Successfully connected
TLS 1.3 OK; HelloRetryRequest used;
Detailed description:
v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)
HelloRetryRequest used to (re)negotiate DH group
First ClientHello, key shares: 0x0018
Second ClientHello, key shares: 0x001D
CRYPTO_CONTEXT
Protocol version: 0x0304
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
Key exchange: 0x001D (X25519)
(Handshake level)
Handshake secrets:
Client: 0xAF51EA720D45350E8245482BBF8A8988823C29613157A72F28AA311A37B8BA12
Server: 0x4EE7CB3E79AA92669734E3B146D6F1581083F65D925E4992D0D92608E404758B
Handshake keys:
Client write: 0xBF2799B1F7D7B2AD21495BC799F9D3E9
Server write: 0xC2EBD047F46779AE87B06D1C891BA0F1
Handshake IVs:
Client write (IV): 0x4FDB2D06F52B3FB24A17DB64
Server write (IV): 0x366B869B9E7A6A721172F759
(Traffic level)
Traffic secrets:
Client: 0x6C8F358EBDC4CB83DFCB9397D785D0A119638406C16782777995766C915881CF
Server: 0x87452F6B362C6831CB0B1133F00D5F262D73BE3687BCAEE2A549B92E54661CE2
Traffic keys:
Client write: 0x7A47D338986DFAA78D92DCC3396166F4
Server write: 0xD36E2566BDC708C9951E08660353AE89
Traffic base IVs:
Client write (base IV): 0xF1EB925D4466F571C409DF4C
Server write (base IV): 0x32059876E007664BD65A6412
--- Messages ---
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: E4:AB:23:64:5C:5B:D4:0B:3D:1A:40:8E:12:21:B5:9B:16:FD:1F:51:D9:D8:49:08:74:67:31:3B:D4:EF:F9:4A
Client SessionID: B8:44:B4:DE:EF:2D:F5:69:B4:6C:FE:DC:E8:70:27:FF:D2:CE:D3:78:0C:26:42:FA:AC:52:EE:8C:22:EF:DF:18
Extensions:
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 35 (0x0023); /non-TLS-1.3/
Type: 51 (0x0033); "key_share"
Secp384r1 (0x0018)
x = 0x423B9CC70679D1B87B2B62BD52E3903168E42337C850ED93A674EC74DDBD0390CBEC84D1E55ADA76D77C5E785FB55751
y = 0x99199187CC5BBAE1554A468A1C367D040718B69B93C2519FA49BF43563FC577A2D76A4650F8BE9D86273BE6AEE051D21
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 23 (0x0017); /non-TLS-1.3/
HELLO_RETRY_REQUEST (sent, server)
Legacy Version: 0x0303
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
SessionID: B8:44:B4:DE:EF:2D:F5:69:B4:6C:FE:DC:E8:70:27:FF:D2:CE:D3:78:0C:26:42:FA:AC:52:EE:8C:22:EF:DF:18
Extensions:
Type: 51 (0x0033); "key_share"
X25519 (0x001D)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
[Legacy ChangeCipherSpec message present (client)]
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: E4:AB:23:64:5C:5B:D4:0B:3D:1A:40:8E:12:21:B5:9B:16:FD:1F:51:D9:D8:49:08:74:67:31:3B:D4:EF:F9:4A
Client SessionID: B8:44:B4:DE:EF:2D:F5:69:B4:6C:FE:DC:E8:70:27:FF:D2:CE:D3:78:0C:26:42:FA:AC:52:EE:8C:22:EF:DF:18
Extensions:
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 35 (0x0023); /non-TLS-1.3/
Type: 51 (0x0033); "key_share"
X25519 (0x001D)
x = 0xF9C5E48CAFE719184510F776A273E20E98FCD7E63BA9C80D1D4DDF0369E81F38
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 23 (0x0017); /non-TLS-1.3/
SERVER_HELLO (sent)
Legacy Version: 0x0303
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
SessionID: B8:44:B4:DE:EF:2D:F5:69:B4:6C:FE:DC:E8:70:27:FF:D2:CE:D3:78:0C:26:42:FA:AC:52:EE:8C:22:EF:DF:18
Extensions:
Type: 51 (0x0033); "key_share"
X25519 (0x001D)
x = 0x145891E6697DAA111BD9A43EB39FA860847D09303D603128F82CE7451DAE456B
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
SERVER_HANDSHAKE_MESSAGES (sent)
Type: 8 (0x08) - "encrypted_extensions"
Length (octets, dec.): 2
00:00
Type: 11 (0x0B) - "certificate"
Length (octets, dec.): 2694
[...] /skipped 2694 data octets/
Type: 15 (0x0F) - "certificate_verify"
Length (octets, dec.): 108
05:03:00:68:30:66:02:31:00:F3:0D:76:4B:39:50:BC:18:4B:09:F1:A1:A2:C0:FA:F7:24:45:A6:EE:B9:ED:AD
DF:49:DB:CA:F8:90:7F:D5:C6:13:8E:8A:5D:F9:C9:B3:F4:EC:C8:82:60:85:8D:DC:26:02:31:00:9B:39:27:38
17:DD:3D:A9:86:05:73:A8:61:6B:24:9E:84:57:6C:C9:CA:0F:8A:9E:26:FE:19:83:F0:36:C2:93:89:A6:B3:FD
14:F6:FF:30:C6:67:9D:5B:4B:4D:EB:D9
Type: 20 (0x14) - "finished"
Length (octets, dec.): 32
8C:1E:16:8B:1C:1B:50:BB:44:D7:27:B1:F4:D6:B3:EE:42:ED:8A:C4:9A:C5:77:E1:75:F2:70:BC:6C:C4:9C:10
CLIENT_FINISHED (received)
Finished value: 0x5276B6372D65A1DE8DC444B0964714B7B0DC07B312800EA013E831B72281FC22
Client Finished status: OK
CLIENT_APPLICATION_DATA (recieved)
ASCII dump (filtered):
GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
: tls13.1d.pw....
TCP: server: 194.87.103.72:443; client: 216.73.216.6:44112; timestamp: 1791770842
Contacts: dxdt.ru, alex/()\/abaabb.xyz.
/\_/\
( 0.0 )
= ^ =
/|_|\
(") (")=~
Provide ESNI to get second ASCII cat
Elapsed server side: 305ms; ServerHello sent: 147ms (including HelloRetryRequest time); TLS connection established: 304ms.