TLS 1.3 Connection Test Server at tls13.1d.pw

Successfully connected

TLS 1.3 OK; HelloRetryRequest used;

Detailed description:

v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)

HelloRetryRequest used to (re)negotiate DH group
	First ClientHello, key shares:	0x001D
	Second ClientHello, key shares:	0x0017

CRYPTO_CONTEXT

	Protocol version: 0x0304
	Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
	Key exchange: 0x0017 (Secp256r1)

	(Handshake level)
	Handshake secrets:
		Client: 0xBDCFC08DABD783A8822B4D7765BB49261E1F7098F01D160D9BB550F4C57EF03F
		Server: 0x6AFE0385D1A3DD5D075BA629252A60CDF68413F7F5A783C9573BA502817C4ACB
	Handshake keys:
		Client write: 0xB47881217B16347057DB8C49F43D6EE0
		Server write: 0x271E786ECC68C09D55A8379050C34BE8
	Handshake IVs:
		Client write (IV): 0xF8A21819551566A87112C014
		Server write (IV): 0x5251FB899EB40C2DDC11CC5C

	(Traffic level)
	Traffic secrets:
		Client: 0x893F3123169EE7E6600D1004D39C9388B55ABAEFDA43DB65A82B89BCBC96C0E5
		Server: 0xC8614B551F5827310F0C7A52D6FA6F404352061E2982F8E7F7062A20C8816268
	Traffic keys:
		Client write: 0x981FEE0AEEDC58E6330EA9774A81BA8E
		Server write: 0xF931084FEF05A7618103AAE3AD27764D
	Traffic base IVs:
		Client write (base IV): 0x5759B087EF813978D6B618CE
		Server write (base IV): 0xA94F48F51EC5F08B08CAC5B3

--- Messages ---

CLIENT_HELLO (recieved)

	Version: 0x0303
	Cipher suites:
		0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
		0xCCA8,0x00FF
	Client Random: BA:69:68:E3:D3:E4:73:28:BA:39:43:C1:82:14:4C:CF:13:6F:41:CC:07:18:D4:15:5C:44:A3:18:D4:94:57:34
	Client SessionID: 50:DD:1F:65:72:8D:68:F0:CA:46:E4:E7:4E:49:DA:F5:F6:53:46:B9:4C:45:68:CC:2E:B8:21:10:8F:DC:5C:8B
	Extensions:
		Type: 45 (0x002D); "psk_key_exchange_modes"
			01:01
		Type: 05 (0x0005); "status_request"
			01:00:00:00:00
		Type: 11 (0x000B); /non-TLS-1.3/
			01:00
		Type: 23 (0x0017); /non-TLS-1.3/
		Type: 43 (0x002B); "supported_versions"
			0x0304 (TLS 1.3)
			0x0303 (TLS 1.2)
		Type: 13 (0x000D); "signature_algorithms"
			0x0503 (ECDSA_SECP384R1_SHA384)
			0x0403 (ECDSA_SECP256R1_SHA256)
			0x0807 (ED25519)
			0x0806 (RSA_PSS_RSAE_SHA512)
			0x0805 (RSA_PSS_RSAE_SHA384)
			0x0804 (RSA_PSS_RSAE_SHA256)
			0x0601 (RSA_PKCS1_SHA512)
			0x0501 (RSA_PKCS1_SHA384)
			0x0401 (RSA_PKCS1_SHA256)
		Type: 00 (0x0000); "server_name"
			00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
			hostname: tls13.1d.pw
		Type: 35 (0x0023); /non-TLS-1.3/
		Type: 16 (0x0010); "application_layer_protocol_negotiation"
			68:32 (HTTP/2/TLS)
			68:74:74:70:2F:31:2E:31 (HTTP/1.1)
		Type: 10 (0x000A); "supported_groups"
			0x001D (X25519)
			0x0017 (Secp256r1)
			0x0018 (Secp384r1)
		Type: 51 (0x0033); "key_share"
			X25519 (0x001D)
				x = 0x0641D0BE14B3A3DA391880B363A8486707256C3FF2BB9E2305F7418EDDDCD33C

HELLO_RETRY_REQUEST (sent, server)

	Legacy Version: 0x0303
	Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
	HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
	SessionID: 50:DD:1F:65:72:8D:68:F0:CA:46:E4:E7:4E:49:DA:F5:F6:53:46:B9:4C:45:68:CC:2E:B8:21:10:8F:DC:5C:8B
	Extensions:
		Type: 51 (0x0033); "key_share"
			Secp256r1 (0x0017)
		Type: 44 (0x002C); "cookie"
			00:08:0C:00:FE:E1:C0:DE:FA:57
		Type: 43 (0x002B); "supported_versions"
			0x0304

[Legacy ChangeCipherSpec message sent (server)]

[Legacy ChangeCipherSpec message present (client)]

CLIENT_HELLO (recieved)

	Version: 0x0303
	Cipher suites:
		0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
		0xCCA8,0x00FF
	Client Random: BA:69:68:E3:D3:E4:73:28:BA:39:43:C1:82:14:4C:CF:13:6F:41:CC:07:18:D4:15:5C:44:A3:18:D4:94:57:34
	Client SessionID: 50:DD:1F:65:72:8D:68:F0:CA:46:E4:E7:4E:49:DA:F5:F6:53:46:B9:4C:45:68:CC:2E:B8:21:10:8F:DC:5C:8B
	Extensions:
		Type: 44 (0x002C); "cookie"
			00:08:0C:00:FE:E1:C0:DE:FA:57
		Type: 45 (0x002D); "psk_key_exchange_modes"
			01:01
		Type: 05 (0x0005); "status_request"
			01:00:00:00:00
		Type: 11 (0x000B); /non-TLS-1.3/
			01:00
		Type: 23 (0x0017); /non-TLS-1.3/
		Type: 43 (0x002B); "supported_versions"
			0x0304 (TLS 1.3)
			0x0303 (TLS 1.2)
		Type: 13 (0x000D); "signature_algorithms"
			0x0503 (ECDSA_SECP384R1_SHA384)
			0x0403 (ECDSA_SECP256R1_SHA256)
			0x0807 (ED25519)
			0x0806 (RSA_PSS_RSAE_SHA512)
			0x0805 (RSA_PSS_RSAE_SHA384)
			0x0804 (RSA_PSS_RSAE_SHA256)
			0x0601 (RSA_PKCS1_SHA512)
			0x0501 (RSA_PKCS1_SHA384)
			0x0401 (RSA_PKCS1_SHA256)
		Type: 00 (0x0000); "server_name"
			00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
			hostname: tls13.1d.pw
		Type: 35 (0x0023); /non-TLS-1.3/
		Type: 16 (0x0010); "application_layer_protocol_negotiation"
			68:32 (HTTP/2/TLS)
			68:74:74:70:2F:31:2E:31 (HTTP/1.1)
		Type: 10 (0x000A); "supported_groups"
			0x001D (X25519)
			0x0017 (Secp256r1)
			0x0018 (Secp384r1)
		Type: 51 (0x0033); "key_share"
			Secp256r1 (0x0017)
				x = 0xB57256D6589B69BBC8EC20D04257DD6F48BB90B351140827D7306B4BCD3B0D47
				y = 0x7F6292E578148E1536DD9D7260C72755A20CDB7D40101DD4464B038C16591B78

SERVER_HELLO (sent)

	Legacy Version: 0x0303
	Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
	Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
	SessionID: 50:DD:1F:65:72:8D:68:F0:CA:46:E4:E7:4E:49:DA:F5:F6:53:46:B9:4C:45:68:CC:2E:B8:21:10:8F:DC:5C:8B
	Extensions:
		Type: 51 (0x0033); "key_share"
			Secp256r1 (0x0017)
				x = 0x1FADAC79156E08C8532CE88DF887273141ACE16E44E9C268CE496596F41B65FA
				y = 0xF82394637B6ACF004AB253F956BD2CD6CA6C9AD8454BF1FBF281A6C54A93D99C
		Type: 43 (0x002B); "supported_versions"
			0x0304

[Legacy ChangeCipherSpec message sent (server)]

SERVER_HANDSHAKE_MESSAGES (sent)

	Type: 8 (0x08) - "encrypted_extensions"
		Length (octets, dec.): 2
		00:00
	Type: 11 (0x0B) - "certificate"
		Length (octets, dec.): 2699
		[...] /skipped 2699 data octets/
	Type: 15 (0x0F) - "certificate_verify"
		Length (octets, dec.): 108
		05:03:00:68:30:66:02:31:00:C1:F7:40:77:E5:13:9F:C2:FA:69:DF:72:32:4D:6C:AD:5B:A6:F9:40:E9:61:3C
		6B:AA:DB:A8:11:0C:F0:53:78:78:B1:0F:AC:DA:A5:3B:C1:10:06:4B:83:50:FF:E9:2C:02:31:00:F1:8F:88:91
		A3:64:13:AC:38:BF:44:F6:0D:73:23:BE:D7:52:CF:0D:2D:82:F5:95:EE:B4:3F:23:6B:51:C5:83:4F:B3:5D:B2
		88:57:C0:5E:3E:1C:0E:90:35:DD:9D:E4
	Type: 20 (0x14) - "finished"
		Length (octets, dec.): 32
		90:F7:A0:79:93:CC:AF:03:F0:56:AF:17:12:56:83:E7:6D:43:C3:E8:F8:66:FB:9D:A6:10:D2:71:17:04:BA:C3


CLIENT_FINISHED (received)

	Finished value: 0x6351876249FCFEF5975113C1B9F8186C18B829D3D16800F281F0AB9179F20749
	Client Finished status: OK

CLIENT_APPLICATION_DATA (recieved)

	ASCII dump (filtered):
		GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
		/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
		t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
		: tls13.1d.pw....

TCP: server: 194.87.103.72:443; client: 216.73.216.40:21114; timestamp: 1789192221


Contacts: dxdt.ru, alex/()\/abaabb.xyz.

 /\_/\
( 0.0 )
 = ^ =
 /|_|\
(") (")=~


Provide ESNI to get second ASCII cat

Elapsed server side: 287ms; ServerHello sent: 145ms (including HelloRetryRequest time); TLS connection established: 287ms.