Replies: 5 comments
-
一开始google找的教材,也是有dns解析回流 ,后来我按照这个官方白话文档 一步一步配置的 透明代理 ,没有这个问题了 |
Beta Was this translation helpful? Give feedback.
-
本来是想直接开放53端口,现在已经改成对53端口的UDP包抓包转发。改成CPU低了不少 |
Beta Was this translation helpful? Give feedback.
-
我在v2ray的上游,使用其它dns服务器。 |
Beta Was this translation helpful? Give feedback.
-
它dns循环有很多种原因,最好就是不要用它作为dns服务器。 |
Beta Was this translation helpful? Give feedback.
-
iptables -t mangle -A V2RAY -p udp --dport 53 -j RETURN
这一条路由
加上这个设置,它的意思是给dns出口流量打上标签,直接走系统的路由 |
Beta Was this translation helpful? Give feedback.
Uh oh!
There was an error while loading. Please reload this page.
-
版本:
[root@v2ray ~]# systemctl stop v2ray
[root@v2ray ~]# v2ray --version
V2Ray 4.45.0 (V2Fly, a community-driven edition of V2Ray.) Custom (go1.18.1 linux/amd64)
A unified platform for anti-censorship.
配置:
{
"log": {
"access": "/var/log/v2ray/access.log",
"error": "/var/log/v2ray/error.log",
"loglevel": "warning"
},
"levels": {
"1": {
// "handshake": 4,
"connIdle": 10,
// "uplinkOnly": 2,
// "downlinkOnly": 5,
// "statsUserUplink": false,
// "statsUserDownlink": false,
"bufferSize": 1
},
"2": {
// "handshake": 4,
"connIdle": 600
// "uplinkOnly": 2,
// "downlinkOnly": 5,
// "statsUserUplink": false,
// "statsUserDownlink": false,
// "bufferSize": 1
}
},
}
iptables:
iptables -t mangle -A V2RAY -s 127.0.0.1/32 -j RETURN
iptables -t mangle -A V2RAY -d 127.0.0.1/32 -j RETURN
iptables -t mangle -A V2RAY -d 224.0.0.0/4 -j RETURN
iptables -t mangle -A V2RAY -d 255.255.255.255/32 -j RETURN
iptables -t mangle -A V2RAY -d 192.168.0.0/16 -j RETURN
iptables -t mangle -A V2RAY -d 172.16.0.0/12 -j RETURN
iptables -t mangle -A V2RAY -d 10.0.0.0/8 -j RETURN
iptables -t mangle -A V2RAY -p udp --dport 53 -j RETURN
iptables -t mangle -A V2RAY -p udp --dport 123 -j RETURN
iptables -t mangle -A V2RAY -m mark --mark 0xff -j RETURN
iptables -t mangle -A V2RAY -p udp -j TPROXY --on-ip 127.0.0.1 --on-port 12345 --tproxy-mark 1
iptables -t mangle -A V2RAY -p tcp -j TPROXY --on-ip 127.0.0.1 --on-port 12345 --tproxy-mark 1
iptables -t mangle -A PREROUTING -j V2RAY
iptables -t mangle -A V2RAY_MASK -d 224.0.0.0/4 -j RETURN
iptables -t mangle -A V2RAY_MASK -s 127.0.0.1/32 -j RETURN
iptables -t mangle -A V2RAY_MASK -d 127.0.0.1/32 -j RETURN
iptables -t mangle -A V2RAY_MASK -d 255.255.255.255/32 -j RETURN
iptables -t mangle -A V2RAY_MASK -d 192.168.0.0/16 -j RETURN
iptables -t mangle -A V2RAY_MASK -d 172.16.0.0/12 -j RETURN
iptables -t mangle -A V2RAY_MASK -d 10.0.0.0/8 -j RETURN
iptables -t mangle -A V2RAY_MASK -s 192.168.50.6/32 -j RETURN
iptables -t mangle -A V2RAY_MASK -p udp --dport 123 -j RETURN
iptables -t mangle -A V2RAY_MASK -p udp --sport 123 -j RETURN
iptables -t mangle -A V2RAY_MASK -j RETURN -m mark --mark 0xff
iptables -t mangle -A V2RAY_MASK -p udp -j MARK --set-mark 1
iptables -t mangle -A V2RAY_MASK -p tcp -j MARK --set-mark 1
iptables -t mangle -A OUTPUT -j V2RAY_MASK
iptables -t mangle -A DIVERT -j MARK --set-mark 1
iptables -t mangle -A DIVERT -j ACCEPT
iptables -t mangle -I PREROUTING -p tcp -m socket -j DIVERT
日志:
2022/05/20 13:56:59 192.168.50.6:39190 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:36765 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:43278 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:59756 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:43345 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:42892 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:52687 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:56064 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:57520 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:43684 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:47065 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:47443 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:49894 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:54372 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:39915 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:42407 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:41978 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:33355 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:42947 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:41201 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:50273 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:55484 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:44314 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:50827 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:49305 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:49850 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:50322 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:33745 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:58298 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:39663 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:48249 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:60106 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:49807 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:55673 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:59335 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:56:59 192.168.50.6:41051 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:57:10 192.168.50.98:54501 accepted udp:192.168.50.6:53 [dns-out]
2022/05/20 13:57:49 192.168.50.98:60503 accepted udp:192.168.50.6:53 [dns-out]
Beta Was this translation helpful? Give feedback.
All reactions