Successfully connected
TLS 1.3 OK; HelloRetryRequest used;
Detailed description:
v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)
HelloRetryRequest used to (re)negotiate DH group
First ClientHello, key shares: 0x001D
Second ClientHello, key shares: 0x0018
CRYPTO_CONTEXT
Protocol version: 0x0304
Cipher suite: 0x1302 (TLS_AES_256_GCM_SHA384)
Key exchange: 0x0018 (Secp384r1)
(Handshake level)
Handshake secrets:
Client: 0xD11A50699CA6B5586C9C9E08E76F71433A34B188B39E36E579B9868EB96BA4D7C69E71A51A933F4D47FEBD89477FF5F2
Server: 0xFC553D1FAE787372FA2027725435C7B3F40E03EDAF985D968DC0BDB20580F4D5B00E1A9E24EA59136A776D1159E0D38F
Handshake keys:
Client write: 0xE0E76225B05D3F5E91A2B5DF4270FFE3B7A65DF255D05934D49855C23C13FACA
Server write: 0xA5BE094D18A5EF4F9F0119E45BC772A5BB419D5923A5267643FDA094B90B26C7
Handshake IVs:
Client write (IV): 0x28A353F1A76D0DC622AF3A83
Server write (IV): 0x9A32A0487C39B37E2C1AC554
(Traffic level)
Traffic secrets:
Client: 0xE5C43723C1A7107B63718A00C9E3477F31400EDA43884AB15A80592AE8800E1F5854FA27563F79368858E14E54F8DC5F
Server: 0x44E55A87E617668E45426555A5B880CFA3B49EC3F27710523261E576FADFEE3752065D327642B5DC7F2CCE1DD4324A12
Traffic keys:
Client write: 0x2F8531D4AB1F08C8CDC840C7330DF59C719868EA362FD8909DB469DECE61123A
Server write: 0x5744E12E799C4B9F541D720236ADC757038B56D9A0B30EFA9C702646D5D321BA
Traffic base IVs:
Client write (base IV): 0xABD92F4A26B6B3E84094FD78
Server write (base IV): 0x066DB920790317F53CAC26CF
--- Messages ---
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: 04:7A:A7:3C:DA:79:0B:7D:C4:04:9E:8C:57:5B:25:17:98:2A:5C:A8:DA:52:D1:DB:06:57:0C:C9:4C:10:A6:AE
Client SessionID: 1A:E3:DB:C5:08:8D:28:B4:AC:8D:8F:CE:42:10:9C:62:1C:65:18:9D:D0:11:D8:CC:80:50:BC:2C:56:96:FB:7C
Extensions:
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 51 (0x0033); "key_share"
X25519 (0x001D)
x = 0x9A17ECD4FABEB447C84646413E1949F85125B28AC88BBFC0CE5CE69A91E9C574
Type: 35 (0x0023); /non-TLS-1.3/
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 23 (0x0017); /non-TLS-1.3/
HELLO_RETRY_REQUEST (sent, server)
Legacy Version: 0x0303
Cipher suite: 0x1302 (TLS_AES_256_GCM_SHA384)
HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
SessionID: 1A:E3:DB:C5:08:8D:28:B4:AC:8D:8F:CE:42:10:9C:62:1C:65:18:9D:D0:11:D8:CC:80:50:BC:2C:56:96:FB:7C
Extensions:
Type: 51 (0x0033); "key_share"
Secp384r1 (0x0018)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
[Legacy ChangeCipherSpec message present (client)]
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: 04:7A:A7:3C:DA:79:0B:7D:C4:04:9E:8C:57:5B:25:17:98:2A:5C:A8:DA:52:D1:DB:06:57:0C:C9:4C:10:A6:AE
Client SessionID: 1A:E3:DB:C5:08:8D:28:B4:AC:8D:8F:CE:42:10:9C:62:1C:65:18:9D:D0:11:D8:CC:80:50:BC:2C:56:96:FB:7C
Extensions:
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 51 (0x0033); "key_share"
Secp384r1 (0x0018)
x = 0x72D6A757E99A7252DBBC927094FB92AA8574123DDBB82DC7E981E14E4AF858B878D7B8FAA129AF8A2F0093F009BB6E59
y = 0x452FB384165A907BAE619278771AFD6E38CF56B76C733C306B83227B8E55305ABD7EB822818ECBDD9B3648C45F05B570
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 35 (0x0023); /non-TLS-1.3/
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 23 (0x0017); /non-TLS-1.3/
SERVER_HELLO (sent)
Legacy Version: 0x0303
Cipher suite: 0x1302 (TLS_AES_256_GCM_SHA384)
Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
SessionID: 1A:E3:DB:C5:08:8D:28:B4:AC:8D:8F:CE:42:10:9C:62:1C:65:18:9D:D0:11:D8:CC:80:50:BC:2C:56:96:FB:7C
Extensions:
Type: 51 (0x0033); "key_share"
Secp384r1 (0x0018)
x = 0x884DFC0FE9602539133D59E3779E9DE8644D3532211C1061EFD16D15BE349D6723496325775E87CF3D396F1C02FCC5CF
y = 0x063315C18E34D26B9085A96A495F17B8557DB379DB6ABED0788C60417FCE917ADD8976BB955D9E7E1B1CC6C06F577280
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
SERVER_HANDSHAKE_MESSAGES (sent)
Type: 8 (0x08) - "encrypted_extensions"
Length (octets, dec.): 2
00:00
Type: 11 (0x0B) - "certificate"
Length (octets, dec.): 3401
[...] /skipped 3401 data octets/
Type: 15 (0x0F) - "certificate_verify"
Length (octets, dec.): 107
05:03:00:67:30:65:02:30:66:C2:AB:8E:AE:50:E6:9A:82:14:74:E6:AC:A3:40:28:3F:8E:49:13:6C:C5:47:27
A1:74:BC:5E:A1:66:5B:2F:C4:94:7F:76:75:03:61:0B:F9:85:4B:D3:9C:5F:A6:F7:02:31:00:8D:A4:A4:02:3A
D2:00:D9:98:DF:AC:B3:19:04:78:BC:94:B8:59:91:3B:21:61:A8:4A:1D:77:0E:FA:F8:03:7A:78:E6:9E:00:08
DE:F6:CE:75:44:3A:AF:A0:36:94:D1
Type: 20 (0x14) - "finished"
Length (octets, dec.): 48
EA:F5:91:58:3E:39:D7:21:D0:E7:FA:CE:1F:AD:09:E8:E0:C3:02:16:37:79:75:8B:F7:0D:21:E3:B6:A9:02:0C
CC:96:3D:BD:DD:78:DE:31:48:FF:B2:69:90:66:97:F3
CLIENT_FINISHED (received)
Finished value: 0x6AE4265B5737762AC610606F83B336F768B78C6352E0D7891AFBDE22F3B466C12C191BC61BCE2D29426578DBAD8279B1
Client Finished status: OK
CLIENT_APPLICATION_DATA (recieved)
ASCII dump (filtered):
GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
: tls13.1d.pw....
TCP: server: 194.87.103.72:443; client: 216.73.216.52:56698; timestamp: 1780514583
Contacts: dxdt.ru, alex/()\/abaabb.xyz.
/\_/\
( 0.0 )
= ^ =
/|_|\
(") (")=~
Provide ESNI to get second ASCII cat
Elapsed server side: 285ms; ServerHello sent: 145ms (including HelloRetryRequest time); TLS connection established: 284ms.