Successfully connected
TLS 1.3 OK; HelloRetryRequest used;
Detailed description:
v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)
HelloRetryRequest used to (re)negotiate DH group
First ClientHello, key shares: 0x001D
Second ClientHello, key shares: 0x0017
CRYPTO_CONTEXT
Protocol version: 0x0304
Cipher suite: 0x1302 (TLS_AES_256_GCM_SHA384)
Key exchange: 0x0017 (Secp256r1)
(Handshake level)
Handshake secrets:
Client: 0x5D6ED9F644A86E2F7700C248921CE52651BC4B4EAC804A5822DF3F4DC1749C5CF34F3DF066D734C201096EA5F1BA47B2
Server: 0x01BA290D0D06611A1762FF7B52F30742C3544396B4A608B50DBBD88D9A5EBADC458C99581061CD3B605676524998BBDB
Handshake keys:
Client write: 0x684903218DFC280C239AF344B297274E654F309833DB7E82C2A48081E510B98F
Server write: 0x6034DE8863D96D474564D1A822E313E7AD8583CB6A2C7F608D50DD32126EAA93
Handshake IVs:
Client write (IV): 0x07351B722336880C8107D7D9
Server write (IV): 0x2BB0143BAEFE2D652DAF65B9
(Traffic level)
Traffic secrets:
Client: 0x0DE30FFAB8EA067AE9C9BAAC756213F8AD386E07BB23DC0A231759D9A0BCB62A03380DFCD311F0C595C7CAF42BFEB94F
Server: 0x302D1B2A0EE0758B9DF24228B93B9AB1DAD2DA6A9D410786580BF0F46E03E5EB94594FC394BD8FD9BC75A2DDBFBDA233
Traffic keys:
Client write: 0x66004DE3A17FE1279EB88B0949F5F69584F8BC0C213F57EF9EF8448AF17F2A1D
Server write: 0x153391216EE534119AE502522160E94EA28149A38B27C11D50A440474A0E9230
Traffic base IVs:
Client write (base IV): 0xA8278E403B6B79372AE5FDCC
Server write (base IV): 0xE718B1AE40AD075550AD6058
--- Messages ---
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: F8:C5:F7:BB:D0:00:AB:11:5E:55:61:49:CC:BA:8A:00:32:0D:B1:E1:BE:7C:E5:2C:A1:C4:F7:A3:74:5C:3A:B8
Client SessionID: 1F:8F:A9:94:4D:46:2C:FE:3A:23:4A:42:A3:96:44:04:9E:EB:88:D0:FB:56:8B:83:38:12:23:FC:22:56:F3:B6
Extensions:
Type: 23 (0x0017); /non-TLS-1.3/
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 51 (0x0033); "key_share"
X25519 (0x001D)
x = 0xA1C226E33D56FC7206C638D89FAFA4DDECAB5782DF35AB8C69951B2A2F521E29
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 35 (0x0023); /non-TLS-1.3/
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
HELLO_RETRY_REQUEST (sent, server)
Legacy Version: 0x0303
Cipher suite: 0x1302 (TLS_AES_256_GCM_SHA384)
HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
SessionID: 1F:8F:A9:94:4D:46:2C:FE:3A:23:4A:42:A3:96:44:04:9E:EB:88:D0:FB:56:8B:83:38:12:23:FC:22:56:F3:B6
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
[Legacy ChangeCipherSpec message present (client)]
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: F8:C5:F7:BB:D0:00:AB:11:5E:55:61:49:CC:BA:8A:00:32:0D:B1:E1:BE:7C:E5:2C:A1:C4:F7:A3:74:5C:3A:B8
Client SessionID: 1F:8F:A9:94:4D:46:2C:FE:3A:23:4A:42:A3:96:44:04:9E:EB:88:D0:FB:56:8B:83:38:12:23:FC:22:56:F3:B6
Extensions:
Type: 23 (0x0017); /non-TLS-1.3/
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x6C971468810C989AC555B463A8B2ED93066AAD8C0C4900592596565C95271EB1
y = 0x352C8098D2BB0B15C58D3A4C095EAEA6E1C238E83C83554D27D926CD96161826
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 35 (0x0023); /non-TLS-1.3/
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
SERVER_HELLO (sent)
Legacy Version: 0x0303
Cipher suite: 0x1302 (TLS_AES_256_GCM_SHA384)
Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
SessionID: 1F:8F:A9:94:4D:46:2C:FE:3A:23:4A:42:A3:96:44:04:9E:EB:88:D0:FB:56:8B:83:38:12:23:FC:22:56:F3:B6
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x1FADAC79156E08C8532CE88DF887273141ACE16E44E9C268CE496596F41B65FA
y = 0xF82394637B6ACF004AB253F956BD2CD6CA6C9AD8454BF1FBF281A6C54A93D99C
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
SERVER_HANDSHAKE_MESSAGES (sent)
Type: 8 (0x08) - "encrypted_extensions"
Length (octets, dec.): 2
00:00
Type: 11 (0x0B) - "certificate"
Length (octets, dec.): 2700
[...] /skipped 2700 data octets/
Type: 15 (0x0F) - "certificate_verify"
Length (octets, dec.): 107
05:03:00:67:30:65:02:30:79:A8:3A:D9:A3:A2:A7:C5:E8:F1:26:F1:36:5B:4B:82:2A:6D:1D:47:E0:3A:B4:B2
08:06:5B:94:41:5B:FE:2D:BA:A1:16:7C:E5:D1:05:61:CC:6B:44:19:C3:87:F9:A4:02:31:00:F0:5C:1B:91:FE
50:E5:83:3F:4A:17:5B:73:DE:55:17:CF:D6:67:72:FC:25:C7:C4:3B:EA:55:97:52:3E:D5:BA:4D:77:ED:58:73
DC:80:FA:AD:D1:A6:98:ED:42:1A:ED
Type: 20 (0x14) - "finished"
Length (octets, dec.): 48
5B:14:80:C5:D4:9C:1F:F9:87:83:5D:BD:5F:4C:21:41:A9:BE:63:30:15:8A:94:CC:1E:E8:06:BA:F0:11:58:A6
8F:9F:64:AC:9B:1E:F4:74:DC:8F:E7:5D:23:78:5A:52
CLIENT_FINISHED (received)
Finished value: 0xFD778B2064E6CC487333B2CBCBC246E4DD4875F15B084F5DF6421B23F7B97F08E643938A0E2C2171E23E9D3E7AF253E5
Client Finished status: OK
CLIENT_APPLICATION_DATA (recieved)
ASCII dump (filtered):
GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
: tls13.1d.pw....
TCP: server: 194.87.103.72:443; client: 216.73.216.138:32524; timestamp: 1788503944
Contacts: dxdt.ru, alex/()\/abaabb.xyz.
/\_/\
( 0.0 )
= ^ =
/|_|\
(") (")=~
Provide ESNI to get second ASCII cat
Elapsed server side: 281ms; ServerHello sent: 143ms (including HelloRetryRequest time); TLS connection established: 280ms.