Successfully connected
TLS 1.3 OK; HelloRetryRequest used; server-initiated key update accomplished;
Detailed description:
v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)
HelloRetryRequest used to (re)negotiate DH group
First ClientHello, key shares: 0x001D
Second ClientHello, key shares: 0x0017
CRYPTO_CONTEXT
Protocol version: 0x0304
Cipher suite: 0x1303 (TLS_CHACHA20_POLY1305_SHA256)
Key exchange: 0x0017 (Secp256r1)
(Handshake level)
Handshake secrets:
Client: 0x199FE644C55717805B7825016D4CA56E3C1EFF8B2FC5B279FE4BEFBABFC15800
Server: 0xFD9862A82E045FA7CE97CEE4B7CD2FF7C262E93CA4680954633844FA557E68F6
Handshake keys:
Client write: 0x441AA5917E1E65CE5C2C1873D66ED31847D63325E0BE7A2DB7DD3F7C93843355
Server write: 0x940B93D48172445B73BCD7EE486938AD2B51B18F3FCBA57D2577DD8F4379D542
Handshake IVs:
Client write (IV): 0xB8CF02B0C1E78CB02E0237DB
Server write (IV): 0x814C8CADC6D4C53A72BB4DBF
(Traffic level)
Traffic secrets:
Client: 0x75808E2AC9B0BB8D9DE4520E454D5590B98A5ECC4A6A54ED9B3FDA487F6AE139
Server: 0xF3D4A595492B9F7F0D66AD70BC7D797B2F25C23595CA704FDDE0B8F2D6F53874
KeyUpdates log, server:
0: 0xE1F8EDE4DC699C3857FA3A97B49C3D7422CF5787B62702D8D522BAA80E3546B3
Traffic keys:
Client write: 0x51F98E2E2DB87744088B35430D8C55A76826CE8200F807ECA8C8EA18843FF3A7
Server write: 0x940F53B78B32A94B2597D93E45B511DE545B46B7E50DD5C398EC9CA0E8F1426B
KeyUpdates log, server:
0: 0x9B9CED8D38E6A47D40CB6FE144B611D3390CD13B0BDA73B511EE19E09A12431A
Traffic base IVs:
Client write (base IV): 0xE1E63C2305C04C8670CF625C
Server write (base IV): 0x7431D5D968DEFBE4B594321D
KeyUpdates log, server:
0: 0x1F288D8044540CC9821BB4F0
--- Messages ---
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: A8:2F:25:6E:B1:6B:04:9C:B4:0E:7B:1B:85:CC:7B:B7:92:2A:5E:5A:18:D0:94:6F:C4:DE:51:CA:DB:3D:7B:88
Client SessionID: 7A:C9:82:C4:E4:DC:1F:37:D7:F4:6C:0B:1A:28:6C:48:8A:62:F1:11:14:51:86:9A:A8:93:AC:E3:BC:DD:64:84
Extensions:
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 23 (0x0017); /non-TLS-1.3/
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 35 (0x0023); /non-TLS-1.3/
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 51 (0x0033); "key_share"
X25519 (0x001D)
x = 0x0539121A3FF84DF86CCB8259C3FE98D6FE28AC4776A106C203853594A2402921
HELLO_RETRY_REQUEST (sent, server)
Legacy Version: 0x0303
Cipher suite: 0x1303 (TLS_CHACHA20_POLY1305_SHA256)
HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
SessionID: 7A:C9:82:C4:E4:DC:1F:37:D7:F4:6C:0B:1A:28:6C:48:8A:62:F1:11:14:51:86:9A:A8:93:AC:E3:BC:DD:64:84
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
[Legacy ChangeCipherSpec message present (client)]
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: A8:2F:25:6E:B1:6B:04:9C:B4:0E:7B:1B:85:CC:7B:B7:92:2A:5E:5A:18:D0:94:6F:C4:DE:51:CA:DB:3D:7B:88
Client SessionID: 7A:C9:82:C4:E4:DC:1F:37:D7:F4:6C:0B:1A:28:6C:48:8A:62:F1:11:14:51:86:9A:A8:93:AC:E3:BC:DD:64:84
Extensions:
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 23 (0x0017); /non-TLS-1.3/
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 35 (0x0023); /non-TLS-1.3/
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x7880E0F0BF719424320D9EC69A83E03C2E5D10205720BB92E73CE0ADB5B78CDE
y = 0x5DAAAA9C06C9084BE73C72779741A2190F0F566ED598471F388D41E520DB6725
SERVER_HELLO (sent)
Legacy Version: 0x0303
Cipher suite: 0x1303 (TLS_CHACHA20_POLY1305_SHA256)
Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
SessionID: 7A:C9:82:C4:E4:DC:1F:37:D7:F4:6C:0B:1A:28:6C:48:8A:62:F1:11:14:51:86:9A:A8:93:AC:E3:BC:DD:64:84
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x1FADAC79156E08C8532CE88DF887273141ACE16E44E9C268CE496596F41B65FA
y = 0xF82394637B6ACF004AB253F956BD2CD6CA6C9AD8454BF1FBF281A6C54A93D99C
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
SERVER_HANDSHAKE_MESSAGES (sent)
Type: 8 (0x08) - "encrypted_extensions"
Length (octets, dec.): 2
00:00
Type: 11 (0x0B) - "certificate"
Length (octets, dec.): 2700
[...] /skipped 2700 data octets/
Type: 15 (0x0F) - "certificate_verify"
Length (octets, dec.): 106
05:03:00:66:30:64:02:30:5F:70:7F:6A:12:3A:C1:92:8B:18:8F:F5:27:3E:05:69:76:96:8E:58:92:0E:85:75
78:65:35:3F:6D:C1:99:ED:B2:71:6F:79:1A:34:6B:5C:25:B4:A5:28:36:DB:D9:11:02:30:6A:48:52:7D:7E:21
8D:82:75:32:6C:D2:72:1C:29:60:2B:89:AF:DC:FC:F5:39:FD:AD:02:66:F6:6F:C4:49:A2:02:B6:B9:1E:07:F1
58:7A:4B:1D:21:35:5E:49:F8:39
Type: 20 (0x14) - "finished"
Length (octets, dec.): 32
1D:E9:77:52:34:0D:61:36:DC:0B:63:68:2C:98:E0:A0:C0:40:E8:0F:C1:11:FE:19:08:5A:63:5D:07:3B:18:DB
CLIENT_FINISHED (received)
Finished value: 0x630AE88694542A600C09E61C1B83310FC0E354891195EF4F10DD463546BD29D8
Client Finished status: OK
CLIENT_APPLICATION_DATA (recieved)
ASCII dump (filtered):
GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
: tls13.1d.pw....
[Server KeyUpdate sent /message skipped/]
TCP: server: 194.87.103.72:443; client: 216.73.217.179:20292; timestamp: 1790640674
Contacts: dxdt.ru, alex/()\/abaabb.xyz.
/\_/\
( 0.0 )
= ^ =
/|_|\
(") (")=~
Provide ESNI to get second ASCII cat
Elapsed server side: 285ms; ServerHello sent: 142ms (including HelloRetryRequest time); TLS connection established: 284ms.