Skip to content
Discussion options

You must be logged in to vote

In case somebody stumbles upon this thread. The problem was in "domainStrategy": "AsIs". My traffic that should go into xxx_vpn is HTTP, so sniffing added domain and routing is domain based by default. Changing to IPIfNoMatch or IPOnDemand solved the issue. I find it surprising. At the end, even if you sniffed domain from tls hello, xray still has tcp/ip connection and it has dst IP. Not sure why matching is not based on that IP and why documentation talks about resolving domain.

Replies: 1 comment

Comment options

You must be logged in to vote
0 replies
Answer selected by ruz
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
1 participant