Successfully connected
TLS 1.3 OK; HelloRetryRequest used;
Detailed description:
v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)
HelloRetryRequest used to (re)negotiate DH group
First ClientHello, key shares: 0x0018
Second ClientHello, key shares: 0x0017
CRYPTO_CONTEXT
Protocol version: 0x0304
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
Key exchange: 0x0017 (Secp256r1)
(Handshake level)
Handshake secrets:
Client: 0x6F8E648796C5D4CD5AEECE7CD56608501C7D18FD221437328D599778F81BFFFD
Server: 0xAFC855D35B19D680474336039AA5AF02A3C8CEE5CE37F2F1DE610A6311B52A6A
Handshake keys:
Client write: 0x5DAA1A8983A28B54E0DB78256FB5A39E
Server write: 0x5B5400AD415754425253311348CBA049
Handshake IVs:
Client write (IV): 0xA2E8866AABB1CB69743F1520
Server write (IV): 0x1FF8F2F5531BEE8D46E997D9
(Traffic level)
Traffic secrets:
Client: 0x6918CEBC20A326F5E2B92BA7AE2DF50E0404E340B4AE431E0FE52C67424CB05D
Server: 0x5EAED635A3B871C35637BB8F7BE35BE9FB993E9F0A51EFDCB6B1E71E800C061E
Traffic keys:
Client write: 0xE663DB348AC92756761792B6E7C8B529
Server write: 0xBC49553B1EFCF81FE1512FAA865C8EA0
Traffic base IVs:
Client write (base IV): 0x37CC9A148707804314D51833
Server write (base IV): 0x3DE5B8E1F88382250A10DF5A
--- Messages ---
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: 9D:88:E2:48:80:2B:1F:AC:07:F4:97:CC:14:65:B8:3B:F0:16:43:EC:F3:5F:06:31:53:D6:96:EB:BF:D9:26:07
Client SessionID: 81:65:44:96:13:28:07:EA:3E:D4:47:7C:AB:78:6E:32:EE:21:17:D0:C9:63:9F:95:EC:EC:1B:1F:46:C3:70:0E
Extensions:
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 35 (0x0023); /non-TLS-1.3/
Type: 23 (0x0017); /non-TLS-1.3/
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 51 (0x0033); "key_share"
Secp384r1 (0x0018)
x = 0x16CD6147EBFCCABE454AEA37E6CE5DD30149F126DBDBA535CB6298D58B9FC4D98FE4B3D9E4ADE6C07E35761F5638FCE0
y = 0xDC42E6E54F4368783FADA266F6C6540F51A89FC78C359BA0BE8FB51E42DFB95FCBDB69C96B39E75397FFA12DFF3C16F5
Type: 11 (0x000B); /non-TLS-1.3/
01:00
HELLO_RETRY_REQUEST (sent, server)
Legacy Version: 0x0303
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
SessionID: 81:65:44:96:13:28:07:EA:3E:D4:47:7C:AB:78:6E:32:EE:21:17:D0:C9:63:9F:95:EC:EC:1B:1F:46:C3:70:0E
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
[Legacy ChangeCipherSpec message present (client)]
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: 9D:88:E2:48:80:2B:1F:AC:07:F4:97:CC:14:65:B8:3B:F0:16:43:EC:F3:5F:06:31:53:D6:96:EB:BF:D9:26:07
Client SessionID: 81:65:44:96:13:28:07:EA:3E:D4:47:7C:AB:78:6E:32:EE:21:17:D0:C9:63:9F:95:EC:EC:1B:1F:46:C3:70:0E
Extensions:
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 35 (0x0023); /non-TLS-1.3/
Type: 23 (0x0017); /non-TLS-1.3/
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x3DAB4206F5617D4CEA803124A0DC95B4CE829B7488AFEBD99F0A46554C97BB6E
y = 0x1579CB2B61E0C36495EF617FD17AFBAE6738B872BBD609E9A260170A5A3E5FDD
Type: 11 (0x000B); /non-TLS-1.3/
01:00
SERVER_HELLO (sent)
Legacy Version: 0x0303
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
SessionID: 81:65:44:96:13:28:07:EA:3E:D4:47:7C:AB:78:6E:32:EE:21:17:D0:C9:63:9F:95:EC:EC:1B:1F:46:C3:70:0E
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x1FADAC79156E08C8532CE88DF887273141ACE16E44E9C268CE496596F41B65FA
y = 0xF82394637B6ACF004AB253F956BD2CD6CA6C9AD8454BF1FBF281A6C54A93D99C
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
SERVER_HANDSHAKE_MESSAGES (sent)
Type: 8 (0x08) - "encrypted_extensions"
Length (octets, dec.): 2
00:00
Type: 11 (0x0B) - "certificate"
Length (octets, dec.): 3400
[...] /skipped 3400 data octets/
Type: 15 (0x0F) - "certificate_verify"
Length (octets, dec.): 107
05:03:00:67:30:65:02:30:74:64:60:9F:F1:D5:D7:46:00:44:BB:AC:87:A7:42:23:6C:F2:05:2D:42:9B:6A:AF
62:5F:20:41:83:7F:9F:64:65:9C:51:53:B1:82:C1:85:41:A0:60:61:5A:71:CF:14:02:31:00:DC:DE:2C:0C:D6
D5:38:3C:17:65:BA:CA:11:9F:9F:C0:F0:E3:7A:6C:31:EF:09:84:DE:C2:11:84:3E:E3:43:51:33:C0:A4:12:31
7F:C7:33:43:AB:1C:C8:5A:B7:03:B8
Type: 20 (0x14) - "finished"
Length (octets, dec.): 32
02:80:D3:72:38:38:40:15:BD:09:F1:9F:E2:8A:D0:78:6B:E7:61:E7:FF:A6:D2:DF:EB:34:04:2B:90:C7:98:11
CLIENT_FINISHED (received)
Finished value: 0x244F04FFDDCDB1FF29600FD274F8228450D63671E34074965747198A89BE7946
Client Finished status: OK
CLIENT_APPLICATION_DATA (recieved)
ASCII dump (filtered):
GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
: tls13.1d.pw....
TCP: server: 194.87.103.72:443; client: 216.73.216.87:4825; timestamp: 1780428515
Contacts: dxdt.ru, alex/()\/abaabb.xyz.
/\_/\
( 0.0 )
= ^ =
/|_|\
(") (")=~
Provide ESNI to get second ASCII cat
Elapsed server side: 295ms; ServerHello sent: 148ms (including HelloRetryRequest time); TLS connection established: 294ms.