Successfully connected
TLS 1.3 OK; HelloRetryRequest used; server-initiated key update accomplished;
Detailed description:
v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)
HelloRetryRequest used to (re)negotiate DH group
First ClientHello, key shares: 0x001D
Second ClientHello, key shares: 0x0018
CRYPTO_CONTEXT
Protocol version: 0x0304
Cipher suite: 0x1302 (TLS_AES_256_GCM_SHA384)
Key exchange: 0x0018 (Secp384r1)
(Handshake level)
Handshake secrets:
Client: 0xB31A7B4DCC0BCA2DCC3F63AB0449BBC1F741B230ED18B33DBE5FA62234ADE4CC41918A57FB0F8F007DB2675075904DAA
Server: 0xD7B5977237E6EE7049C345073BDD3385DDFDD7374EA49B64750230BBEFF7D4E10D8DE2D80C90D63691B9385F5D98C9DE
Handshake keys:
Client write: 0xB967FC08435EECD6121053156BFA6807A292EE43570F3F500CA9EB026C8926C5
Server write: 0x4C280158C3F9EBA2EEE80648B835CDCC971487DF6AA13DFBD5157B26C3C4126B
Handshake IVs:
Client write (IV): 0x062557021527222E3E896CC6
Server write (IV): 0xAE4DA47F902DEC2B29D29DF2
(Traffic level)
Traffic secrets:
Client: 0xDA94A253FDF39553C2AA8F108FB4BA81AE4A1E3CF1D1D137165BFF047453F12DA59347B2B467F2D5DEE2B956F42DB0A2
Server: 0x5858DD7C04F2CE5360ABC753E3C7E56D0B1D139A78481CC51799BC2E4674A77E7D15D928FA5F060F394CCEC64E2CE7C8
KeyUpdates log, server:
0: 0x16BC34881541BB7EC559E00F2FFCDFC6D7EBE7CBD9598E975779468DAD4878EAE44BF6AFE93B6BC60D5146CACF5BBEFF
Traffic keys:
Client write: 0xB73BCB68CAAD200479C540B38E148C9C19640A3B046BF55FD902E8AC181E0A80
Server write: 0x7D89015D3CD94E0777CF4AC63FDDCA314278C62FFFC80D058827447FE73A9D30
KeyUpdates log, server:
0: 0xC3A6D5FBF12A01E0558824C6677A11FDE89C1C095F934E33A51DB181E160DD5A
Traffic base IVs:
Client write (base IV): 0x60E5AAB4BB67AE14445342F8
Server write (base IV): 0x0144046D8B2B6BEE0BCC1535
KeyUpdates log, server:
0: 0xD23A703286C36E60ACC62948
--- Messages ---
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: C9:2F:64:F7:D2:60:20:E3:AA:3F:3A:53:CF:F1:59:0D:05:CC:76:FD:3B:26:8D:7F:7D:F0:F7:15:E0:12:51:8E
Client SessionID: CD:D0:55:23:5A:A1:A2:12:D5:4A:21:6E:3E:16:8B:F0:44:2A:DC:6F:AE:5A:28:91:F8:6E:B8:5A:87:5E:2B:40
Extensions:
Type: 35 (0x0023); /non-TLS-1.3/
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 23 (0x0017); /non-TLS-1.3/
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 51 (0x0033); "key_share"
X25519 (0x001D)
x = 0x573F54BBB42B2F4C37AA6D7B481C79F54B68CAA5540FEC9978AD343E6B447521
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
HELLO_RETRY_REQUEST (sent, server)
Legacy Version: 0x0303
Cipher suite: 0x1302 (TLS_AES_256_GCM_SHA384)
HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
SessionID: CD:D0:55:23:5A:A1:A2:12:D5:4A:21:6E:3E:16:8B:F0:44:2A:DC:6F:AE:5A:28:91:F8:6E:B8:5A:87:5E:2B:40
Extensions:
Type: 51 (0x0033); "key_share"
Secp384r1 (0x0018)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
[Legacy ChangeCipherSpec message present (client)]
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: C9:2F:64:F7:D2:60:20:E3:AA:3F:3A:53:CF:F1:59:0D:05:CC:76:FD:3B:26:8D:7F:7D:F0:F7:15:E0:12:51:8E
Client SessionID: CD:D0:55:23:5A:A1:A2:12:D5:4A:21:6E:3E:16:8B:F0:44:2A:DC:6F:AE:5A:28:91:F8:6E:B8:5A:87:5E:2B:40
Extensions:
Type: 35 (0x0023); /non-TLS-1.3/
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 23 (0x0017); /non-TLS-1.3/
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 51 (0x0033); "key_share"
Secp384r1 (0x0018)
x = 0xACBE82B544BC9B01D6DEBC15EDC0D43DED030F0DF723852311A526C8E61DE87E02BC47EBDE1F2E753C597F14B948B389
y = 0xC59FB7B45CB3D742487BD6FA97FD97F2BCE5C85CE12B85CF16F3121A4886A32D08847AF50D610A3CF15303404B401894
Type: 11 (0x000B); /non-TLS-1.3/
01:00
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
SERVER_HELLO (sent)
Legacy Version: 0x0303
Cipher suite: 0x1302 (TLS_AES_256_GCM_SHA384)
Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
SessionID: CD:D0:55:23:5A:A1:A2:12:D5:4A:21:6E:3E:16:8B:F0:44:2A:DC:6F:AE:5A:28:91:F8:6E:B8:5A:87:5E:2B:40
Extensions:
Type: 51 (0x0033); "key_share"
Secp384r1 (0x0018)
x = 0x884DFC0FE9602539133D59E3779E9DE8644D3532211C1061EFD16D15BE349D6723496325775E87CF3D396F1C02FCC5CF
y = 0x063315C18E34D26B9085A96A495F17B8557DB379DB6ABED0788C60417FCE917ADD8976BB955D9E7E1B1CC6C06F577280
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
SERVER_HANDSHAKE_MESSAGES (sent)
Type: 8 (0x08) - "encrypted_extensions"
Length (octets, dec.): 2
00:00
Type: 11 (0x0B) - "certificate"
Length (octets, dec.): 2698
[...] /skipped 2698 data octets/
Type: 15 (0x0F) - "certificate_verify"
Length (octets, dec.): 108
05:03:00:68:30:66:02:31:00:CA:87:D2:85:6C:50:37:DA:23:86:1F:83:F1:BB:AC:1B:29:69:D4:AC:75:3C:9C
54:CC:A0:13:E3:57:85:60:58:50:D8:AC:1F:77:55:5B:D4:B8:A9:4D:B8:CE:E4:61:1E:02:31:00:8B:53:47:B0
A8:4F:B2:5B:E6:2A:90:37:4F:9C:3C:42:B9:F2:AE:8B:3A:BC:24:21:0A:30:20:B1:08:40:70:F5:57:F4:D1:28
72:17:D9:5F:F2:F8:D9:51:AB:DD:82:2F
Type: 20 (0x14) - "finished"
Length (octets, dec.): 48
73:60:AA:1D:9A:9F:3A:71:1F:4E:C5:8F:C6:D1:0D:43:3A:02:1C:AD:7F:FD:9F:74:D8:86:FD:88:BC:85:9F:AC
10:DD:A7:FB:6B:B2:67:67:4F:EC:FE:11:0D:20:C4:55
CLIENT_FINISHED (received)
Finished value: 0x7F4FA8C4E79ADF057CD38BEB7D0753E06AC3899984773B59E32C5290DBCEA20A926685B69900D94050BB3FB0409F737F
Client Finished status: OK
CLIENT_APPLICATION_DATA (recieved)
ASCII dump (filtered):
GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
: tls13.1d.pw....
[Server KeyUpdate sent /message skipped/]
TCP: server: 194.87.103.72:443; client: 216.73.217.0:47073; timestamp: 1790035594
Contacts: dxdt.ru, alex/()\/abaabb.xyz.
/\_/\
( 0.0 )
= ^ =
/|_|\
(") (")=~
Provide ESNI to get second ASCII cat
Elapsed server side: 303ms; ServerHello sent: 147ms (including HelloRetryRequest time); TLS connection established: 302ms.