Successfully connected
TLS 1.3 OK; HelloRetryRequest used; server-initiated key update accomplished;
Detailed description:
v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)
HelloRetryRequest used to (re)negotiate DH group
First ClientHello, key shares: 0x001D
Second ClientHello, key shares: 0x0017
CRYPTO_CONTEXT
Protocol version: 0x0304
Cipher suite: 0x1303 (TLS_CHACHA20_POLY1305_SHA256)
Key exchange: 0x0017 (Secp256r1)
(Handshake level)
Handshake secrets:
Client: 0x4806323A09FDF16EAE21900C246426BAFEBDD31B7E1DF586EFCCA766956BDB47
Server: 0xE64804ACB06C899AA9D88FC035DEB7633169EEF05A7CAB01F820E0C2D3B52337
Handshake keys:
Client write: 0x23F47921A5F4731246D8CA6A9E6EF9158DE0FE23967290F3426824414C84924F
Server write: 0xF7E2994A8DFB84A1FD365167FF904149AB53C057866EC6BDFF19E7D768290866
Handshake IVs:
Client write (IV): 0xF7EB5D88B459185B4DD7EB88
Server write (IV): 0xC45A4BCA3BC736FC0CA7CDE7
(Traffic level)
Traffic secrets:
Client: 0x6C7407D3F76E7AEBD532C7ABAB63D9D58C4FDB1A50DF53C3AE8D60C94BFAC613
Server: 0xFDCCB6A719238FA2B40E29771C4A6506360FD7287B73327DB1F9AEB624186E51
KeyUpdates log, server:
0: 0x0A2C47E10A610D8423FA1069D9C31A27ED188E3FE4B2D8EFD8B50E6D18E60F1F
Traffic keys:
Client write: 0x4927E56B96C318882EC69B420011AACA709BCDD7E6C189F7644FA117689141B8
Server write: 0x20F502B364E602087E44965FE921F856065E04524C00A7FCE2AD7DEBE9DC0244
KeyUpdates log, server:
0: 0x08D3ADEA138129A1EFCF5CF93D24D10E42FC66DC6DC35E3D653C8C2CC20A8A32
Traffic base IVs:
Client write (base IV): 0x918D983986C5ADF71BDC0294
Server write (base IV): 0x38D8DD9465164C609B5AD940
KeyUpdates log, server:
0: 0xFEE30627E2D24A3E2C93C9A9
--- Messages ---
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: 83:A4:F3:F5:35:BC:EF:04:C3:F3:3A:10:C6:5D:B1:29:18:83:65:75:CC:3F:F7:CF:B5:6D:AB:32:0C:3B:60:29
Client SessionID: 6E:05:5A:3D:C6:D8:20:81:1D:38:F6:06:EC:84:35:9F:C8:81:6D:7F:ED:2C:6F:B5:91:0F:A9:4E:4F:2C:9E:80
Extensions:
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 51 (0x0033); "key_share"
X25519 (0x001D)
x = 0xAE823BCA131D7553829546EE4C0F6A3A78AE3A6B7D86C2549330F675DE058635
Type: 35 (0x0023); /non-TLS-1.3/
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 23 (0x0017); /non-TLS-1.3/
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
HELLO_RETRY_REQUEST (sent, server)
Legacy Version: 0x0303
Cipher suite: 0x1303 (TLS_CHACHA20_POLY1305_SHA256)
HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
SessionID: 6E:05:5A:3D:C6:D8:20:81:1D:38:F6:06:EC:84:35:9F:C8:81:6D:7F:ED:2C:6F:B5:91:0F:A9:4E:4F:2C:9E:80
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
[Legacy ChangeCipherSpec message present (client)]
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: 83:A4:F3:F5:35:BC:EF:04:C3:F3:3A:10:C6:5D:B1:29:18:83:65:75:CC:3F:F7:CF:B5:6D:AB:32:0C:3B:60:29
Client SessionID: 6E:05:5A:3D:C6:D8:20:81:1D:38:F6:06:EC:84:35:9F:C8:81:6D:7F:ED:2C:6F:B5:91:0F:A9:4E:4F:2C:9E:80
Extensions:
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x6B0266C41E7B32568F51DB670662824C65F5298DC92C9B2866D7A9701F9A2BF6
y = 0x4F3C6526E600C23B097EDCA8F9A7504D00E3485F1E13606B372B6F8E587FD120
Type: 35 (0x0023); /non-TLS-1.3/
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 23 (0x0017); /non-TLS-1.3/
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
SERVER_HELLO (sent)
Legacy Version: 0x0303
Cipher suite: 0x1303 (TLS_CHACHA20_POLY1305_SHA256)
Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
SessionID: 6E:05:5A:3D:C6:D8:20:81:1D:38:F6:06:EC:84:35:9F:C8:81:6D:7F:ED:2C:6F:B5:91:0F:A9:4E:4F:2C:9E:80
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x1FADAC79156E08C8532CE88DF887273141ACE16E44E9C268CE496596F41B65FA
y = 0xF82394637B6ACF004AB253F956BD2CD6CA6C9AD8454BF1FBF281A6C54A93D99C
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
SERVER_HANDSHAKE_MESSAGES (sent)
Type: 8 (0x08) - "encrypted_extensions"
Length (octets, dec.): 2
00:00
Type: 11 (0x0B) - "certificate"
Length (octets, dec.): 3402
[...] /skipped 3402 data octets/
Type: 15 (0x0F) - "certificate_verify"
Length (octets, dec.): 107
05:03:00:67:30:65:02:31:00:FC:D8:CC:34:EA:4C:2A:98:F3:CF:D8:E1:2F:4E:7B:A6:4B:26:5B:9B:4E:AA:FC
65:AF:EA:E8:59:34:53:3C:90:C2:7A:F4:A0:E9:3D:46:5B:95:3A:80:E4:E8:C8:19:E9:02:30:34:80:10:4D:2C
05:A5:EF:4E:FE:17:59:5D:35:7E:1D:AE:2A:80:1B:55:AC:E1:73:CD:63:BA:9F:13:BE:61:6C:A5:10:E4:96:5A
73:7D:47:1F:FE:9A:94:68:58:E7:CE
Type: 20 (0x14) - "finished"
Length (octets, dec.): 32
92:75:5D:DF:F0:21:2F:00:AD:1F:2C:94:95:1E:4B:22:92:B7:24:34:4D:3F:B1:7C:A5:28:77:BD:71:29:AA:76
CLIENT_FINISHED (received)
Finished value: 0x68AB211657EB79049D04A47E2C257449AE984EC179D6FC44784F8E82B6359456
Client Finished status: OK
CLIENT_APPLICATION_DATA (recieved)
ASCII dump (filtered):
GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
: tls13.1d.pw....
[Server KeyUpdate sent /message skipped/]
TCP: server: 194.87.103.72:443; client: 216.73.216.110:11306; timestamp: 1786055877
Contacts: dxdt.ru, alex/()\/abaabb.xyz.
/\_/\
( 0.0 )
= ^ =
/|_|\
(") (")=~
Provide ESNI to get second ASCII cat
Elapsed server side: 276ms; ServerHello sent: 139ms (including HelloRetryRequest time); TLS connection established: 275ms.