Successfully connected
TLS 1.3 OK; HelloRetryRequest used; server-initiated key update accomplished;
Detailed description:
v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)
HelloRetryRequest used to (re)negotiate DH group
First ClientHello, key shares: 0x001D
Second ClientHello, key shares: 0x0017
CRYPTO_CONTEXT
Protocol version: 0x0304
Cipher suite: 0x1303 (TLS_CHACHA20_POLY1305_SHA256)
Key exchange: 0x0017 (Secp256r1)
(Handshake level)
Handshake secrets:
Client: 0x747B95D17528897B73AC2049FDFDC6416CFE999B7332835A7865EE5EF8783476
Server: 0x172130986C575D948D7443EE160317535E29096B038A6F98079DC7C97A9D73A9
Handshake keys:
Client write: 0x9025837B3C307F8CD07BC8C44700DDCDE564A3FBCA7F3AABC46B371BB1278EF2
Server write: 0xDA8A93F6D3C9E2F3431ABC3DA52045649E3B0F26EA378C39D42E119C29619EA7
Handshake IVs:
Client write (IV): 0xF940193D9DCD8EDECF08EEC6
Server write (IV): 0x563CD3DD8119EA5BD9C9ECD7
(Traffic level)
Traffic secrets:
Client: 0x5D5B5EED89684A0720D758210B4461F4E7BCF7CF4E0FD8F14D30BC273E67D7B5
Server: 0x2F95308B4D7393E26EE3CA115B300BE8A03213372FE9FA4AE2B4E22E074DB394
KeyUpdates log, server:
0: 0x6F30839D2384A0C04A022A8656E9107F388A68FD41A26ADE3BB892D8A0B56DEB
Traffic keys:
Client write: 0x1379C75495E229CE825C6C42D5CFB0C6F2B2226E8D0C5BFD0DED0CD694AAB700
Server write: 0x9F64234A0AF1D3B303F3F7368CD08827E0A3F7C88A6DF8DEBC271EEEC4329A7B
KeyUpdates log, server:
0: 0xA41ADAFB231E2D5BEDCE9863D3945F1A13919C8A7BA5BFE4EF5FD4D38A87F108
Traffic base IVs:
Client write (base IV): 0xA572A4DE9FA9E5A04DCDA51B
Server write (base IV): 0x72BA6787AF87D4DD34D91F65
KeyUpdates log, server:
0: 0x5509799276B4BDB14D61669C
--- Messages ---
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: C6:EC:84:6C:B4:51:DF:85:42:DF:2F:8F:E0:21:B2:21:B5:72:B5:E3:DD:12:F1:48:94:54:76:F6:E5:DE:5B:29
Client SessionID: FE:7A:8F:D2:14:B2:DF:26:0B:D3:80:39:33:BF:0F:F3:21:CC:F7:0D:4C:CF:46:47:C9:76:52:80:07:B8:FB:66
Extensions:
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 35 (0x0023); /non-TLS-1.3/
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 51 (0x0033); "key_share"
X25519 (0x001D)
x = 0xCA184EA955881EFC4D985CEFAB6FAEA01E679F88B651CEE2C7BFF04D7E348410
Type: 23 (0x0017); /non-TLS-1.3/
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
HELLO_RETRY_REQUEST (sent, server)
Legacy Version: 0x0303
Cipher suite: 0x1303 (TLS_CHACHA20_POLY1305_SHA256)
HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
SessionID: FE:7A:8F:D2:14:B2:DF:26:0B:D3:80:39:33:BF:0F:F3:21:CC:F7:0D:4C:CF:46:47:C9:76:52:80:07:B8:FB:66
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
[Legacy ChangeCipherSpec message present (client)]
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: C6:EC:84:6C:B4:51:DF:85:42:DF:2F:8F:E0:21:B2:21:B5:72:B5:E3:DD:12:F1:48:94:54:76:F6:E5:DE:5B:29
Client SessionID: FE:7A:8F:D2:14:B2:DF:26:0B:D3:80:39:33:BF:0F:F3:21:CC:F7:0D:4C:CF:46:47:C9:76:52:80:07:B8:FB:66
Extensions:
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 35 (0x0023); /non-TLS-1.3/
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x553BA76B0BE17D2A55158FCE42E9C0134953437680F4FA9AB8E9E77BD3820034
y = 0x2345B6C22B7DDD9C7CB9B2DB241DE03405467A619B37EBDAA8966E062878BCB4
Type: 23 (0x0017); /non-TLS-1.3/
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
SERVER_HELLO (sent)
Legacy Version: 0x0303
Cipher suite: 0x1303 (TLS_CHACHA20_POLY1305_SHA256)
Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
SessionID: FE:7A:8F:D2:14:B2:DF:26:0B:D3:80:39:33:BF:0F:F3:21:CC:F7:0D:4C:CF:46:47:C9:76:52:80:07:B8:FB:66
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x1FADAC79156E08C8532CE88DF887273141ACE16E44E9C268CE496596F41B65FA
y = 0xF82394637B6ACF004AB253F956BD2CD6CA6C9AD8454BF1FBF281A6C54A93D99C
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
SERVER_HANDSHAKE_MESSAGES (sent)
Type: 8 (0x08) - "encrypted_extensions"
Length (octets, dec.): 2
00:00
Type: 11 (0x0B) - "certificate"
Length (octets, dec.): 2699
[...] /skipped 2699 data octets/
Type: 15 (0x0F) - "certificate_verify"
Length (octets, dec.): 108
05:03:00:68:30:66:02:31:00:92:CD:3D:72:A1:C9:A1:20:55:5D:98:E3:9F:11:09:7A:53:7C:44:EC:00:7E:C0
A2:A2:71:06:C6:D4:5B:93:5A:DC:EE:D7:85:65:E2:A9:39:14:40:FD:2F:EC:67:06:40:02:31:00:F1:26:D6:54
5B:D7:F7:00:E2:27:26:92:F5:BA:A2:B5:BF:29:34:D5:DB:9E:66:37:CB:93:17:6B:82:05:3C:A9:02:9F:BC:A3
C4:F8:7B:49:BD:F2:90:3B:08:5A:FA:A9
Type: 20 (0x14) - "finished"
Length (octets, dec.): 32
36:FD:30:A9:F2:0A:E7:4B:E3:06:99:68:7E:FD:E7:A7:3C:2B:26:46:C3:8F:7A:7F:A0:4B:D0:52:48:3C:01:06
CLIENT_FINISHED (received)
Finished value: 0x49466D985483B6775BFD4BF602727F8125FA657EBB228B893F0C92C94253C256
Client Finished status: OK
CLIENT_APPLICATION_DATA (recieved)
ASCII dump (filtered):
GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
: tls13.1d.pw....
[Server KeyUpdate sent /message skipped/]
TCP: server: 194.87.103.72:443; client: 216.73.216.159:26101; timestamp: 1788954836
Contacts: dxdt.ru, alex/()\/abaabb.xyz.
/\_/\
( 0.0 )
= ^ =
/|_|\
(") (")=~
Provide ESNI to get second ASCII cat
Elapsed server side: 294ms; ServerHello sent: 142ms (including HelloRetryRequest time); TLS connection established: 293ms.