Closed bleeee closed 4 years ago
`OpenClash 调试日志
生成时间: 2020-11-12 19:49:39 插件版本: v0.40.15-beta 隐私提示: 上传此日志前请注意检查、屏蔽公网IP、节点、密码等相关敏感信息
#===================== 系统信息 =====================# 主机型号: VMware, Inc. VMware7,1 固件版本: Openwrt Koolshare mod V2.36 r14941-67f6fa0a30 LuCI版本: git-20.074.84698-ead5e81 内核版本: 5.4.52 处理器架构: x86_64 #此项在使用Tun模式时应为ACCEPT 防火墙转发: ACCEPT #此项有值时建议到网络-接口-lan的设置中禁用IPV6的DHCP IPV6-DHCP: #此项结果应仅有配置文件的DNS监听地址 Dnsmasq转发设置: 127.0.0.1#7874 #===================== 依赖检查 =====================# dnsmasq-full: 已安装 coreutils: 已安装 coreutils-nohup: 已安装 bash: 已安装 curl: 已安装 jsonfilter: 已安装 ca-certificates: 已安装 ipset: 已安装 ip-full: 已安装 iptables-mod-tproxy: 已安装 iptables-mod-extra: 已安装 libcap: 已安装 libcap-bin: 已安装 kmod-tun(TUN模式): 已安装 luci-compat(Luci-19.07): 已安装 #===================== 内核检查 =====================# 运行状态: 运行中 进程pid: 26686 运行权限: 26686: cap_dac_override,cap_net_bind_service,cap_net_admin,cap_net_raw,cap_sys_resource=i 运行用户: nobody 已选择的架构: linux-amd64 #下方无法显示内核版本号时请确认您的内核版本是否正确或者有无权限 Tun内核版本: 2020.10.29.g5e54f48 Tun内核文件: 存在 Tun内核运行权限: 正常 Game内核版本: v0.17.0-219-g9ac38a4 Game内核文件: 存在 Game内核运行权限: 正常 Dev内核版本: v1.2.0-14-g87e4d94 Dev内核文件: 存在 Dev内核运行权限: 正常 #===================== 插件设置 =====================# 当前配置文件: /etc/openclash/config/XXX.yaml 运行模式: redir-host 默认代理模式: rule UDP流量转发: 停用 DNS劫持: 启用 自定义DNS: 启用 IPV6-DNS解析: 启用 禁用Dnsmasq缓存: 启用 自定义规则: 启用 仅允许内网: 启用 仅代理命中规则流量: 停用 绕过中国大陆IP: 停用 #启动异常时建议关闭此项后重试 保留配置: 启用 #启动异常时建议关闭此项后重试 第三方规则: lhie1 第三方规则策略组设置: GlobalTV: us-low AsianTV: DIRECT Proxy: us-low Apple: us-low Netflix: HKT-low Spotify: us-low Steam: us-low AdBlock: DIRECT Netease Music: Speedtest: us-low Telegram: us-low Microsoft: us-low PayPal: us-low Domestic: DIRECT Others: us-low 读取的配置文件策略组: auto fallback-auto select us us-low uk HKT de sg jp tw oz HKT-low DIRECT REJECT #===================== 自定义规则 一 =====================# #google wifi test - DOMAIN,safebrowsing.googleapis.com,us-low - DOMAIN-SUFFIX,dl.google.com,us-low - DOMAIN-SUFFIX,gstatic.com,us-low #synology ipv6 ddns - DOMAIN,checkipv6.synology.com,DIRECT #china dns server tencent video relevent - IP-CIDR,119.28.28.28/32,DIRECT - IP-CIDR,119.29.29.29/32,DIRECT - DOMAIN,dns.alidns.com,DIRECT - DST-PORT,853,DIRECT - IP-CIDR,233.6.6.6/32,DIRECT - IP-CIDR,233.5.5.5/32,DIRECT - DOMAIN,doh.pub,DIRECT - DOMAIN,dns.pub,DIRECT - DOMAIN,doh.360.cn,DIRECT - DOMAIN,dns.cfiec.net,DIRECT - DOMAIN,dns.rubyfish.cn,DIRECT - IP-CIDR,8.8.8.8/32,DIRECT - IP-CIDR,1.1.1.1/32,DIRECT - IP-CIDR,8.8.4.4/32,DIRECT - DOMAIN,doh.rixcloud.dev,DIRECT - IP-CIDR,182.254.118.118/32,DIRECT - IP-CIDR,182.254.116.116/32,DIRECT #plex.tv - DOMAIN-SUFFIX,plex.tv,DIRECT # > Hulu(フールー) override - DOMAIN-SUFFIX,happyon.jp,jp - DOMAIN-SUFFIX,hulu.jp,jp # > Hulu override - DOMAIN-SUFFIX,hulu.com,us-low - DOMAIN-SUFFIX,huluim.com,us-low - DOMAIN-SUFFIX,hulustream.com,us-low #tencent video (dns up there) #- IP-CIDR,203.205.219.0/24,DIRECT #- IP-CIDR,203.205.255.0/24,DIRECT #- IP-CIDR,182.254.118.0/24,DIRECT # > Private Tracker - DOMAIN-SUFFIX,awesome-hd.me,us-low - DOMAIN-SUFFIX,broadcasthe.net,us-low - DOMAIN-SUFFIX,chdbits.co,us-low - DOMAIN-SUFFIX,classix-unlimited.co.uk,us-low - DOMAIN-SUFFIX,empornium.me,us-low - DOMAIN-SUFFIX,gazellegames.net,us-low - DOMAIN-SUFFIX,hdchina.org,us-low - DOMAIN-SUFFIX,hdsky.me,us-low - DOMAIN-SUFFIX,icetorrent.org,us-low - DOMAIN-SUFFIX,jpopsuki.eu,us-low - DOMAIN-SUFFIX,keepfrds.com,us-low - DOMAIN-SUFFIX,madsrevolution.net,us-low - DOMAIN-SUFFIX,m-team.cc,us-low - DOMAIN-SUFFIX,nanyangpt.com,us-low - DOMAIN-SUFFIX,ncore.cc,us-low - DOMAIN-SUFFIX,open.cd,us-low - DOMAIN-SUFFIX,ourbits.club,us-low - DOMAIN-SUFFIX,passthepopcorn.me,us-low - DOMAIN-SUFFIX,privatehd.to,us-low - DOMAIN-SUFFIX,redacted.ch,us-low - DOMAIN-SUFFIX,springsunday.net,us-low - DOMAIN-SUFFIX,tjupt.org,us-low - DOMAIN-SUFFIX,totheglory.im,us-low # certain google - DOMAIN,mobile-gtalk.l.google.com,us-low - DOMAIN,mtalk.google.com,us-low #fast - DOMAIN-SUFFIX,fast.com,HKT-low #netflix-amazon - IP-CIDR,52.93.178.234/32,HKT-low - IP-CIDR,52.94.76.0/22,HKT-low - IP-CIDR,13.34.24.160/27,HKT-low - IP-CIDR,52.93.240.164/31,HKT-low - IP-CIDR,52.93.178.219/32,HKT-low - IP-CIDR,150.222.199.0/25,HKT-low - IP-CIDR,52.93.34.56/32,HKT-low - IP-CIDR,52.93.178.152/32,HKT-low - IP-CIDR,52.93.178.205/32,HKT-low - IP-CIDR,52.119.252.0/22,HKT-low - IP-CIDR,54.148.0.0/15,HKT-low - IP-CIDR,99.77.130.0/24,HKT-low - IP-CIDR,52.93.178.136/32,HKT-low - IP-CIDR,99.77.132.0/24,HKT-low - IP-CIDR,52.93.178.138/32,HKT-low - IP-CIDR,54.239.48.0/22,HKT-low - IP-CIDR,52.93.14.18/32,HKT-low - IP-CIDR,52.144.197.192/26,HKT-low - IP-CIDR,15.193.7.0/24,HKT-low - IP-CIDR,52.93.178.134/32,HKT-low - IP-CIDR,52.93.240.160/31,HKT-low - IP-CIDR,52.93.178.183/32,HKT-low - IP-CIDR,52.93.120.178/32,HKT-low - IP-CIDR,52.93.178.161/32,HKT-low - IP-CIDR,52.94.12.0/24,HKT-low - IP-CIDR,15.230.36.0/23,HKT-low - IP-CIDR,18.236.0.0/15,HKT-low - IP-CIDR,52.94.249.80/28,HKT-low - IP-CIDR,54.240.198.0/24,HKT-low - IP-CIDR,13.34.23.224/27,HKT-low - IP-CIDR,52.93.178.231/32,HKT-low - IP-CIDR,54.200.0.0/15,HKT-low - IP-CIDR,52.93.178.187/32,HKT-low - IP-CIDR,52.119.176.0/21,HKT-low - IP-CIDR,52.93.240.148/31,HKT-low - IP-CIDR,64.252.72.0/24,HKT-low - IP-CIDR,54.239.0.16/28,HKT-low - IP-CIDR,13.34.24.96/27,HKT-low - IP-CIDR,52.93.20.0/24,HKT-low - IP-CIDR,204.236.128.0/18,HKT-low - IP-CIDR,52.94.249.64/28,HKT-low - IP-CIDR,52.93.178.166/32,HKT-low - IP-CIDR,52.144.205.0/26,HKT-low - IP-CIDR,13.34.25.96/27,HKT-low - IP-CIDR,99.82.172.0/24,HKT-low - IP-CIDR,70.224.192.0/18,HKT-low - IP-CIDR,52.93.178.206/32,HKT-low - IP-CIDR,52.93.178.230/32,HKT-low - IP-CIDR,52.93.37.222/32,HKT-low - IP-CIDR,52.93.178.220/32,HKT-low - IP-CIDR,150.222.218.0/24,HKT-low - IP-CIDR,52.93.178.215/32,HKT-low - IP-CIDR,52.93.178.182/32,HKT-low - IP-CIDR,54.219.0.0/16,HKT-low - IP-CIDR,52.93.178.147/32,HKT-low - IP-CIDR,52.93.178.179/32,HKT-low - IP-CIDR,52.93.178.170/32,HKT-low - IP-CIDR,52.93.178.223/32,HKT-low - IP-CIDR,54.240.212.0/22,HKT-low - IP-CIDR,54.245.0.0/16,HKT-low - IP-CIDR,150.222.176.0/22,HKT-low - IP-CIDR,99.77.152.0/24,HKT-low - IP-CIDR,54.240.248.0/21,HKT-low - IP-CIDR,69.107.6.120/29,HKT-low - IP-CIDR,52.93.178.130/32,HKT-low - IP-CIDR,52.93.178.157/32,HKT-low - IP-CIDR,52.93.178.168/32,HKT-low - IP-CIDR,13.56.0.0/16,HKT-low - IP-CIDR,52.93.178.185/32,HKT-low - IP-CIDR,52.93.240.154/31,HKT-low - IP-CIDR,35.160.0.0/13,HKT-low - IP-CIDR,54.67.0.0/16,HKT-low - IP-CIDR,150.222.101.0/24,HKT-low - IP-CIDR,52.93.178.209/32,HKT-low - IP-CIDR,52.93.178.143/32,HKT-low - IP-CIDR,150.222.213.40/32,HKT-low - IP-CIDR,52.93.178.137/32,HKT-low - IP-CIDR,52.94.208.0/21,HKT-low - IP-CIDR,54.68.0.0/14,HKT-low - IP-CIDR,54.212.0.0/15,HKT-low - IP-CIDR,52.93.240.150/31,HKT-low - IP-CIDR,52.144.194.192/26,HKT-low - IP-CIDR,54.183.0.0/16,HKT-low - IP-CIDR,18.144.0.0/15,HKT-low - IP-CIDR,52.93.178.213/32,HKT-low - IP-CIDR,150.222.234.0/24,HKT-low - IP-CIDR,52.93.12.12/32,HKT-low - IP-CIDR,52.95.230.0/24,HKT-low - IP-CIDR,150.222.106.0/24,HKT-low - IP-CIDR,99.77.253.0/24,HKT-low - IP-CIDR,13.34.25.64/27,HKT-low - IP-CIDR,52.93.178.194/32,HKT-low - IP-CIDR,52.93.178.210/32,HKT-low - IP-CIDR,52.93.178.184/32,HKT-low - IP-CIDR,52.93.178.159/32,HKT-low - IP-CIDR,52.93.178.189/32,HKT-low - IP-CIDR,52.12.0.0/15,HKT-low - IP-CIDR,52.93.178.181/32,HKT-low - IP-CIDR,205.251.232.0/22,HKT-low - IP-CIDR,52.75.0.0/16,HKT-low - IP-CIDR,54.218.0.0/16,HKT-low - IP-CIDR,176.32.112.0/21,HKT-low - IP-CIDR,52.94.120.0/22,HKT-low - IP-CIDR,52.93.178.192/32,HKT-low - IP-CIDR,52.94.10.0/24,HKT-low - IP-CIDR,52.93.178.195/32,HKT-low - IP-CIDR,52.93.178.222/32,HKT-low - IP-CIDR,54.244.0.0/16,HKT-low - IP-CIDR,52.95.42.0/24,HKT-low - IP-CIDR,52.93.178.133/32,HKT-low - IP-CIDR,52.93.178.224/32,HKT-low - IP-CIDR,52.93.240.152/31,HKT-low - IP-CIDR,44.224.0.0/11,HKT-low - IP-CIDR,52.93.178.200/32,HKT-low - IP-CIDR,64.252.73.0/24,HKT-low - IP-CIDR,52.93.178.211/32,HKT-low - IP-CIDR,52.93.178.169/32,HKT-low - IP-CIDR,52.95.255.112/28,HKT-low - IP-CIDR,100.20.0.0/14,HKT-low - IP-CIDR,150.222.74.0/24,HKT-low - IP-CIDR,13.34.24.128/27,HKT-low - IP-CIDR,54.151.0.0/17,HKT-low - IP-CIDR,52.93.178.165/32,HKT-low - IP-CIDR,176.32.125.128/26,HKT-low - IP-CIDR,52.93.178.142/32,HKT-low - IP-CIDR,52.93.178.156/32,HKT-low - IP-CIDR,52.93.178.180/32,HKT-low - IP-CIDR,54.214.0.0/16,HKT-low - IP-CIDR,52.219.20.0/22,HKT-low - IP-CIDR,52.219.24.0/21,HKT-low - IP-CIDR,52.93.178.197/32,HKT-low - IP-CIDR,34.208.0.0/12,HKT-low - IP-CIDR,52.93.178.226/32,HKT-low - IP-CIDR,15.221.16.0/22,HKT-low - IP-CIDR,13.34.23.96/27,HKT-low - IP-CIDR,52.93.178.204/32,HKT-low - IP-CIDR,52.93.178.191/32,HKT-low - IP-CIDR,52.46.216.0/22,HKT-low - IP-CIDR,150.222.213.41/32,HKT-low - IP-CIDR,52.95.246.0/24,HKT-low - IP-CIDR,69.107.6.176/29,HKT-low - IP-CIDR,99.83.97.64/27,HKT-low - IP-CIDR,52.36.0.0/14,HKT-low - IP-CIDR,52.93.178.141/32,HKT-low - IP-CIDR,52.93.178.227/32,HKT-low - IP-CIDR,54.215.0.0/16,HKT-low - IP-CIDR,52.93.178.175/32,HKT-low - IP-CIDR,52.93.178.131/32,HKT-low - IP-CIDR,52.93.178.217/32,HKT-low - IP-CIDR,54.202.0.0/15,HKT-low - IP-CIDR,52.93.178.214/32,HKT-low - IP-CIDR,108.166.224.0/21,HKT-low - IP-CIDR,52.93.178.135/32,HKT-low - IP-CIDR,184.72.0.0/18,HKT-low - IP-CIDR,54.193.0.0/16,HKT-low - IP-CIDR,150.222.140.0/24,HKT-low - IP-CIDR,99.83.97.48/28,HKT-low - IP-CIDR,52.93.240.156/31,HKT-low - IP-CIDR,52.8.0.0/16,HKT-low - IP-CIDR,52.93.126.145/32,HKT-low - IP-CIDR,52.95.247.0/24,HKT-low - IP-CIDR,52.93.178.188/32,HKT-low - IP-CIDR,52.93.178.201/32,HKT-low - IP-CIDR,150.222.180.0/24,HKT-low - IP-CIDR,50.112.0.0/16,HKT-low - IP-CIDR,13.57.0.0/16,HKT-low - IP-CIDR,50.18.0.0/16,HKT-low - IP-CIDR,52.93.178.167/32,HKT-low - IP-CIDR,52.95.255.96/28,HKT-low - IP-CIDR,99.83.98.0/24,HKT-low - IP-CIDR,52.93.178.196/32,HKT-low - IP-CIDR,52.94.116.0/22,HKT-low - IP-CIDR,52.144.194.64/26,HKT-low - IP-CIDR,13.52.0.0/16,HKT-low - IP-CIDR,52.93.178.128/32,HKT-low - IP-CIDR,52.95.40.0/24,HKT-low - IP-CIDR,13.34.23.128/27,HKT-low - IP-CIDR,54.231.232.0/21,HKT-low - IP-CIDR,52.93.122.131/32,HKT-low - IP-CIDR,52.93.34.57/32,HKT-low - IP-CIDR,52.93.178.162/32,HKT-low - IP-CIDR,204.246.160.0/22,HKT-low - IP-CIDR,52.93.240.158/31,HKT-low - IP-CIDR,15.230.42.0/24,HKT-low - IP-CIDR,52.93.240.146/31,HKT-low - IP-CIDR,52.93.178.144/32,HKT-low - IP-CIDR,52.93.178.154/32,HKT-low - IP-CIDR,52.93.240.162/31,HKT-low - IP-CIDR,52.219.120.0/22,HKT-low - IP-CIDR,52.9.0.0/16,HKT-low - IP-CIDR,150.222.196.0/24,HKT-low - IP-CIDR,52.46.180.0/22,HKT-low - IP-CIDR,52.93.178.146/32,HKT-low - IP-CIDR,13.248.99.0/24,HKT-low - IP-CIDR,52.93.37.223/32,HKT-low - IP-CIDR,52.93.178.178/32,HKT-low - IP-CIDR,13.248.112.0/24,HKT-low - IP-CIDR,52.93.178.176/32,HKT-low - IP-CIDR,52.93.178.129/32,HKT-low - IP-CIDR,52.93.178.145/32,HKT-low - IP-CIDR,52.93.178.199/32,HKT-low - IP-CIDR,150.222.102.0/24,HKT-low - IP-CIDR,52.24.0.0/14,HKT-low - IP-CIDR,52.119.160.0/20,HKT-low - IP-CIDR,64.252.65.0/24,HKT-low - IP-CIDR,52.93.178.151/32,HKT-low - IP-CIDR,52.93.178.140/32,HKT-low - IP-CIDR,52.93.178.174/32,HKT-low - IP-CIDR,54.241.0.0/16,HKT-low - IP-CIDR,184.169.128.0/17,HKT-low - IP-CIDR,18.246.0.0/16,HKT-low - IP-CIDR,52.93.178.232/32,HKT-low - IP-CIDR,52.94.198.0/28,HKT-low - IP-CIDR,52.93.178.132/32,HKT-low - IP-CIDR,52.93.178.177/32,HKT-low - IP-CIDR,99.77.154.0/24,HKT-low - IP-CIDR,15.177.81.0/24,HKT-low - IP-CIDR,54.153.0.0/17,HKT-low - IP-CIDR,52.93.149.0/24,HKT-low - IP-CIDR,52.93.178.150/32,HKT-low - IP-CIDR,52.93.178.164/32,HKT-low - IP-CIDR,52.93.178.198/32,HKT-low - IP-CIDR,52.93.178.203/32,HKT-low - IP-CIDR,52.218.128.0/17,HKT-low - IP-CIDR,13.34.23.160/27,HKT-low - IP-CIDR,13.34.24.192/27,HKT-low - IP-CIDR,52.88.0.0/15,HKT-low - IP-CIDR,52.93.178.139/32,HKT-low - IP-CIDR,99.78.196.0/22,HKT-low - IP-CIDR,52.93.178.229/32,HKT-low - IP-CIDR,52.93.178.158/32,HKT-low - IP-CIDR,216.182.236.0/23,HKT-low - IP-CIDR,52.93.178.173/32,HKT-low - IP-CIDR,15.177.80.0/24,HKT-low - IP-CIDR,15.230.5.0/24,HKT-low - IP-CIDR,52.144.194.128/26,HKT-low - IP-CIDR,52.219.112.0/21,HKT-low - IP-CIDR,15.254.0.0/16,HKT-low - IP-CIDR,3.101.0.0/16,HKT-low - IP-CIDR,52.40.0.0/14,HKT-low - IP-CIDR,15.230.28.0/24,HKT-low - IP-CIDR,64.252.70.0/24,HKT-low - IP-CIDR,52.93.14.19/32,HKT-low - IP-CIDR,52.93.178.218/32,HKT-low - IP-CIDR,52.32.0.0/14,HKT-low - IP-CIDR,52.93.126.144/32,HKT-low - IP-CIDR,52.93.178.155/32,HKT-low - IP-CIDR,52.93.178.202/32,HKT-low - IP-CIDR,52.93.178.228/32,HKT-low - IP-CIDR,52.93.178.216/32,HKT-low - IP-CIDR,15.221.1.0/24,HKT-low - IP-CIDR,52.93.178.212/32,HKT-low - IP-CIDR,52.94.197.0/24,HKT-low - IP-CIDR,54.184.0.0/13,HKT-low - IP-CIDR,52.52.0.0/15,HKT-low - IP-CIDR,52.144.197.128/26,HKT-low - IP-CIDR,52.93.237.0/24,HKT-low - IP-CIDR,150.222.221.0/24,HKT-low - IP-CIDR,52.94.72.0/22,HKT-low - IP-CIDR,64.252.71.0/24,HKT-low - IP-CIDR,52.93.178.233/32,HKT-low - IP-CIDR,35.155.0.0/16,HKT-low - IP-CIDR,54.239.2.0/23,HKT-low - IP-CIDR,13.34.23.192/27,HKT-low - IP-CIDR,52.93.178.171/32,HKT-low - IP-CIDR,108.166.240.0/21,HKT-low - IP-CIDR,205.251.228.0/22,HKT-low - IP-CIDR,54.239.0.32/28,HKT-low - IP-CIDR,52.10.0.0/15,HKT-low - IP-CIDR,52.93.178.149/32,HKT-low - IP-CIDR,54.240.230.0/23,HKT-low - IP-CIDR,52.46.249.0/24,HKT-low - IP-CIDR,54.176.0.0/15,HKT-low - IP-CIDR,52.93.178.208/32,HKT-low - IP-CIDR,52.93.178.172/32,HKT-low - IP-CIDR,52.93.178.225/32,HKT-low - IP-CIDR,52.93.178.190/32,HKT-low - IP-CIDR,69.107.6.112/29,HKT-low - IP-CIDR,52.93.178.235/32,HKT-low - IP-CIDR,52.93.178.163/32,HKT-low - IP-CIDR,52.93.178.193/32,HKT-low - IP-CIDR,52.93.178.160/32,HKT-low - IP-CIDR,52.93.178.207/32,HKT-low - IP-CIDR,150.222.97.0/24,HKT-low - IP-CIDR,52.92.128.0/17,HKT-low - IP-CIDR,52.93.178.148/32,HKT-low - IP-CIDR,52.94.28.0/23,HKT-low - IP-CIDR,52.94.248.128/28,HKT-low - IP-CIDR,150.222.214.0/24,HKT-low - IP-CIDR,52.93.12.13/32,HKT-low - IP-CIDR,52.93.178.186/32,HKT-low - IP-CIDR,150.222.75.0/24,HKT-low - IP-CIDR,52.93.178.221/32,HKT-low - IP-CIDR,52.94.248.96/28,HKT-low - IP-CIDR,52.93.178.153/32,HKT-low - IP-CIDR,99.77.186.0/24,HKT-low - IP-CIDR,176.32.125.0/25,HKT-low - IP-CIDR,13.52.118.0/23,HKT-low - IP-CIDR,13.52.146.192/26,HKT-low - IP-CIDR,34.223.24.0/22,HKT-low - IP-CIDR,34.223.45.0/25,HKT-low #HKT - IP-CIDR,203.198.80.0/24,HKT-low - IP-CIDR,203.198.13.0/24,HKT-low - IP-CIDR,203.205.255.0/24,HKT-low - IP-CIDR,203.205.219.0/24,HKT-low - IP-CIDR,219.76.23.0/24,HKT-low ##- DOMAIN-SUFFIX,google.com,Proxy 匹配域名后缀(交由Proxy代理服务器组) ##- DOMAIN-KEYWORD,google,Proxy 匹配域名关键字(交由Proxy代理服务器组) ##- DOMAIN,google.com,Proxy 匹配域名(交由Proxy代理服务器组) ##- DOMAIN-SUFFIX,ad.com,REJECT 匹配域名后缀(拒绝) ##- IP-CIDR,127.0.0.0/8,DIRECT 匹配数据目标IP(直连) ##- SRC-IP-CIDR,192.168.1.201/32,DIRECT 匹配数据发起IP(直连) ##- DST-PORT,80,DIRECT 匹配数据目标端口(直连) ##- SRC-PORT,7777,DIRECT 匹配数据源端口(直连) ##排序在上的规则优先生效,如添加(去除规则前的#号): ##IP段:192.168.1.2-192.168.1.200 直连 ##- SRC-IP-CIDR,192.168.1.2/31,DIRECT ##- SRC-IP-CIDR,192.168.1.4/30,DIRECT ##- SRC-IP-CIDR,192.168.1.8/29,DIRECT ##- SRC-IP-CIDR,192.168.1.16/28,DIRECT ##- SRC-IP-CIDR,192.168.1.32/27,DIRECT ##- SRC-IP-CIDR,192.168.1.64/26,DIRECT ##- SRC-IP-CIDR,192.168.1.128/26,DIRECT ##- SRC-IP-CIDR,192.168.1.192/29,DIRECT ##- SRC-IP-CIDR,192.168.1.200/32,DIRECT ##IP段:192.168.1.202-192.168.1.255 直连 ##- SRC-IP-CIDR,192.168.1.202/31,DIRECT ##- SRC-IP-CIDR,192.168.1.204/30,DIRECT ##- SRC-IP-CIDR,192.168.1.208/28,DIRECT - SRC-IP-CIDR,192.168.1.1/32,DIRECT - SRC-IP-CIDR,192.168.1.25/32,DIRECT - SRC-IP-CIDR,198.18.0.1/32,DIRECT - SRC-IP-CIDR,192.168.18.1/32,DIRECT ##此时IP为192.168.1.1和192.168.1.201的客户端流量走代理(策略),其余客户端不走代理 ##因为Fake-IP模式下,IP地址为192.168.1.1的路由器自身流量可走代理(策略),所以需要排除 ##在线IP段转CIDR地址:http://ip2cidr.com #===================== 自定义规则 二 =====================# ##- DOMAIN-SUFFIX,google.com,Proxy 匹配域名后缀(交由Proxy代理服务器组) ##- DOMAIN-KEYWORD,google,Proxy 匹配域名关键字(交由Proxy代理服务器组) ##- DOMAIN,google.com,Proxy 匹配域名(交由Proxy代理服务器组) ##- DOMAIN-SUFFIX,ad.com,REJECT 匹配域名后缀(拒绝) ##- IP-CIDR,127.0.0.0/8,DIRECT 匹配数据目标IP(直连) ##- SRC-IP-CIDR,192.168.1.201/32,DIRECT 匹配数据发起IP(直连) ##- DST-PORT,80,DIRECT 匹配数据目标端口(直连) ##- SRC-PORT,7777,DIRECT 匹配数据源端口(直连) #===================== 配置文件 =====================# port: 7890 socks-port: 7891 allow-lan: true bind-address: "*" ipv6: true mode: rule log-level: warning external-controller: 0.0.0.0:9090 redir-port: 7892 interface-name: pppoe-wan external-ui: "/usr/share/openclash/dashboard" hosts: ##Custom HOSTS## # experimental hosts, support wildcard (e.g. *.clash.dev Even *.foo.*.example.com) # static domain has a higher priority than wildcard domain (foo.example.com > *.example.com) # NOTE: hosts don't work with `fake-ip` # '*.clash.dev': 127.0.0.1 # 'alpha.clash.dev': '::1' 'p.conn.aiseet.atianqi.com': 121.51.162.20 'p.conn.t002.ottcn.com': 121.51.162.20 'p.conn.cp81.ott.cibntv.net': 121.51.162.20 'p.conn.ptyg.gitv.tv': 121.51.162.20 'p.conn.ott.video.qq.com': 121.51.162.20 'common.mpush.qq.com': 121.51.162.20 'git.dler.io': 113.52.132.52 'api.fast.com': 52.41.203.109 'chdbits.co': 104.26.10.119 ##Custom HOSTS END## dns: use-hosts: true listen: 0.0.0.0:7874 enable: true ipv6: true enhanced-mode: redir-host nameserver: ##Custom DNS## - https://233.6.6.6/dns-query - https://233.5.5.5/dns-query - 202.99.96.68 - 202.99.104.68 fallback: - tls://8.8.8.8:853 - https://1.1.1.1/dns-query - tls://1.1.1.1:853 - tls://8.8.4.4:853 fallback-filter: geoip: true ipcidr: - 0.0.0.0/8 - 10.0.0.0/8 - 100.64.0.0/10 - 127.0.0.0/8 - 169.254.0.0/16 - 172.16.0.0/12 - 192.0.0.0/24 - 192.0.2.0/24 - 192.88.99.0/24 - 192.168.0.0/16 - 198.18.0.0/15 - 198.51.100.0/24 - 203.0.113.0/24 - 224.0.0.0/4 - 240.0.0.0/4 - 255.255.255.255/32 #===================== 防火墙设置 =====================# #NAT chain # Generated by iptables-save v1.8.4 on Thu Nov 12 19:49:39 2020 *nat :PREROUTING ACCEPT [41:4263] :INPUT ACCEPT [16:2843] :OUTPUT ACCEPT [373:27451] :POSTROUTING ACCEPT [261:18535] :MINIUPNPD - [0:0] :MINIUPNPD-POSTROUTING - [0:0] :openclash - [0:0] :openclash_output - [0:0] :postrouting_IPTV_rule - [0:0] :postrouting_lan_rule - [0:0] :postrouting_rule - [0:0] :postrouting_wan_rule - [0:0] :prerouting_IPTV_rule - [0:0] :prerouting_lan_rule - [0:0] :prerouting_rule - [0:0] :prerouting_wan_rule - [0:0] :zone_IPTV_postrouting - [0:0] :zone_IPTV_prerouting - [0:0] :zone_lan_postrouting - [0:0] :zone_lan_prerouting - [0:0] :zone_wan_postrouting - [0:0] :zone_wan_prerouting - [0:0] -A PREROUTING -d 8.8.4.4/32 -p tcp -j REDIRECT --to-ports 7892 -A PREROUTING -d 8.8.8.8/32 -p tcp -j REDIRECT --to-ports 7892 -A PREROUTING -d 8.8.4.4/32 -p tcp -j REDIRECT --to-ports 7892 -A PREROUTING -d 8.8.8.8/32 -p tcp -j REDIRECT --to-ports 7892 -A PREROUTING -i br-lan -p tcp -m tcp --dport 53 -j DNAT --to-destination 192.168.1.1 -A PREROUTING -i br-lan -p udp -m udp --dport 53 -j DNAT --to-destination 192.168.1.1 -A PREROUTING -m comment --comment "!fw3: Custom prerouting rule chain" -j prerouting_rule -A PREROUTING -i br-lan -m comment --comment "!fw3" -j zone_lan_prerouting -A PREROUTING -i pppoe-wan -m comment --comment "!fw3" -j zone_wan_prerouting -A PREROUTING -i eth0 -m comment --comment "!fw3" -j zone_IPTV_prerouting -A PREROUTING -p tcp -j openclash -A PREROUTING -p tcp -j openclash -A OUTPUT -j openclash_output -A OUTPUT -j openclash_output -A POSTROUTING -m comment --comment "!fw3: Custom postrouting rule chain" -j postrouting_rule -A POSTROUTING -o br-lan -m comment --comment "!fw3" -j zone_lan_postrouting -A POSTROUTING -o pppoe-wan -m comment --comment "!fw3" -j zone_wan_postrouting -A POSTROUTING -o eth0 -m comment --comment "!fw3" -j zone_IPTV_postrouting -A openclash -m set --match-set localnetwork dst -j RETURN -A openclash -m set --match-set lan_ac_black_ips src -j RETURN -A openclash -p tcp -j REDIRECT --to-ports 7892 -A openclash_output -m set --match-set localnetwork dst -j RETURN -A openclash_output -p tcp -m owner ! --uid-owner 65534 -m multiport --dports 80,443 -j REDIRECT --to-ports 7892 -A zone_IPTV_postrouting -m comment --comment "!fw3: Custom IPTV postrouting rule chain" -j postrouting_IPTV_rule -A zone_IPTV_postrouting -m comment --comment "!fw3" -j FULLCONENAT -A zone_IPTV_prerouting -m comment --comment "!fw3: Custom IPTV prerouting rule chain" -j prerouting_IPTV_rule -A zone_IPTV_prerouting -m comment --comment "!fw3" -j FULLCONENAT -A zone_lan_postrouting -m comment --comment "!fw3: Custom lan postrouting rule chain" -j postrouting_lan_rule -A zone_lan_prerouting -m comment --comment "!fw3: Custom lan prerouting rule chain" -j prerouting_lan_rule -A zone_wan_postrouting -m comment --comment "!fw3: Custom wan postrouting rule chain" -j postrouting_wan_rule -A zone_wan_postrouting -j MINIUPNPD-POSTROUTING -A zone_wan_postrouting -m comment --comment "!fw3" -j FULLCONENAT -A zone_wan_prerouting -m comment --comment "!fw3: Custom wan prerouting rule chain" -j prerouting_wan_rule -A zone_wan_prerouting -m comment --comment "!fw3" -j FULLCONENAT -A zone_wan_prerouting -j MINIUPNPD COMMIT # Completed on Thu Nov 12 19:49:39 2020 #Mangle chain # Generated by iptables-save v1.8.4 on Thu Nov 12 19:49:39 2020 *mangle :PREROUTING ACCEPT [1018376:876487580] :INPUT ACCEPT [823606:753973188] :FORWARD ACCEPT [194561:122491203] :OUTPUT ACCEPT [380369:945511266] :POSTROUTING ACCEPT [575047:1068007278] :mwan3_connected - [0:0] :mwan3_hook - [0:0] :mwan3_iface_in_IPTV - [0:0] :mwan3_iface_in_wan - [0:0] :mwan3_ifaces_in - [0:0] :mwan3_policy_balanced - [0:0] :mwan3_policy_iptvonly - [0:0] :mwan3_policy_wan_only - [0:0] :mwan3_rule_https - [0:0] :mwan3_rules - [0:0] -A PREROUTING -j mwan3_hook -A FORWARD -o pppoe-wan -p tcp -m tcp --tcp-flags SYN,RST SYN -m comment --comment "!fw3: Zone wan MTU fixing" -j TCPMSS --clamp-mss-to-pmtu -A FORWARD -o eth0 -p tcp -m tcp --tcp-flags SYN,RST SYN -m comment --comment "!fw3: Zone IPTV MTU fixing" -j TCPMSS --clamp-mss-to-pmtu -A OUTPUT -j mwan3_hook -A mwan3_connected -m set --match-set mwan3_connected dst -j MARK --set-xmark 0x3f00/0x3f00 -A mwan3_hook -j CONNMARK --restore-mark --nfmask 0x3f00 --ctmask 0x3f00 -A mwan3_hook -m mark --mark 0x0/0x3f00 -j mwan3_ifaces_in -A mwan3_hook -m mark --mark 0x0/0x3f00 -j mwan3_connected -A mwan3_hook -m mark --mark 0x0/0x3f00 -j mwan3_rules -A mwan3_hook -j CONNMARK --save-mark --nfmask 0x3f00 --ctmask 0x3f00 -A mwan3_hook -m mark ! --mark 0x3f00/0x3f00 -j mwan3_connected -A mwan3_iface_in_IPTV -i eth0 -m set --match-set mwan3_connected src -m mark --mark 0x0/0x3f00 -m comment --comment default -j MARK --set-xmark 0x3f00/0x3f00 -A mwan3_iface_in_IPTV -i eth0 -m mark --mark 0x0/0x3f00 -m comment --comment IPTV -j MARK --set-xmark 0x200/0x3f00 -A mwan3_iface_in_wan -i pppoe-wan -m set --match-set mwan3_connected src -m mark --mark 0x0/0x3f00 -m comment --comment default -j MARK --set-xmark 0x3f00/0x3f00 -A mwan3_iface_in_wan -i pppoe-wan -m mark --mark 0x0/0x3f00 -m comment --comment wan -j MARK --set-xmark 0x100/0x3f00 -A mwan3_ifaces_in -m mark --mark 0x0/0x3f00 -j mwan3_iface_in_wan -A mwan3_ifaces_in -m mark --mark 0x0/0x3f00 -j mwan3_iface_in_IPTV -A mwan3_policy_balanced -m mark --mark 0x0/0x3f00 -m comment --comment "wan 3 3" -j MARK --set-xmark 0x100/0x3f00 -A mwan3_policy_iptvonly -m mark --mark 0x0/0x3f00 -m comment --comment "IPTV 3 3" -j MARK --set-xmark 0x200/0x3f00 -A mwan3_policy_wan_only -m mark --mark 0x0/0x3f00 -m comment --comment "wan 3 3" -j MARK --set-xmark 0x100/0x3f00 -A mwan3_rule_https -m mark --mark 0x0/0x3f00 -j MARK --set-xmark 0x100/0x3f00 -A mwan3_rule_https -m mark --mark 0x100/0x3f00 -m set ! --match-set mwan3_sticky_https src,src -j MARK --set-xmark 0x0/0x3f00 -A mwan3_rule_https -m mark --mark 0x0/0x3f00 -j mwan3_policy_wan_only -A mwan3_rule_https -m mark ! --mark 0xfc00/0xfc00 -j SET --del-set mwan3_sticky_https src,src -A mwan3_rule_https -m mark ! --mark 0xfc00/0xfc00 -j SET --add-set mwan3_sticky_https src,src -A mwan3_rules -p tcp -m multiport --dports 443 -m mark --mark 0x0/0x3f00 -j mwan3_rule_https -A mwan3_rules -m mark --mark 0x0/0x3f00 -j mwan3_policy_wan_only COMMIT # Completed on Thu Nov 12 19:49:39 2020 #===================== 路由表状态 =====================# #route -n Kernel IP routing table Destination Gateway Genmask Flags Metric Ref Use Iface 0.0.0.0 X 0.0.0.0 UG 0 0 0 pppoe-wan X 0.0.0.0 255.255.255.255 UH 0 0 0 pppoe-wan 192.168.1.0 0.0.0.0 255.255.255.0 U 0 0 0 br-lan #ip route list default via X dev pppoe-wan proto static 192.168.1.0/24 dev br-lan proto kernel scope link src 192.168.1.1 #ip rule show 0: from all lookup local 1001: from all iif pppoe-wan lookup 1 1002: from all iif eth0 lookup 2 2001: from all fwmark 0x100/0x3f00 lookup 1 2002: from all fwmark 0x200/0x3f00 lookup 2 2061: from all fwmark 0x3d00/0x3f00 blackhole 2062: from all fwmark 0x3e00/0x3f00 unreachable 32766: from all lookup main 32767: from all lookup default #===================== 端口占用状态 =====================# tcp 0 0 :::9090 :::* LISTEN 26686/clash tcp 0 0 :::7890 :::* LISTEN 26686/clash tcp 0 0 :::7891 :::* LISTEN 26686/clash tcp 0 0 :::7892 :::* LISTEN 26686/clash udp 0 0 :::7874 :::* 26686/clash udp 0 0 :::7891 :::* 26686/clash #===================== 测试本机DNS查询 =====================# Name: www.baidu.com Address 1: 61.135.169.121 Address 2: 61.135.185.32 #===================== resolv.conf.d =====================# # Interface IPTV nameserver 192.168.18.1 # Interface wan nameserver X nameserver X # Interface wan_6 nameserver 2408:8888::8 nameserver 2408:8899::8 #===================== 测试本机网络连接 =====================# HTTP/1.1 200 OK Accept-Ranges: bytes Cache-Control: private, no-cache, no-store, proxy-revalidate, no-transform Connection: keep-alive Content-Length: 277 Content-Type: text/html Date: Thu, 12 Nov 2020 11:49:39 GMT Etag: "575e1f5c-115" Last-Modified: Mon, 13 Jun 2016 02:50:04 GMT Pragma: no-cache Server: bfe/1.0.8.18 #===================== 测试本机网络下载 =====================# HTTP/1.1 200 OK Connection: keep-alive Content-Length: 80 Cache-Control: max-age=300 Content-Security-Policy: default-src 'none'; style-src 'unsafe-inline'; sandbox Content-Type: text/plain; charset=utf-8 ETag: "d30e627954475a5bfdb3d5cddabaf42949acf0969d5da3dbdcd657eda7822520" Strict-Transport-Security: max-age=31536000 X-Content-Type-Options: nosniff X-Frame-Options: deny X-XSS-Protection: 1; mode=block Via: 1.1 varnish (Varnish/6.0), 1.1 varnish X-GitHub-Request-Id: FC60:513B:29F758:305382:5FAD189B Accept-Ranges: bytes Date: Thu, 12 Nov 2020 11:49:40 GMT X-Served-By: cache-lax10640-LGB X-Cache: MISS, HIT X-Cache-Hits: 0, 1 X-Timer: S1605181781.505626,VS0,VE33 Vary: Authorization,Accept-Encoding Access-Control-Allow-Origin: * X-Fastly-Request-ID: 89e145b272a239b8a2d6d639ac536b5a4a72333e Expires: Thu, 12 Nov 2020 11:54:40 GMT Source-Age: 202 #===================== 最近运行日志 =====================# 2020-11-12 19:44:29 Watchdog: Reset Firewall For Enabling Redirect. time="2020-11-12T19:44:34+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:44:41+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:44:48+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:44:55+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:45:03+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:45:10+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:45:17+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:45:24+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" 2020-11-12 19:45:29 Watchdog: Reset Firewall For Enabling Redirect. time="2020-11-12T19:45:31+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:45:38+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:45:45+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:45:52+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:45:59+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:46:06+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:46:13+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:46:20+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:46:27+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" 2020-11-12 19:46:29 Watchdog: Reset Firewall For Enabling Redirect. time="2020-11-12T19:46:34+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:46:41+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:46:48+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:46:55+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:47:02+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:47:09+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:47:16+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:47:23+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" 2020-11-12 19:47:30 Watchdog: Reset Firewall For Enabling Redirect. time="2020-11-12T19:47:30+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:47:37+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:47:44+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:47:51+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:47:58+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:48:06+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:48:13+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:48:20+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:48:27+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" 2020-11-12 19:48:30 Watchdog: Reset Firewall For Enabling Redirect. time="2020-11-12T19:48:34+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:48:41+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:48:48+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:48:55+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:49:02+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:49:09+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:49:16+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:49:23+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" 2020-11-12 19:49:30 Watchdog: Reset Firewall For Enabling Redirect. time="2020-11-12T19:49:30+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout" time="2020-11-12T19:49:37+08:00" level=warning msg="dial DIRECT error: dial tcp4 163.177.72.156:7512: i/o timeout"
`
本机地址是指路由器wan口地址?还是lan口地址
竟然是wan口地址2333,没办法了
`OpenClash 调试日志
生成时间: 2020-11-12 19:49:39 插件版本: v0.40.15-beta 隐私提示: 上传此日志前请注意检查、屏蔽公网IP、节点、密码等相关敏感信息
`