Successfully connected
TLS 1.3 OK; HelloRetryRequest used;
Detailed description:
v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)
HelloRetryRequest used to (re)negotiate DH group
First ClientHello, key shares: 0x0017
Second ClientHello, key shares: 0x001D
CRYPTO_CONTEXT
Protocol version: 0x0304
Cipher suite: 0x1302 (TLS_AES_256_GCM_SHA384)
Key exchange: 0x001D (X25519)
(Handshake level)
Handshake secrets:
Client: 0xB48747765A0127E4D69D15F2E73C50A11966868027535EBE4DE6DC260CE2D6CB56C8371F8C0DD1923EEB8447BA2238DE
Server: 0x982A24D65FA18D387634A1A1E841CA8A337E84664C48D1FDDC89AE8E773BD414F2495F7613FC2E0EF7D098A0E5911CC6
Handshake keys:
Client write: 0x226924EC1711E21BE4F3007BD64F1BC123B89EC4D870B810131CE1E45BB8968A
Server write: 0x762EC27A9C7D08DFFEBA5EEE35129AF298DF65E871AE4BEE4AEFD02940ADECF7
Handshake IVs:
Client write (IV): 0x4AD4F55C760DCEAAAFBCED06
Server write (IV): 0xDB4268D55D215851565A7143
(Traffic level)
Traffic secrets:
Client: 0xB64D647E96EEF9E43A26FEDFA6739AA85AC4213D01913F94D1338513D13FAB4D5FCCD3FD13314D684A34BCD0536944F6
Server: 0x338C673D1E8C68906A8D39207BD26CAA3DD75926D029143902C3F4ED6B2553D796F2F281AF09E55CD45E5AE47018A69A
Traffic keys:
Client write: 0x53DFC4A99F563E4BF3B3652506948035015518560AC5B28A9969B768BC878A2F
Server write: 0x11890A3599B035437D3F9793025E989C11504386898CF161A218D6D4EE0A9E0B
Traffic base IVs:
Client write (base IV): 0x6514A2B5C024E6293C09C31C
Server write (base IV): 0x390BE7D2214311A73F41389D
--- Messages ---
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: AF:89:9F:5E:01:42:6C:AD:42:F8:E1:2C:1F:1A:95:B9:19:42:CB:CB:07:E9:9B:D6:F4:F8:A9:8C:B7:4B:9E:14
Client SessionID: D7:D0:D2:B1:EB:52:A0:B9:21:3A:39:5B:E0:8E:57:51:5C:37:9D:6E:B5:73:E3:42:F0:22:75:71:D7:BE:1A:93
Extensions:
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 23 (0x0017); /non-TLS-1.3/
Type: 35 (0x0023); /non-TLS-1.3/
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0xFE72F5A73D696E67C7C1ED7827DA4BA2326114A0024E744C128F27E874468420
y = 0x6D14A8E5D0C5B56BDA5ED16E096715901BF3D2F2C68DB5FBDCD09E077DE00612
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
HELLO_RETRY_REQUEST (sent, server)
Legacy Version: 0x0303
Cipher suite: 0x1302 (TLS_AES_256_GCM_SHA384)
HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
SessionID: D7:D0:D2:B1:EB:52:A0:B9:21:3A:39:5B:E0:8E:57:51:5C:37:9D:6E:B5:73:E3:42:F0:22:75:71:D7:BE:1A:93
Extensions:
Type: 51 (0x0033); "key_share"
X25519 (0x001D)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
[Legacy ChangeCipherSpec message present (client)]
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: AF:89:9F:5E:01:42:6C:AD:42:F8:E1:2C:1F:1A:95:B9:19:42:CB:CB:07:E9:9B:D6:F4:F8:A9:8C:B7:4B:9E:14
Client SessionID: D7:D0:D2:B1:EB:52:A0:B9:21:3A:39:5B:E0:8E:57:51:5C:37:9D:6E:B5:73:E3:42:F0:22:75:71:D7:BE:1A:93
Extensions:
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 23 (0x0017); /non-TLS-1.3/
Type: 35 (0x0023); /non-TLS-1.3/
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 51 (0x0033); "key_share"
X25519 (0x001D)
x = 0x100B71E69557D18985AF97301DCF5002DBE9106AC5199C6C5C4A60BD42056B1E
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
SERVER_HELLO (sent)
Legacy Version: 0x0303
Cipher suite: 0x1302 (TLS_AES_256_GCM_SHA384)
Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
SessionID: D7:D0:D2:B1:EB:52:A0:B9:21:3A:39:5B:E0:8E:57:51:5C:37:9D:6E:B5:73:E3:42:F0:22:75:71:D7:BE:1A:93
Extensions:
Type: 51 (0x0033); "key_share"
X25519 (0x001D)
x = 0x145891E6697DAA111BD9A43EB39FA860847D09303D603128F82CE7451DAE456B
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
SERVER_HANDSHAKE_MESSAGES (sent)
Type: 8 (0x08) - "encrypted_extensions"
Length (octets, dec.): 2
00:00
Type: 11 (0x0B) - "certificate"
Length (octets, dec.): 2694
[...] /skipped 2694 data octets/
Type: 15 (0x0F) - "certificate_verify"
Length (octets, dec.): 107
05:03:00:67:30:65:02:31:00:F4:3D:48:BE:DC:C0:7D:AA:E8:56:F0:77:95:96:8E:90:43:9C:33:CF:EB:FF:B3
30:E9:F3:39:29:A7:38:7B:64:8E:47:39:3D:C8:8E:7D:09:33:94:F9:38:E6:13:A9:78:02:30:6E:8F:EB:E7:EB
CA:C3:0E:A8:D3:5E:C6:B5:92:5E:95:B3:68:51:6E:21:E0:FC:99:55:68:0F:21:8A:02:9D:0B:33:3B:BB:DF:AC
B0:FA:C2:2F:41:3E:68:7A:36:F5:5E
Type: 20 (0x14) - "finished"
Length (octets, dec.): 48
24:EF:D2:37:C9:11:3E:7D:AD:5C:82:96:BA:3F:D0:3B:07:EC:80:70:FB:98:17:3E:4A:61:0C:FB:F2:A2:3B:D4
A3:CB:81:98:6B:92:89:65:9E:56:94:E1:BC:B8:C5:2B
CLIENT_FINISHED (received)
Finished value: 0x2D7D17ACEF9487205572D97854180F7DBAEAEFC05158054D80A4F01F3B5EFA9415EB5A94C198B51D0EFE2A1212C416C5
Client Finished status: OK
CLIENT_APPLICATION_DATA (recieved)
ASCII dump (filtered):
GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
: tls13.1d.pw....
TCP: server: 194.87.103.72:443; client: 216.73.217.78:58372; timestamp: 1791331512
Contacts: dxdt.ru, alex/()\/abaabb.xyz.
/\_/\
( 0.0 )
= ^ =
/|_|\
(") (")=~
Provide ESNI to get second ASCII cat
Elapsed server side: 287ms; ServerHello sent: 144ms (including HelloRetryRequest time); TLS connection established: 286ms.