Successfully connected
TLS 1.3 OK; HelloRetryRequest used; server-initiated key update accomplished;
Detailed description:
v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)
HelloRetryRequest used to (re)negotiate DH group
First ClientHello, key shares: 0x001D
Second ClientHello, key shares: 0x0017
CRYPTO_CONTEXT
Protocol version: 0x0304
Cipher suite: 0x1303 (TLS_CHACHA20_POLY1305_SHA256)
Key exchange: 0x0017 (Secp256r1)
(Handshake level)
Handshake secrets:
Client: 0x4B00084FB12BC196C9B3DF443293750BA9AAC4333F414A0E4DB22B74794B8B00
Server: 0x3FA7FF8638DE5E7869A2CA1F554949A00F95D29FAD12B90FC1D123BF3DC682C0
Handshake keys:
Client write: 0x27E648D510F05FE7AE653379FA87BF60CE7DC4B7C783DAF574779BF99773831D
Server write: 0x44FF4A580BBD8C3BA14D9605408BAB9AECF1B46D4B64299D518E435F06F5C688
Handshake IVs:
Client write (IV): 0xBBFDED4A4E4CF6C5169E3AC5
Server write (IV): 0xBBA9ED4F330A7569067941FC
(Traffic level)
Traffic secrets:
Client: 0xB9714C8C464A12BAEEA9275AA2CDBDAF4AB86C62049E19C4139BA4B0E5E99F16
Server: 0xE930A516996E378ECC6FFA4C7BBABF004BDAAEBF22795086ECFEBAB5D25802DF
KeyUpdates log, server:
0: 0xF407CB84FA9E03778743B47DAD1A107679A9DA3B529EE84B611BFB3BE0A0248A
Traffic keys:
Client write: 0xE8404AC5D66DB1E609704C3AAA5C45675709E51F046764C75DE237BE253E2D91
Server write: 0x1ACF831539A4CFEF170000EEA098B730BD99428B3AFA7E8B15A37D98A40FD880
KeyUpdates log, server:
0: 0x040230F29B6E2E36DE2B75F6090D6DF4BEDBB15D097A164ECD8095C8A3A116A3
Traffic base IVs:
Client write (base IV): 0x273AE6ABEC494DEAE9B636C5
Server write (base IV): 0x5EACA02A226411757948FD25
KeyUpdates log, server:
0: 0x6E57B699C2DE60105745D20D
--- Messages ---
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: 22:A7:23:1E:B5:C2:A7:15:24:A9:6C:ED:21:41:FA:78:5F:E4:54:FF:AD:62:4C:CF:68:04:CD:C3:93:B4:84:F7
Client SessionID: 6E:D8:2E:58:63:59:DE:D5:67:01:D8:55:1F:6F:A6:08:1A:2B:0A:66:49:CE:F5:05:A2:7F:5C:0D:6F:ED:22:1C
Extensions:
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 35 (0x0023); /non-TLS-1.3/
Type: 51 (0x0033); "key_share"
X25519 (0x001D)
x = 0x8A48C009F1446D3711B364BCA12D14F8EA11EB8368201C5E4770E74944D68439
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 23 (0x0017); /non-TLS-1.3/
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
HELLO_RETRY_REQUEST (sent, server)
Legacy Version: 0x0303
Cipher suite: 0x1303 (TLS_CHACHA20_POLY1305_SHA256)
HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
SessionID: 6E:D8:2E:58:63:59:DE:D5:67:01:D8:55:1F:6F:A6:08:1A:2B:0A:66:49:CE:F5:05:A2:7F:5C:0D:6F:ED:22:1C
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
[Legacy ChangeCipherSpec message present (client)]
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: 22:A7:23:1E:B5:C2:A7:15:24:A9:6C:ED:21:41:FA:78:5F:E4:54:FF:AD:62:4C:CF:68:04:CD:C3:93:B4:84:F7
Client SessionID: 6E:D8:2E:58:63:59:DE:D5:67:01:D8:55:1F:6F:A6:08:1A:2B:0A:66:49:CE:F5:05:A2:7F:5C:0D:6F:ED:22:1C
Extensions:
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 35 (0x0023); /non-TLS-1.3/
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x79A8DB7AFBE3645669926A055111610AC837D8F6B21EDB4C8D1F9F454ECE6CB5
y = 0x03BB0BAD0D7A4257A0571E95E944831FF098C8EDA0795634588A3078151FA85F
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 23 (0x0017); /non-TLS-1.3/
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
SERVER_HELLO (sent)
Legacy Version: 0x0303
Cipher suite: 0x1303 (TLS_CHACHA20_POLY1305_SHA256)
Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
SessionID: 6E:D8:2E:58:63:59:DE:D5:67:01:D8:55:1F:6F:A6:08:1A:2B:0A:66:49:CE:F5:05:A2:7F:5C:0D:6F:ED:22:1C
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x1FADAC79156E08C8532CE88DF887273141ACE16E44E9C268CE496596F41B65FA
y = 0xF82394637B6ACF004AB253F956BD2CD6CA6C9AD8454BF1FBF281A6C54A93D99C
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
SERVER_HANDSHAKE_MESSAGES (sent)
Type: 8 (0x08) - "encrypted_extensions"
Length (octets, dec.): 2
00:00
Type: 11 (0x0B) - "certificate"
Length (octets, dec.): 2699
[...] /skipped 2699 data octets/
Type: 15 (0x0F) - "certificate_verify"
Length (octets, dec.): 108
05:03:00:68:30:66:02:31:00:93:6D:8A:F9:DE:F7:1A:0B:91:07:76:6F:AD:64:43:60:1A:04:61:82:D9:25:63
A5:7C:AF:5C:8B:92:E3:04:F8:5A:3C:D3:B8:84:2E:67:EE:52:B8:17:ED:9A:32:ED:88:02:31:00:F0:04:F1:6C
D7:2F:3F:B4:D6:41:BC:6F:1D:39:49:46:06:B0:71:FC:F0:12:76:DF:4B:F7:A7:82:9E:51:67:67:05:E3:7C:3E
EE:AD:CB:66:0C:F7:97:E3:85:48:4D:85
Type: 20 (0x14) - "finished"
Length (octets, dec.): 32
7A:E0:6B:EF:D5:BC:F1:DF:5D:A3:6C:F7:94:5A:4E:4F:41:92:6C:CD:8B:A7:7F:88:51:65:8E:9B:CB:15:0B:5C
CLIENT_FINISHED (received)
Finished value: 0xCAE28F654A568B1EC811C6D4CAF47BD40D67FCB3EA2EA0262FD29CB54ED363C4
Client Finished status: OK
CLIENT_APPLICATION_DATA (recieved)
ASCII dump (filtered):
GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
: tls13.1d.pw....
[Server KeyUpdate sent /message skipped/]
TCP: server: 194.87.103.72:443; client: 216.73.217.59:21873; timestamp: 1788417423
Contacts: dxdt.ru, alex/()\/abaabb.xyz.
/\_/\
( 0.0 )
= ^ =
/|_|\
(") (")=~
Provide ESNI to get second ASCII cat
Elapsed server side: 295ms; ServerHello sent: 147ms (including HelloRetryRequest time); TLS connection established: 294ms.