OPenwrt 专题
speedtest #或者speedtest-cli speedtest --list | grep -i guangdong #指定测速点,这里指定的为广东 speedtest --list | grep -i guangdong --share #分享测速图片,后面会有图片地址出来
speedtest 安装
opkg update && opkg install python3-pip
pip -V
pip install speedtest_cli
which speedtest-cli
检查SpeedTest是否安装成功(返回/usr/bin/speedtest-cli表示安装成功)
opkg update #更新软件源 opkg install pack_name #安装软件包 pack_name代表需要包名 opkg remove pack_name #删除软件包
opkg install pack_url # pack_url 代表直链地址
opkg update #更新下软件源 opkg install /tmp/xxx.ipk # xxx.ipk 代表软件包文件名 opkg install /tmp/*.ipk #也可以使用 *.ipk 代替,这样会安装 /tmp 目录下所有的 ipk 文件(跟第二条命令只要运行一个就行了)
而在安装软件包时会出错,是因为依赖的环境或者是CPU架构不同造成安装错误,我们可以尝试不同的软件包或更改架构,详细参照官方文档https://oldwiki.archive.openwrt.org/zh-cn/doc/techref/opkg
这样我们查询自已的CPU架构的方法是,输入指令:
cat /proc/cpuinfo
查看 TSO 是否开启: [email protected]:~# ethtool --show-offload wlp3s0 Features for wlp3s0: tcp-segmentation-offload: off #tso tx-tcp-segmentation: off [fixed] tx-tcp-ecn-segmentation: off [fixed] tx-tcp-mangleid-segmentation: off [fixed] tx-tcp6-segmentation: off [fixed] udp-fragmentation-offload: off generic-segmentation-offload: on
https://liqiang.io/post/tcp-segmentation-offload-introduction-and-operation-2f0b8949
- 开启关闭 TSO 2.1 开启 TSO
[email protected]:~# ethtool -K eth0 tso on
[email protected]:~# ethtool -K eth0 gso on
注意,这里没有开启 gso,只开启 tso 是没用的,因为只有开启了 gso 才会检测是否支持 tso。
2.2 关闭 TSO
[email protected]:~# ethtool -K eth0 tso off
[email protected]:~# ethtool -K eth0 gso off
src/gz openwrt_core http://mirrors.tuna.tsinghua.edu.cn/openwrt/releases/19.07-SNAPSHOT/targets/x86/64/packages src/gz openwrt_base http://mirrors.tuna.tsinghua.edu.cn/openwrt/releases/19.07-SNAPSHOT/packages/x86_64/base src/gz openwrt_freifunk http://mirrors.tuna.tsinghua.edu.cn/openwrt/releases/19.07-SNAPSHOT/packages/x86_64/freifunk src/gz openwrt_luci http://mirrors.tuna.tsinghua.edu.cn/openwrt/releases/19.07-SNAPSHOT/packages/x86_64/luci src/gz openwrt_packages http://mirrors.tuna.tsinghua.edu.cn/openwrt/releases/19.07-SNAPSHOT/packages/x86_64/packages src/gz openwrt_routing http://mirrors.tuna.tsinghua.edu.cn/openwrt/releases/19.07-SNAPSHOT/packages/x86_64/routing src/gz openwrt_telephony http://mirrors.tuna.tsinghua.edu.cn/openwrt/releases/19.07-SNAPSHOT/packages/x86_64/telephony
可能出现错误的是:
Collected errors:
- opkg_conf_load: Could not lock /var/lock/opkg.lock: Resource temporarily unavailable.
解决方法:
rm -f /var/lock/opkg.lock opkg update
src/gz openwrt_core http://downloads.openwrt.org/releases/19.07-SNAPSHOT/targets/x86/64/packages src/gz openwrt_base http://downloads.openwrt.org/releases/19.07-SNAPSHOT/packages/x86_64/base src/gz openwrt_freifunk http://downloads.openwrt.org/releases/19.07-SNAPSHOT/packages/x86_64/freifunk src/gz openwrt_luci http://downloads.openwrt.org/releases/19.07-SNAPSHOT/packages/x86_64/luci src/gz openwrt_packages http://downloads.openwrt.org/releases/19.07-SNAPSHOT/packages/x86_64/packages src/gz openwrt_passwall http://downloads.openwrt.org/releases/19.07-SNAPSHOT/packages/x86_64/passwall src/gz openwrt_routing http://downloads.openwrt.org/releases/19.07-SNAPSHOT/packages/x86_64/routing src/gz openwrt_telephony http://downloads.openwrt.org/releases/19.07-SNAPSHOT/packages/x86_64/telephony
src/gz openwrt_core http://downloads.openwrt.org/releases/19.07-SNAPSHOT/targets/x86/64/packages src/gz openwrt_base http://downloads.openwrt.org/releases/19.07-SNAPSHOT/packages/x86_64/base src/gz openwrt_freifunk http://downloads.openwrt.org/releases/19.07-SNAPSHOT/packages/x86_64/freifunk src/gz openwrt_luci http://downloads.openwrt.org/releases/19.07-SNAPSHOT/packages/x86_64/luci src/gz openwrt_packages http://downloads.openwrt.org/releases/19.07-SNAPSHOT/packages/x86_64/packages src/gz openwrt_passwall http://downloads.openwrt.org/releases/19.07-SNAPSHOT/packages/x86_64/passwall src/gz openwrt_routing http://downloads.openwrt.org/releases/19.07-SNAPSHOT/packages/x86_64/routing src/gz openwrt_telephony http://downloads.openwrt.org/releases/19.07-SNAPSHOT/packages/x86_64/telephony
# This file is interpreted as shell script.
# Put your custom iptables rules here, they will
# be executed with each firewall (re-)start.
# Internal uci firewall chains are flushed and recreated on reload, so
# put custom rules into the root chains e.g. INPUT or FORWARD or into the
# special user chains, e.g. input_wan_rule or postrouting_lan_rule.
iptables -t nat -A PREROUTING -s 192.168.0.201 -p udp --dport 53 -j DNAT --to 192.168.0.31
iptables -t nat -A PREROUTING -s 192.168.0.201 -p tcp --dport 53 -j DNAT --to 192.168.0.31
#iptables -t nat -A PREROUTING -p udp -s 8.8.8.8/32 --dport 53 -j REDIRECT --to-ports 53
iptables -t nat -A PREROUTING -p udp --dport 53 -j REDIRECT --to-ports 5353
iptables -t nat -A PREROUTING -p tcp --dport 53 -j REDIRECT --to-ports 5353
ip6tables -t nat -A PREROUTING -p udp --dport 53 -j REDIRECT --to-ports 5353
ip6tables -t nat -A PREROUTING -p tcp --dport 53 -j REDIRECT --to-ports 5353
#iptables -t nat -A PREROUTING -s 192.168.1.1/24 -p udp --dport 53 -j DNAT --to 192.168.1.31
#iptables -t nat -A PREROUTING -s 192.168.1.1/24 -p tcp --dport 53 -j DNAT --to 192.168.1.31
#iptables -I PREROUTING -t nat -p udp -d 8.8.4.4 --dport 53 -j REDIRECT --to-ports 5353
#iptables -I PREROUTING -t nat -p udp -d 8.8.8.8 --dport 53 -j REDIRECT --to-ports 5353
iptables -t nat -I POSTROUTING -j MASQUERADE
iptables -t nat -I POSTROUTING -o eth0 -j MASQUERADE
iptables -t nat -I POSTROUTING -s 192.168.0.1/24 -j MASQUERADE
# This file is interpreted as shell script.
# Put your custom iptables rules here, they will
# be executed with each firewall (re-)start.
# Internal uci firewall chains are flushed and recreated on reload, so
# put custom rules into the root chains e.g. INPUT or FORWARD or into the,
# special user chains, e.g. input_wan_rule or postrouting_lan_rule.
iptables -t nat -A PREROUTING -p udp --dport 53 -j REDIRECT --to-ports 53
iptables -t nat -A PREROUTING -p tcp --dport 53 -j REDIRECT --to-ports 53
iptables -t nat -A PREROUTING -s 192.168.0.201 -p udp --dport 53 -j DNAT --to 192.168.0.31
iptables -t nat -A PREROUTING -s 192.168.0.201 -p tcp --dport 53 -j DNAT --to 192.168.0.31
#iptables -t nat -A PREROUTING -p udp --dport 53 -j REDIRECT --to-ports 5353
iptables -t nat -A PREROUTING -p tcp --dport 53 -j REDIRECT --to-ports 5353
#ip6tables -t nat -A PREROUTING -p udp --dport 53 -j REDIRECT --to-ports 5353
ip6tables -t nat -A PREROUTING -p tcp --dport 53 -j REDIRECT --to-ports 5353
bind_host: 0.0.0.0
bind_port: 3000
beta_bind_port: 0
users:
- name: root
password: $2y$10$9BEVAeeW6cYS045JkQdSl.qX7MRBztg0VICV5tBZZIKegkmnk7qDq
auth_attempts: 5
block_auth_min: 15
http_proxy: ""
language: ""
debug_pprof: false
web_session_ttl: 720
dns:
bind_hosts:
- 0.0.0.0
port: 5353
statistics_interval: 1
querylog_enabled: true
querylog_file_enabled: true
querylog_interval: 24h
querylog_size_memory: 1000
anonymize_client_ip: false
protection_enabled: true
blocking_mode: default
blocking_ipv4: ""
blocking_ipv6: ""
blocked_response_ttl: 10
parental_block_host: family-block.dns.adguard.com
safebrowsing_block_host: standard-block.dns.adguard.com
ratelimit: 0
ratelimit_whitelist: []
refuse_any: false
upstream_dns:
- '#116.116.116.116'
- '#221.5.88.88'
- 117.50.10.10
- 119.29.29.29
- '#1.0.0.1'
- 8.8.8.8
- 1.1.1.1
- 208.67.222.222
- 117.50.10.10
- https://doh-db14b915.doh.pub/dns-query
- '#tls://dot-db14b915.dot.pub'
- '#https://223.5.5.5/dns-query'
- '#https://doh.pub/dns-query'
- https://np47hmxoek.cloudflare-gateway.com/dns-query
- https://dns.google/dns-query
- '#[/xiangshangyx.com/]8.8.8.8'
- '[/netflix.com/]tcp://159.75.94.25:5353'
- '[/nflxvideo.net/]tcp://159.75.94.25:5353'
- '[/nflxso.net/]tcp://159.75.94.25:5353'
- '[/amazonaws.com/]tcp://159.75.94.25:5353'
- '[/nflxvideo.net/]tcp://159.75.94.25:5353'
- '[/fast.com/]tcp://159.75.94.25:5353'
- '[/netflix/]tcp://159.75.94.25:5353'
- '[/netflix.com/]tcp://159.75.94.25:5353'
- '[/netflix.net/]tcp://159.75.94.25:5353'
- '[/nflxso.net/]tcp://159.75.94.25:5353'
- '[/nflxext.com/]tcp://159.75.94.25:5353'
- '[/nflximg.com/]tcp://159.75.94.25:5353'
- '[/nflximg.net/]tcp://159.75.94.25:5353'
- '[/nflxvideo.net/]tcp://159.75.94.25:5353'
- '[/netflixdnstest0.com/]tcp://159.75.94.25:5353'
- '[/netflixdnstest1.com/]tcp://159.75.94.25:5353'
- '[/netflixdnstest2.com/]tcp://159.75.94.25:5353'
- '[/netflixdnstest3.com/]tcp://159.75.94.25:5353'
- '[/netflixdnstest4.com/]tcp://159.75.94.25:5353'
- '[/netflixdnstest5.com/]tcp://159.75.94.25:5353'
- '[/netflixdnstest6.com/]tcp://159.75.94.25:5353'
- '[/netflixdnstest7.com/]tcp://159.75.94.25:5353'
- '[/netflixdnstest8.com/]tcp://159.75.94.25:5353'
- '[/netflixdnstest9.com/]tcp://159.75.94.25:5353'
- '[/raw.githubusercontent.com/]1.0.0.1'
upstream_dns_file: ""
bootstrap_dns:
- 120.196.165.24
- 211.136.192.6
all_servers: true
fastest_addr: false
fastest_timeout: 1s
allowed_clients: []
disallowed_clients: []
blocked_hosts:
- version.bind
- id.server
- hostname.bind
trusted_proxies:
- 127.0.0.0/8
- ::1/128
cache_size: 10240
cache_ttl_min: 60
cache_ttl_max: 600
cache_optimistic: false
bogus_nxdomain: []
aaaa_disabled: false
enable_dnssec: false
edns_client_subnet: false
max_goroutines: 300
ipset: []
filtering_enabled: true
filters_update_interval: 24
parental_enabled: false
safesearch_enabled: false
safebrowsing_enabled: false
safebrowsing_cache_size: 1048576
safesearch_cache_size: 1048576
parental_cache_size: 1048576
cache_time: 30
rewrites: []
blocked_services: []
upstream_timeout: 10s
local_domain_name: lan
resolve_clients: false
use_private_ptr_resolvers: true
local_ptr_upstreams: []
tls:
enabled: false
server_name: ""
force_https: false
port_https: 443
port_dns_over_tls: 853
port_dns_over_quic: 784
port_dnscrypt: 0
dnscrypt_config_file: ""
allow_unencrypted_doh: false
strict_sni_check: false
certificate_chain: ""
private_key: ""
certificate_path: ""
private_key_path: ""
filters:
- enabled: true
url: https://adguardteam.github.io/AdGuardSDNSFilter/Filters/filter.txt
name: AdGuard Simplified Domain Names filter
id: 1
- enabled: true
url: https://adaway.org/hosts.txt
name: AdAway
id: 2
- enabled: false
url: https://www.malwaredomainlist.com/hostslist/hosts.txt
name: MalwareDomainList.com Hosts List
id: 4
- enabled: false
url: https://hosts.nfz.moe/basic/hosts
name: neoHosts basic
id: 1575618241
- enabled: false
url: http://sbc.io/hosts/hosts
name: StevenBlack host basic
id: 1575618242
- enabled: false
url: http://sbc.io/hosts/alternates/fakenews-gambling-porn-social/hosts
name: StevenBlack host+fakenews + gambling + porn + social
id: 1575618243
- enabled: true
url: https://cdn.jsdelivr.net/gh/privacy-protection-tools/anti-AD/anti-ad-easylist.txt
name: anti-AD(Adblock+neohosts+yhosts+cjxlist+adhlist)
id: 1577113202
- enabled: false
url: https://anti-ad.net/easylist.txt
name: an
id: 1608373928
- enabled: false
url: https://someonewhocares.org/hosts/zero/hosts
name: Dan Pollock's List
id: 1608373929
- enabled: false
url: https://pgl.yoyo.org/adservers/serverlist.php?hostformat=adblockplus&showintro=1&mimetype=plaintext
name: Peter Lowe's List
id: 1608373930
whitelist_filters: []
user_rules:
- '@@||port.aiastia.com^$important'
- '@@||vps.aiastia.com^$important'
- '@@||stats.uptimerobot.com^$important'
- ""
dhcp:
enabled: false
interface_name: ""
dhcpv4:
gateway_ip: ""
subnet_mask: ""
range_start: ""
range_end: ""
lease_duration: 86400
icmp_timeout_msec: 1000
options: []
dhcpv6:
range_start: ""
lease_duration: 86400
ra_slaac_only: false
ra_allow_slaac: false
clients: []
log_compress: false
log_localtime: false
log_max_backups: 0
log_max_size: 100
log_max_age: 3
log_file: ""
verbose: false
os:
group: ""
user: ""
rlimit_nofile: 0
schema_version: 12
nohup /root/node.sh >/dev/null 2>&1 &
node.sh
#!/bin/sh
sleep 120s
nohup /root/status-client -dsn wss://openwrt:123123@node -vnstat >/dev/null 2>&1 &

iptables -t nat -A PREROUTING -s 192.168.0.201 -p udp --dport 53 -j DNAT --to 192.168.0.31
iptables -t nat -A PREROUTING -s 192.168.0.201 -p tcp --dport 53 -j DNAT --to 192.168.0.31
iptables -t nat -A PREROUTING -p udp --dport 53 -j REDIRECT --to-ports 53 iptables -t nat -A PREROUTING -p tcp --dport 53 -j REDIRECT --to-ports 53 ip6tables -t nat -A PREROUTING -p udp --dport 53 -j REDIRECT --to-ports 53 ip6tables -t nat -A PREROUTING -p tcp --dport 53 -j REDIRECT --to-ports 53
mtu 1452 ikuai 安全设置 > 高级设置 1452 启用TCP最大报文长度 设置TCP-MSS值: 1452 字节 * (1000-1500,长度是4的整数倍)
cat >> `ps -w | grep dnsmasq | grep -Eo /var/etc/dnsmasq.conf[.][a-zA-Z0-9]+` <<EOF
# Null AAAA response on these domains
server=/fast.com/#
address=/fast.com/::
server=/netflix.com/#
address=/netflix.com/::
server=/netflix.net/#
address=/netflix.net/::
server=/nflxso.net/#
address=/nflxso.net/::
server=/nflxext.com/#
address=/nflxext.com/::
server=/nflximg.com/#
address=/nflximg.com/::
server=/nflximg.net/#
address=/nflximg.net/::
server=/nflxvideo.net/#
address=/nflxvideo.net/::
server=/netflixdnstest0.com/#
address=/netflixdnstest0.com/::
server=/netflixdnstest1.com/#
address=/netflixdnstest1.com/::
server=/netflixdnstest2.com/#
address=/netflixdnstest2.com/::
server=/netflixdnstest3.com/#
address=/netflixdnstest3.com/::
server=/netflixdnstest4.com/#
address=/netflixdnstest4.com/::
server=/netflixdnstest5.com/#
address=/netflixdnstest5.com/::
server=/netflixdnstest6.com/#
address=/netflixdnstest6.com/::
server=/netflixdnstest7.com/#
address=/netflixdnstest7.com/::
server=/netflixdnstest8.com/#
address=/netflixdnstest8.com/::
server=/netflixdnstest9.com/#
address=/netflixdnstest9.com/::
EOF
kill `ps | grep dnsmasq | grep -E dnsmasq.conf[.][a-zA-Z0-9]+ | awk '{print $1}'`
# 等待几秒 dnsmasq 会自动重启
[/netflix.com/]tcp://119.91.108.128:5353
[/nflxvideo.net/]tcp://119.91.108.128:5353
[/nflxso.net/]tcp://119.91.108.128:5353
[/amazonaws.com/]tcp://119.91.108.128:5353
[/nflxvideo.net/]tcp://119.91.108.128:5353
[/fast.com/]tcp://119.91.108.128:5353
[/netflix/]tcp://119.91.108.128:5353
[/netflix.com/]tcp://119.91.108.128:5353
[/netflix.net/]tcp://119.91.108.128:5353
[/nflxso.net/]tcp://119.91.108.128:5353
[/nflxext.com/]tcp://119.91.108.128:5353
[/nflximg.com/]tcp://119.91.108.128:5353
[/nflximg.net/]tcp://119.91.108.128:5353
[/nflxvideo.net/]tcp://119.91.108.128:5353
[/netflixdnstest0.com/]tcp://119.91.108.128:5353
[/netflixdnstest1.com/]tcp://119.91.108.128:5353
[/netflixdnstest2.com/]tcp://119.91.108.128:5353
[/netflixdnstest3.com/]tcp://119.91.108.128:5353
[/netflixdnstest4.com/]tcp://119.91.108.128:5353
[/netflixdnstest5.com/]tcp://119.91.108.128:5353
[/netflixdnstest6.com/]tcp://119.91.108.128:5353
[/netflixdnstest7.com/]tcp://119.91.108.128:5353
[/netflixdnstest8.com/]tcp://119.91.108.128:5353
[/netflixdnstest9.com/]tcp://119.91.108.128:5353
mount -o remount rw /
/etc/init.d/network restart
netstat -ltnp | grep 80
117.50.10.10
# OneDNS
119.29.29.29
# 腾讯公共DNS
8.8.8.8
1.1.1.1
208.67.222.222
# OpenDNS
https://doh-139e5817-openwrt.doh.pub/dns-query
https://np47hmxoek.cloudflare-gateway.com/dns-query
https://dns.google/dns-query
[/netflix.com/]tcp://159.75.94.25:5353
[/nflxvideo.net/]tcp://159.75.94.25:5353
[/nflxso.net/]tcp://159.75.94.25:5353
[/amazonaws.com/]tcp://159.75.94.25:5353
[/fast.com/]tcp://159.75.94.25:5353
[/netflix/]tcp://159.75.94.25:5353
[/netflix.com/]tcp://159.75.94.25:5353
[/netflix.net/]tcp://159.75.94.25:5353
[/nflxso.net/]tcp://159.75.94.25:5353
[/nflxext.com/]tcp://159.75.94.25:5353
[/nflximg.com/]tcp://159.75.94.25:5353
[/nflximg.net/]tcp://159.75.94.25:5353
[/nflxvideo.net/]tcp://159.75.94.25:5353
[/netflixdnstest0.com/]tcp://159.75.94.25:5353
[/netflixdnstest1.com/]tcp://159.75.94.25:5353
[/netflixdnstest2.com/]tcp://159.75.94.25:5353
[/netflixdnstest3.com/]tcp://159.75.94.25:5353
[/netflixdnstest4.com/]tcp://159.75.94.25:5353
[/netflixdnstest5.com/]tcp://159.75.94.25:5353
[/netflixdnstest6.com/]tcp://159.75.94.25:5353
[/netflixdnstest7.com/]tcp://159.75.94.25:5353
[/netflixdnstest8.com/]tcp://159.75.94.25:5353
[/netflixdnstest9.com/]tcp://159.75.94.25:5353
[/raw.githubusercontent.com/]1.0.0.1
https://github.com/kiddin9/OpenWrt_x86-r2s-r4s-r5s-N1/issues/490 nginx 端口修改位置
/etc/nginx/uci.conf 是自动生成的, 要在 /etc/config/nginx 中修改,
service nginx reload
端口占用
netstat -tunlp |grep 80
我们可以先通过 ps aux | grep process_name 找到对应 process 的 PID,再通过 ll /proc/PID 查到进程的绝对路径等信息
cwd符号链接的是进程运行目录;
exe符号连接就是执行程序的绝对路径;
cmdline就是程序运行时输入的命令行命令;
environ记录了进程运行时的环境变量;
fd目录下是进程打开或使用的文件的符号连接
fast.com
netflix.ca
netflix.com
netflix.net
netflixinvestor.com
netflixtechblog.com
nflxext.com
nflximg.com
nflximg.net
nflxsearch.net
nflxso.net
nflxvideo.net
#Disney
disney.asia
disney.be
disney.bg
disney.ca
disney.ch
disney.co.il
disney.co.jp
disney.co.kr
disney.co.th
disney.co.uk
disney.co.za
disney.com
disney.com.au
disney.com.br
disney.com.hk
disney.com.tw
disney.cz
disney.de
disney.dk
disney.es
disney.fi
disney.fr
disney.gr
disney.hu
disney.id
disney.in
disney.io
disney.it
disney.my
disney.nl
disney.no
disney.ph
disney.pl
disney.pt
disney.ro
disney.ru
disney.se
disney.sg
20thcenturystudios.com.au
20thcenturystudios.com.br
20thcenturystudios.jp
adventuresbydisney.com
babble.com
babyzone.com
beautyandthebeastmusical.co.uk
dilcdn.com
disney-asia.com
disney-discount.com
disney-plus.net
disney-studio.com
disney-studio.net
disneyadsales.com
disneyarena.com
disneyaulani.com
disneybaby.com
disneycareers.com
disneychannelonstage.com
disneychannelroadtrip.com
disneycruisebrasil.com
disneyenconcert.com
disneyiejobs.com
disneyinflight.com
disneyinternational.com
disneyinternationalhd.com
disneyjunior.com
disneyjuniortreataday.com
disneylatino.com
disneymagicmoments.co.il
disneymagicmoments.co.uk
disneymagicmoments.co.za
disneymagicmoments.de
disneymagicmoments.es
disneymagicmoments.fr
disneymagicmoments.gen.tr
disneymagicmoments.gr
disneymagicmoments.it
disneymagicmoments.pl
disneymagicmomentsme.com
disneyme.com
disneymeetingsandevents.com
disneymovieinsiders.com
disneymusicpromotion.com
disneynewseries.com
disneynow.com
disneypeoplesurveys.com
disneyplus.com
disneyredirects.com
disneysrivieraresort.com
disneystore.com
disneystreaming.com
disneysubscription.com
disneytickets.co.uk
disneyturkiye.com.tr
disneytvajobs.com
disneyworld-go.com
dssott.com
go-disneyworldgo.com
go.com
mickey.tv
moviesanywhere.com
nomadlandmovie.ch
playmation.com
shopdisney.com
shops-disney.com
sorcerersarena.com
spaindisney.com
star-brasil.com
star-latam.com
starwars.com
starwarsgalacticstarcruiser.com
starwarskids.com
streamingdisney.net
thestationbymaker.com
thisispolaris.com
watchdisneyfe.com
bamgrid.com
disney.api.edge.bamgrid.com
execute-api.us-east-1.amazonaws.com
bam.nr-data.net
bam-6.nr-data.net
global.edge.bamgrid.com
deploy.static.akamaitechnologies.com
1e100.net
r.cloudfront.net
#动画疯
gamer.com.tw
bahamut.com.tw
hinet.net
fbcdn.net
gvt1.com
digicert.com
viblast.com
#HBO GO MAX
conviva.com
go.com
hbo.com
hbogo.com
hbonow.com
hboasia.com
hbogo.com
hbogoasia.hk
hbogoasia.com
amazonaws.com
akamaihd.net
boltdns.net
cinemax.com
comhbo.com
hbomax.com
maxgo.com
#Dazn
control.kochava.com
d151l6v8er5bdm.cloudfront.net
d1sgwhnao7452x.cloudfront.net
dazn-api.com
dazn.com
dazndn.com
dc2-vodhls-perform.secure.footprint.net
dca-ll-livedazn-dznlivejp.s.llnwi.net
dcalivedazn.akamaized.net
dcblivedazn.akamaized.net
indazn.com
indaznlab.com
intercom.io
logx.optimizely.com
s.yimg.jp
sentry.io
#TVB(MyTvSuper)
bigbigchannel.com.hk
bigbigshop.com
content.jwplatform.com
encoretvb.com
mytvsuper.com
mytvsuperlimited.hb.omtrdc.net
mytvsuperlimited.sc.omtrdc.net
tvb.com
tvb.com.au
tvbanywhere.com
tvbanywhere.com.sg
tvbc.com.cn
tvbeventpower.com.hk
tvbusa.com
tvbweekly.com
tvmedia.net.au
videos-f.jwpsrv.com
#DMM
dmm.com
dmm.co.jp
dmm-extension.com
dmmapis.com
api-p.videomarket.jp
#Now E
nowe.com
nowestatic.com
#Bilibili Taiwan
akamaized.net
acg.tv
acgvideo.com
b23.tv
bigfun.cn
biliapi.com
biliapi.net
bilibili.com
bilibili.tv
bilibiligame.net
bilicdn1.com
bilicdn2.com
bilicdn3.com
bilicdn4.com
bilicdn5.com
biligame.com
biligame.net
bilivideo.com
bilivideo.cn
hdslb.com
im9.com
mincdn.com
biligo.com
#catchplay
catchplay.com.tw
catchplay.com
cloudfront.net
akamaized.net
#kktv
kktv.com.tw
kktv.me
kk.stream
#myvideo
myvideo.net.tw
#LineTV
chocotv.com.tw
line-cdn.net
line-scdn.net
linetv.tw
#LiTV
litv.tv
#4GTV
4gtv.tv
#ViuTV
viu.tv
viu.com
viu.now.com
nowe.com
gvt1.com
gvt2.com
gvt3.com
amazonaws.com
gstatic.com
firebaseio.com
jwplayer.com
cloudfront.net
#Amazon Prime Video
cloudfront.net
aiv-cdn.net
aiv-delivery.net
amazonprimevideo.cn
amazonprimevideo.com.cn
amazonprimevideos.com
amazonvideo.cc
amazonvideo.com
atv-ps.amazon.com
avodmp4s3ww-a.akamaihd.net
fls-na.amazon.com
llnwd.net
media-amazon.com
prime-video.com
primevideo.cc
primevideo.com
primevideo.info
primevideo.org
primevideo.tv
#DMM
dmm-extension.com
dmm.co.jp
dmm.com
videomarket.jp
p-smith.com
vmdash-cenc.akamaized.net
img.vm-movie.jp
bam.nr-data.net
#Abema
abema.io
abema.tv
ds-linear-abematv.akamaized.net
linear-abematv.akamaized.net
ds-vod-abematv.akamaized.net
vod-abematv.akamaized.net
ameba.jp
hayabusa.io
mobile-collector.newrelic.com
vod-abematv.akamaized.net
bucketeer.jp
abema.adx.promo
hayabusa.media
#NicoNic
dmc.nico
nicovideo.jp
nimg.jp
socdm.com
#Telasa
telasa.jp
kddi-video.com
videopass.jp
d2lmsumy47c8as.cloudfront.net
#Paravi
paravi.jp
#U-NEXT
unext.jp
nxtv.jp
#Hulu Japan
hulu.com
huluad.com
huluim.com
hulustream.com
happyon.jp
hulu.jp
hjholdings.jp
streaks.jp
yb.uncn.jp
hulu.hb.omtrdc.net
conviva.com
imrworldwide.com
tealiumiq.com
tiqcdn.com
microad.jp
adsrvr.org
adsmoloco.com
yimg.jp
webantenna.info
doubleclick.net
usergram.info
hjholdings.tv
#TVer
tver.jp
edge.api.brightcove.com
players.brightcove.net
#WOWOW
wowow.co.jp
#Fuji TV
fujitv.co.jp
stream.ne.jp
#Radiko
radiko.jp
radionikkei.jp
smartstream.ne.jp
#Karaoke@DAM
clubdam.com
#Games
cygames.jp
konosubafd.jp
colorfulpalette.org
cds1.clubdam.com
api.worldflipper.jp
#music.jp
music-book.jp
overseaauth.music-book.jp
#GYAO!
gyao.yahoo.co.jp
#J:com On Demand
id.zaq.ne.jp
http:
pprof:
port: 6060
enabled: false
address: 0.0.0.0:3000
session_ttl: 720h
users:
- name: root
password: $2y$10$1rIC74GOUCkudhyQBg28T.ZMQJW8yQhs8lDwwyxtCtSRXa1L0uT9m
block_auth_min: 15
http_proxy: ""
language: zh-cn
theme: auto
dns:
bind_hosts:
- 0.0.0.0
port: 1745
anonymize_client_ip: false
ratelimit: 0
ratelimit_subnet_len_ipv4: 24
ratelimit_subnet_len_ipv6: 56
ratelimit_whitelist: []
refuse_any: false
upstream_dns:
- 223.5.5.5
upstream_dns_file: ""
bootstrap_dns:
- 119.29.29.29
- 223.5.5.5
fallback_dns: []
all_servers: false
fastest_addr: false
fastest_timeout: 1s
allowed_clients: []
disallowed_clients: []
blocked_hosts:
- version.bind
- id.server
- hostname.bind
trusted_proxies:
- 127.0.0.0/8
- ::1/128
cache_size: 4194304
cache_ttl_min: 0
cache_ttl_max: 0
cache_optimistic: true
bogus_nxdomain: []
aaaa_disabled: false
enable_dnssec: false
edns_client_subnet:
custom_ip: ""
enabled: false
use_custom: false
max_goroutines: 300
handle_ddr: true
ipset: []
ipset_file: ""
bootstrap_prefer_ipv6: false
upstream_timeout: 10s
private_networks: []
use_private_ptr_resolvers: true
local_ptr_upstreams: []
use_dns64: false
dns64_prefixes: []
serve_http3: false
use_http3_upstreams: false
serve_plain_dns: true
tls:
enabled: false
server_name: ""
force_https: false
port_https: 443
port_dns_over_tls: 853
port_dns_over_quic: 784
port_dnscrypt: 0
dnscrypt_config_file: ""
allow_unencrypted_doh: false
certificate_chain: ""
private_key: ""
certificate_path: ""
private_key_path: ""
strict_sni_check: false
querylog:
ignored: []
interval: 6h
size_memory: 1000
enabled: true
file_enabled: true
statistics:
ignored: []
interval: 720h
enabled: true
filters:
- enabled: true
url: https://adguardteam.github.io/AdGuardSDNSFilter/Filters/filter.txt
name: AdGuard DNS filter
id: 1628750870
- enabled: true
url: https://anti-ad.net/easylist.txt
name: 'CHN: anti-AD'
id: 1628750871
whitelist_filters: []
user_rules: []
dhcp:
enabled: false
interface_name: ""
local_domain_name: lan
dhcpv4:
gateway_ip: ""
subnet_mask: ""
range_start: ""
range_end: ""
lease_duration: 86400
icmp_timeout_msec: 1000
options: []
dhcpv6:
range_start: ""
lease_duration: 86400
ra_slaac_only: false
ra_allow_slaac: false
filtering:
blocking_ipv4: ""
blocking_ipv6: ""
blocked_services:
schedule:
time_zone: Local
ids: []
protection_disabled_until: null
safe_search:
enabled: false
bing: true
duckduckgo: true
google: true
pixabay: true
yandex: true
youtube: true
blocking_mode: default
parental_block_host: family-block.dns.adguard.com
safebrowsing_block_host: standard-block.dns.adguard.com
rewrites: []
safebrowsing_cache_size: 1048576
safesearch_cache_size: 1048576
parental_cache_size: 1048576
cache_time: 30
filters_update_interval: 24
blocked_response_ttl: 60
filtering_enabled: true
parental_enabled: false
safebrowsing_enabled: false
protection_enabled: true
clients:
runtime_sources:
whois: true
arp: true
rdns: true
dhcp: true
hosts: true
persistent: []
log:
file: ""
max_backups: 0
max_size: 100
max_age: 3
compress: false
local_time: false
verbose: false
os:
group: ""
user: ""
rlimit_nofile: 0
schema_version: 27