
		Type: 51 (0x0033); "key_share"
			X25519 (0x001D)
				x = 0xD9D580E4319FB66876CCB7A9127B473D1EA026C19A16E4269744FA7ECF3D7864
		Type: 00 (0x0000); "server_name"
			00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
			hostname: tls13.1d.pw
		Type: 16 (0x0010); "application_layer_protocol_negotiation"
			68:32 (HTTP/2/TLS)
			68:74:74:70:2F:31:2E:31 (HTTP/1.1)
		Type: 23 (0x0017); /non-TLS-1.3/

HELLO_RETRY_REQUEST (sent, server)

	Legacy Version: 0x0303
	Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
	HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
	SessionID: 01:CC:59:46:85:04:8B:C1:11:30:77:C0:0D:3A:BF:18:9D:2E:5E:AE:B6:4B:6C:5D:23:CD:12:E0:D1:D6:3B:69
	Extensions:
		Type: 51 (0x0033); "key_share"
			Secp256r1 (0x0017)
		Type: 44 (0x002C); "cookie"
			00:08:0C:00:FE:E1:C0:DE:FA:57
		Type: 43 (0x002B); "supported_versions"
			0x0304

[Legacy ChangeCipherSpec message sent (server)]

[Legacy ChangeCipherSpec message present (client)]

CLIENT_HELLO (recieved)

	Version: 0x0303
	Cipher suites:
		0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
		0xCCA8,0x00FF
	Client Random: E0:9F:B9:9B:03:78:03:5F:29:95:1C:11:1F:6A:57:B7:AA:10:51:8B:18:8A:09:B4:1F:E4:89:5D:0C:DF:99:13
	Client SessionID: 01:CC:59:46:85:04:8B:C1:11:30:77:C0:0D:3A:BF:18:9D:2E:5E:AE:B6:4B:6C:5D:23:CD:12:E0:D1:D6:3B:69
	Extensions:
		Type: 11 (0x000B); /non-TLS-1.3/
			01:00
		Type: 05 (0x0005); "status_request"
			01:00:00:00:00
		Type: 35 (0x0023); /non-TLS-1.3/
		Type: 44 (0x002C); "cookie"
			00:08:0C:00:FE:E1:C0:DE:FA:57
		Type: 10 (0x000A); "supported_groups"
			0x001D (X25519)
			0x0017 (Secp256r1)
			0x0018 (Secp384r1)
		Type: 45 (0x002D); "psk_key_exchange_modes"
			01:01
		Type: 13 (0x000D); "signature_algorithms"
			0x0503 (ECDSA_SECP384R1_SHA384)
			0x0403 (ECDSA_SECP256R1_SHA256)
			0x0807 (ED25519)
			0x0806 (RSA_PSS_RSAE_SHA512)
			0x0805 (RSA_PSS_RSAE_SHA384)
			0x0804 (RSA_PSS_RSAE_SHA256)
			0x0601 (RSA_PKCS1_SHA512)
			0x0501 (RSA_PKCS1_SHA384)
			0x0401 (RSA_PKCS1_SHA256)
		Type: 43 (0x002B); "supported_versions"
			0x0304 (TLS 1.3)
			0x0303 (TLS 1.2)
		Type: 51 (0x0033); "key_share"
			Secp256r1 (0x0017)
				x = 0x0BE8C93D1D048AB7D2A9A97B280B63EB4BB41614D96D98FFF47B3C923CBEB79E
				y = 0x0A5822168BC0887E4E9C6E50A25A7C7D9BE5AE289096CB63D345C85BF97C0D5B
		Type: 00 (0x0000); "server_name"
			00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
			hostname: tls13.1d.pw
		Type: 16 (0x0010); "application_layer_protocol_negotiation"
			68:32 (HTTP/2/TLS)
			68:74:74:70:2F:31:2E:31 (HTTP/1.1)
		Type: 23 (0x0017); /non-TLS-1.3/

SERVER_HELLO (sent)

	Legacy Version: 0x0303
	Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
	Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
	SessionID: 01:CC:59:46:85:04:8B:C1:11:30:77:C0:0D:3A:BF:18:9D:2E:5E:AE:B6:4B:6C:5D:23:CD:12:E0:D1:D6:3B:69
	Extensions:
		Type: 51 (0x0033); "key_share"
			Secp256r1 (0x0017)
				x = 0x1FADAC79156E08C8532CE88DF887273141ACE16E44E9C268CE496596F41B65FA
				y = 0xF82394637B6ACF004AB253F956BD2CD6CA6C9AD8454BF1FBF281A6C54A93D99C
		Type: 43 (0x002B); "supported_versions"
			0x0304

[Legacy ChangeCipherSpec message sent (server)]

SERVER_HANDSHAKE_MESSAGES (sent)

	Type: 8 (0x08) - "encrypted_extensions"
		Length (octets, dec.): 2
		00:00
	Type: 11 (0x0B) - "certificate"
		Length (octets, dec.): 2698
		[...] /skipped 2698 data octets/
	Type: 15 (0x0F) - "certificate_verify"
		Length (octets, dec.): 107
		05:03:00:67:30:65:02:30:67:23:D1:AC:A0:63:55:61:FD:97:17:9F:25:8A:FE:24:A2:A3:B6:A8:D8:D5:C1:3F
		64:51:D1:84:06:51:5E:23:55:F3:16:5C:D5:72:B7:D6:62:2C:1A:78:2E:AC:44:6D:02:31:00:9D:D2:6F:33:66
		59:18:21:F3:8E:92:E1:1F:56:41:75:47:99:9C:5A:5E:A6:B6:36:C3:D2:1A:94:D9:F4:99:62:D4:1C:90:10:EF
		7C:26:58:26:A5:8A:C0:FD:9D:A7:4C
	Type: 20 (0x14) - "finished"
		Length (octets, dec.): 32
		1A:26:ED:E8:F9:18:26:70:6F:6C:51:55:03:D1:E3:1D:7B:0D:97:5C:84:3F:9B:08:A3:F1:1D:32:D8:80:55:57


CLIENT_FINISHED (received)

	Finished value: 0x21666F459486F77FC6AAFCC9A9B1AAF41CF6A5710BC8A6E73AEB30DEFD5E84F8
	Client Finished status: OK

CLIENT_APPLICATION_DATA (recieved)

	ASCII dump (filtered):
		GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
		/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
		t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
		: tls13.1d.pw....

[Server KeyUpdate sent /message skipped/]



TCP: server: 194.87.103.72:443; client: 216.73.217.138:21688; timestamp: 1789365830


Contacts: dxdt.ru, alex/()\/abaabb.xyz.

 /\_/\
( 0.0 )
 = ^ =
 /|_|\
(") (")=~


Provide ESNI to get second ASCII cat

Elapsed server side: 306ms; ServerHello sent: 156ms (including HelloRetryRequest time); TLS connection established: 305ms.