Dnscrypt Proxy配置
默认的配置文件是当前目录下的 dnscrypt-proxy.toml
, 可以使用-config
指定配置文件
listen_addresses = ['0.0.0.0:53']
max_clients = 250
ipv4_servers = true
ipv6_servers = false
dnscrypt_servers = true
doh_servers = true
require_dnssec = false
require_nolog = true
require_nofilter = true
force_tcp = false
timeout = 2500
keepalive = 30
lb_strategy = 'fastest'
use_syslog = false
cert_refresh_delay = 240
fallback_resolver = '114.114.114.114:53'
ignore_system_dns = false
netprobe_timeout = 30
log_files_max_size = 10
log_files_max_age = 7
log_files_max_backups = 1
block_ipv6 = true
cache = true
cache_size = 512
cache_min_ttl = 600
cache_max_ttl = 86400
cache_neg_min_ttl = 60
cache_neg_max_ttl = 600
[query_log]
file = 'query.log'
format = 'tsv'
[nx_log]
file = 'nx.log'
format = 'tsv'
[blacklist]
[ip_blacklist]
[whitelist]
[schedules]
[sources]
[static]
[static.'dns.rubyfish.cn']
stamp = 'sdns://AgcAAAAAAAAAAAAPZG5zLnJ1YnlmaXNoLmNuCi9kbnMtcXVlcnk'
dig vps.suconghou.cn @127.0.0.1:53
或者
dnscrypt-proxy -resolve github.com
用来测试
cloaking_rules = '/etc/dnscrypt-proxy/cloaking_rules.txt'
使用通配符*.*
匹配所有