Successfully connected
TLS 1.3 OK; HelloRetryRequest used;
Detailed description:
v.0.24.4-p
(This TLS-1.3-only server supports: HelloRetryRequest, KeyUpdate, ECDHE, FFDHE, X25519MLKEM768, SecP256r1MLKEM768, X25519Kyber768, ESNI, etc.)
HelloRetryRequest used to (re)negotiate DH group
First ClientHello, key shares: 0x001D
Second ClientHello, key shares: 0x0017
CRYPTO_CONTEXT
Protocol version: 0x0304
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
Key exchange: 0x0017 (Secp256r1)
(Handshake level)
Handshake secrets:
Client: 0x0668F4E0B399A7C88901308319F5CC9854FC71CAFA835EFF9B8B20631E6EFEE7
Server: 0x89D2434CD022CBCB22CDA3AA921F264C08830C97301B37CAAF12415D472D2785
Handshake keys:
Client write: 0x380B4711962074AEE60A96DFE6D62902
Server write: 0x853C9A6270504113D804A87A7883424D
Handshake IVs:
Client write (IV): 0x064A8D5A293C0C86FC7CBF95
Server write (IV): 0xD5AE2CC1D7C4FF9A177FEB2C
(Traffic level)
Traffic secrets:
Client: 0xFBDE0141EAB6D1FC579E3937EB2D6B4CBF079335B914C65C1FEB562E996EA73F
Server: 0x2586E649A48C649AB17567567498D1293EA74EB44570F9ACA12B17394EE03766
Traffic keys:
Client write: 0x85FADBB14B2BF6201DED6A4AF98A6815
Server write: 0x02A44971B03F1971C3C9F09CAB825DF7
Traffic base IVs:
Client write (base IV): 0xB19CC7EA3034A61B3CF565AA
Server write (base IV): 0xE62329538D1BD2D5A5D4346A
--- Messages ---
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: 82:38:07:AA:85:7A:63:39:31:9E:1A:BE:BE:5E:56:9F:86:35:C6:34:4B:E9:E7:DF:50:FD:02:D3:4F:F1:CA:18
Client SessionID: B4:52:ED:98:6F:4F:18:94:81:53:A7:D9:93:82:AE:62:F0:7E:56:70:BF:27:AD:34:65:07:D9:D2:9E:DC:B4:7D
Extensions:
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 23 (0x0017); /non-TLS-1.3/
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 51 (0x0033); "key_share"
X25519 (0x001D)
x = 0x40F93EEBC01CBEB8E299ED2419284A9E3ACF3671B44556063EDD79BBBB95D771
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 35 (0x0023); /non-TLS-1.3/
Type: 11 (0x000B); /non-TLS-1.3/
01:00
HELLO_RETRY_REQUEST (sent, server)
Legacy Version: 0x0303
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
HelloRetryRequest (Server Random): CF:21:AD:74:E5:9A:61:11:BE:1D:8C:02:1E:65:B8:91:C2:A2:11:16:7A:BB:8C:5E:07:9E:09:E2:C8:A8:33:9C
SessionID: B4:52:ED:98:6F:4F:18:94:81:53:A7:D9:93:82:AE:62:F0:7E:56:70:BF:27:AD:34:65:07:D9:D2:9E:DC:B4:7D
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
[Legacy ChangeCipherSpec message present (client)]
CLIENT_HELLO (recieved)
Version: 0x0303
Cipher suites:
0x1302,0x1301,0x1303,0xC02C,0xC02B,0xCCA9,0xC030,0xC02F
0xCCA8,0x00FF
Client Random: 82:38:07:AA:85:7A:63:39:31:9E:1A:BE:BE:5E:56:9F:86:35:C6:34:4B:E9:E7:DF:50:FD:02:D3:4F:F1:CA:18
Client SessionID: B4:52:ED:98:6F:4F:18:94:81:53:A7:D9:93:82:AE:62:F0:7E:56:70:BF:27:AD:34:65:07:D9:D2:9E:DC:B4:7D
Extensions:
Type: 45 (0x002D); "psk_key_exchange_modes"
01:01
Type: 23 (0x0017); /non-TLS-1.3/
Type: 00 (0x0000); "server_name"
00:00:0E:00:00:0B:74:6C:73:31:33:2E:31:64:2E:70:77
hostname: tls13.1d.pw
Type: 43 (0x002B); "supported_versions"
0x0304 (TLS 1.3)
0x0303 (TLS 1.2)
Type: 10 (0x000A); "supported_groups"
0x001D (X25519)
0x0017 (Secp256r1)
0x0018 (Secp384r1)
Type: 44 (0x002C); "cookie"
00:08:0C:00:FE:E1:C0:DE:FA:57
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0xF59A39204203257FA4E12E6EAA0576E6D346D6F24BAAD01FB9F8E526050442DE
y = 0xEF8746570B5087B3439104AD722B0FA0C52E05EDB67BAA8006FB911B4A3D830C
Type: 13 (0x000D); "signature_algorithms"
0x0503 (ECDSA_SECP384R1_SHA384)
0x0403 (ECDSA_SECP256R1_SHA256)
0x0807 (ED25519)
0x0806 (RSA_PSS_RSAE_SHA512)
0x0805 (RSA_PSS_RSAE_SHA384)
0x0804 (RSA_PSS_RSAE_SHA256)
0x0601 (RSA_PKCS1_SHA512)
0x0501 (RSA_PKCS1_SHA384)
0x0401 (RSA_PKCS1_SHA256)
Type: 05 (0x0005); "status_request"
01:00:00:00:00
Type: 16 (0x0010); "application_layer_protocol_negotiation"
68:32 (HTTP/2/TLS)
68:74:74:70:2F:31:2E:31 (HTTP/1.1)
Type: 35 (0x0023); /non-TLS-1.3/
Type: 11 (0x000B); /non-TLS-1.3/
01:00
SERVER_HELLO (sent)
Legacy Version: 0x0303
Cipher suite: 0x1301 (TLS_AES_128_GCM_SHA256)
Server Random: DE:AD:DE:AD:DE:AD:C0:DE:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
SessionID: B4:52:ED:98:6F:4F:18:94:81:53:A7:D9:93:82:AE:62:F0:7E:56:70:BF:27:AD:34:65:07:D9:D2:9E:DC:B4:7D
Extensions:
Type: 51 (0x0033); "key_share"
Secp256r1 (0x0017)
x = 0x1FADAC79156E08C8532CE88DF887273141ACE16E44E9C268CE496596F41B65FA
y = 0xF82394637B6ACF004AB253F956BD2CD6CA6C9AD8454BF1FBF281A6C54A93D99C
Type: 43 (0x002B); "supported_versions"
0x0304
[Legacy ChangeCipherSpec message sent (server)]
SERVER_HANDSHAKE_MESSAGES (sent)
Type: 8 (0x08) - "encrypted_extensions"
Length (octets, dec.): 2
00:00
Type: 11 (0x0B) - "certificate"
Length (octets, dec.): 3401
[...] /skipped 3401 data octets/
Type: 15 (0x0F) - "certificate_verify"
Length (octets, dec.): 107
05:03:00:67:30:65:02:30:40:3C:55:C8:B7:4D:5D:17:8E:26:DF:4C:90:57:B0:DB:B4:C0:51:80:FE:F7:AA:C9
1D:B7:9B:4F:18:FF:BD:0A:8B:D8:DE:53:AD:50:84:94:5C:31:32:9A:B2:DE:1B:58:02:31:00:9E:88:7B:73:CE
B2:5C:BE:82:4C:5E:86:EE:2C:3B:C4:86:FB:E8:1E:7E:FC:BF:01:57:E2:13:CF:D3:A8:93:31:1C:CB:CB:1E:E2
50:5E:27:FD:2B:F1:80:5D:25:3C:53
Type: 20 (0x14) - "finished"
Length (octets, dec.): 32
5F:AF:7E:68:18:78:80:82:1C:FD:E0:66:3B:1C:03:6F:63:B5:56:75:60:C4:0C:F7:BB:92:69:83:53:FE:FC:A6
CLIENT_FINISHED (received)
Finished value: 0xC4FE9EDB70A4D2D1C370A7014CBB75928FB115C121FD5CD18C5A3657DDA734A7
Client Finished status: OK
CLIENT_APPLICATION_DATA (recieved)
ASCII dump (filtered):
GET / HTTP/1.1..accept: */*..user-agent: Mozilla/5.0 AppleWebKit
/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebo
t@anthropic.com)..accept-encoding: gzip, br, zstd, deflate..host
: tls13.1d.pw....
TCP: server: 194.87.103.72:443; client: 216.73.216.52:61885; timestamp: 1780475921
Contacts: dxdt.ru, alex/()\/abaabb.xyz.
/\_/\
( 0.0 )
= ^ =
/|_|\
(") (")=~
Provide ESNI to get second ASCII cat
Elapsed server side: 290ms; ServerHello sent: 146ms (including HelloRetryRequest time); TLS connection established: 290ms.