Successfully connected
TLS 1.3 OK; HelloRetryRequest used;
Detailed description:
v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)
HelloRetryRequest used to (re)negotiate DH group
First ClientHello, key shares: 0x001D
Second ClientHello, key shares: 0x0017
CRYPTO_CONTEXT
Protocol version: 0x0304
Cipher suite: 0x1302 (TLS_AES_256_GCM_SHA384)
Key exchange: 0x0017 (Secp256r1)
(Handshake level)
Handshake secrets:
Client: 0xA9DEA2591F6EE90287924FB937636E0E7206871001C74F11C65B1E148F26A5B966F6DC091081C48E3A9E017C681C7A78
Server: 0xC8A82DC39862AF2DA7ECF80B0B16DAB867708DBBB6B940A6631895B71C61A69D1E61E2536D461E83745962A790B9F544
Handshake keys:
Client write: 0x13562C0195E0F87E0AFA3D42799680301148E31C883F6CF1EF18532302461C1F
Server write: 0x6B5D87C96DC13DF00B88EA469FFF211529DF8F96C3378A589CD284DBB3C2F9CF
Handshake IVs:
Client write (IV): 0xCCB2CF1807F96F652CEA8F26
Server write (IV): 0x9886FA17B3623D5C5EDE442D
(Traffic level)
Traffic secrets:
Client: 0xE1ABAEF1B0EEB52269B728C16662931D8A360C2930D81B9ED673368033D1BB12CAD77AD5879586DA0A387729CF2ED6FE
Server: 0xDB5DD0DD45A1C5D29D40E5D8858F5DD862A927910082C73793C71E4099E87AD8BB34E427FA251942A3BB42D8400606E5
Traffic keys:
Client write: 0x5C25C12071FC63CE4CDD44714D04A402048C3E7F01E20017DA6B3520572E7288
Server write: 0x2CA543B949914ACD42C3C09EBA5B2FBC25902DD0507BF3B9DA2A15409A6CC6CE
Traffic base IVs:
Client write (base IV): 0x3C6382E60C229D1E96D279A9
Server write (base IV): 0xC0567BA39213699ED80DEC7C
--- Messages ---
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: EE:15:3E:68:F5:92:23:A3:F0:C4:16:E5:B3:3C:98:89:69:83:6C:B2:2D:BB:55:30:C5:1E:62:16:6E:05:53:7C
Client SessionID: BB:31:B0:02:41:71:4E:59:36:2A:68:6F:88:D9:23:FF:8E:DB:30:0C:B4:6B:CD:7B:3B:8A:2F:24:92:43:F0:BB
Extensions:
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 23 (0x0017); /non-TLS-1.3/
Type: 51 (0x0033); "key_share"
X25519 (0x001D)
x = 0x2CBE7C38D6E97CEDE4E27EDC8B8D7AD1608BB801650ABFF557CC1CBBE296C92D
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 35 (0x0023); /non-TLS-1.3/
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 11 (0x000B); /non-TLS-1.3/
01:00
HELLO_RETRY_REQUEST (sent, server)
Legacy Version: 0x0303
Cipher suite: 0x1302 (TLS_AES_256_GCM_SHA384)
HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
SessionID: BB:31:B0:02:41:71:4E:59:36:2A:68:6F:88:D9:23:FF:8E:DB:30:0C:B4:6B:CD:7B:3B:8A:2F:24:92:43:F0:BB
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
[Legacy ChangeCipherSpec message present (client)]
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: EE:15:3E:68:F5:92:23:A3:F0:C4:16:E5:B3:3C:98:89:69:83:6C:B2:2D:BB:55:30:C5:1E:62:16:6E:05:53:7C
Client SessionID: BB:31:B0:02:41:71:4E:59:36:2A:68:6F:88:D9:23:FF:8E:DB:30:0C:B4:6B:CD:7B:3B:8A:2F:24:92:43:F0:BB
Extensions:
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 23 (0x0017); /non-TLS-1.3/
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0xD2A5678EB581C067FE635D42C673E327DE7E73BB9B92E08562955C44A85C8D4F
y = 0xB4081853769129B5ACAD2DD2C9E20E8BF58A004853983A99DCD500503452CB60
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 35 (0x0023); /non-TLS-1.3/
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 11 (0x000B); /non-TLS-1.3/
01:00
SERVER_HELLO (sent)
Legacy Version: 0x0303
Cipher suite: 0x1302 (TLS_AES_256_GCM_SHA384)
Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
SessionID: BB:31:B0:02:41:71:4E:59:36:2A:68:6F:88:D9:23:FF:8E:DB:30:0C:B4:6B:CD:7B:3B:8A:2F:24:92:43:F0:BB
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x1FADAC79156E08C8532CE88DF887273141ACE16E44E9C268CE496596F41B65FA
y = 0xF82394637B6ACF004AB253F956BD2CD6CA6C9AD8454BF1FBF281A6C54A93D99C
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
SERVER_HANDSHAKE_MESSAGES (sent)
Type: 8 (0x08) - "encrypted_extensions"
Length (octets, dec.): 2
00:00
Type: 11 (0x0B) - "certificate"
Length (octets, dec.): 3401
[...] /skipped 3401 data octets/
Type: 15 (0x0F) - "certificate_verify"
Length (octets, dec.): 107
05:03:00:67:30:65:02:31:00:F0:6D:3E:78:AF:AE:7F:4D:4C:E6:2B:8D:09:D6:25:69:6E:3F:7F:42:28:89:4E
F9:C1:FB:31:9D:8F:C8:01:62:18:40:A3:65:1C:CF:63:41:0E:B3:CE:57:78:4B:0A:01:02:30:17:48:74:C2:86
52:0B:31:04:9C:BC:68:C1:4F:23:C3:F4:78:17:69:7E:07:03:70:A5:DE:8A:B3:90:AC:93:F1:B8:8B:11:9F:3A
EE:D8:22:91:07:EB:08:BB:CE:34:4C
Type: 20 (0x14) - "finished"
Length (octets, dec.): 48
A3:B9:0B:5F:72:3C:07:2E:F1:15:7B:AC:7C:6C:9F:D6:6E:01:55:CC:D3:49:47:2B:E1:73:3C:64:58:BB:FB:CC
7E:8B:6E:F4:26:4C:25:CC:EF:DB:11:E6:34:C0:F3:9D
CLIENT_FINISHED (received)
Finished value: 0x39F748E3B5763409A00348CD479C910BD86B7693C1E688F8112E28A741EA78C4ED8D79DB60DB8E1A34F871F5FEF54945
Client Finished status: OK
CLIENT_APPLICATION_DATA (recieved)
ASCII dump (filtered):
GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
: tls13.1d.pw....
TCP: server: 194.87.103.72:443; client: 216.73.216.117:60351; timestamp: 1781811417
Contacts: dxdt.ru, alex/()\/abaabb.xyz.
/\_/\
( 0.0 )
= ^ =
/|_|\
(") (")=~
Provide ESNI to get second ASCII cat
Elapsed server side: 290ms; ServerHello sent: 147ms (including HelloRetryRequest time); TLS connection established: 289ms.