forked from zxfccmm4/Surge
-
Notifications
You must be signed in to change notification settings - Fork 0
/
SurgeProMax.conf
374 lines (341 loc) ยท 23.6 KB
/
SurgeProMax.conf
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
[General]
# --- GENERAL ---
# Enhanced Wi-Fi Assist
wifi-assist = true
# Hybrid Network
all-hybrid = false
# Gaming Optimization
//ๅผๅฏๅๅฐๅจ็ณป็ป่ด่ฝฝ้ๅธธ้ซ๏ผๆฐๆฎๅ
ๅค็ๅบ็ฐๅปถ่ฟๆถ๏ผไผๅ
ๅค็ UDP ๆฐๆฎๅ
ใ
udp-priority = true
# Latency Benchmark
internet-test-url = http://bing.com
proxy-test-url = http://cp.cloudflare.com/generate_204
test-timeout = 5
# GeoIP Database
geoip-maxmind-url = https://raw.githubusercontent.com/Loyalsoldier/geoip/release/Country.mmdb
# IPv6 Support
//ๅผๅฏ IPv6 ไผ่ฎฉ Surge ๅๆถ่ฏทๆฑๅๅ็ A ไธ AAAA ่ฎฐๅฝ๏ผ่ฟๅฏ่ฝ็ฅๅพฎ็ๅขๅ ๅปถ่ฟใ่ฅ DNS ๆๅกๅจๆ ๆณๆญฃ็กฎๅๅบ AAAA ๆฅ่ฏข๏ผๅๅฏ่ฝๅฏผ่ดไธฅ้็ๅก้กฟ๏ผไป
ๅจ้่ฆๆถๅผๅฏใ
ipv6 = false
# --- Wi-Fi ACCESS ---
//Surge ๅฏไปฅไฝไธบไธไธชๆ ๅ็ HTTP/SOCKS5 ไปฃ็ๆๅกๅจๅ wi-Fi ็ฝ็ปไธ็ๅ
ถไป่ฎพๅคๆไพๆๅกๅจ
allow-wifi-access = false
# Surge iOS - ้ป่ฎค HTTP ็ซฏๅฃๅท๏ผ6152๏ผSOCKS5 ็ซฏๅฃๅท๏ผ6153
wifi-access-http-port = 6152
wifi-access-socks5-port = 6153
# Surge Mac - ้ป่ฎค HTTP ็ซฏๅฃๅท๏ผ6152๏ผSOCKS5 ็ซฏๅฃๅท๏ผ6153
http-listen = 0.0.0.0:6152
socks5-listen = 0.0.0.0:6153
# ๅ
่ฎธ็ญ็นๅ
ฑไบซ
allow-hotspot-access = true
# --- REMOTE CONTROLLER ---
# ๅ
่ฎธ Surge ่ฏทๆฑๆฅ็ๅจๆ Surge CLI ่ฟ่ก็ฎก็ๆงๅถ
//้ป่ฎคไป
ๅ
่ฎธๅค้จๆงๅถๅจ้่ฟ USB ่ฟ่กๆงๅถใๅฆๆๆณ่ฆๅ
่ฎธ็ฑ Wi-Fi ๆงๅถๅฏไปฅๅฐ 127.0.0.1 ๆนไธบ 0.0.0.0
external-controller-access = key@127.0.0.1:6160
# HTTP API & Web Dashboard
//This option allows using HTTP APIs to control
http-api = key@127.0.0.1:6166
//ไฝฟ็จ HTTPS ๆฟไปฃ HTTP ๅ่ฎฎ๏ผ้่ฆๅ
้
็ฝฎ MitM ็ CA ่ฏไนฆ๏ผๅๆถ้่ฆๅจๅฎขๆท็ซฏ่ฎพๅคไธๆๅจๅฎ่ฃ
ๅนถไฟกไปป CA ่ฏไนฆ
http-api-tls = false
//ๅผๅฏ่ฏฅ้้กนๅๅฏไปฅ้่ฟๆต่งๅจๆงๅถ Surge๏ผๆฌๆบๆต่งๅจ่พๅ
ฅ127.0.0.1:6166
http-api-web-dashboard = true
# --- COMPATIBILITY ---
//่ฏฅ้้กนๅฐไฝฟๅพๅๅพ่ฟไบๅๅๆ่
IP ๆฎต็่ฏทๆฑ็ฑ Surge VIF ่ฟ่กๅค็๏ผ่ไธๆฏ Surge Proxy)๏ผ่ฏฅ้้กน็จไบไฟฎๆญฃๅๆไบๅบ็จ็ๅ
ผๅฎนๆง้ฎ้ข
# ๅ
ผๅฎนๆจกๅผ
# 0๏ผ็ฆ็จ
# 1๏ผProxy with Loopback Address
# 2๏ผProxy Only
# 3๏ผVIF Only
# 4๏ผVIF Proxy๏ผไธไฝฟ็จ 127.0.0.1 ็ๅ็ฏๅฐๅไฝไธบไปฃ็๏ผไฝฟ็จ VIF ็่ๆไปฃ็ๅฐๅ๏ผๅฐไบง็้ขๅค็ๆง่ฝๅผ้
# 5๏ผไธไฝไธบ้ป่ฎค่ทฏ็ฑ๏ผไธๅฃฐๆไธบ้ป่ฎค่ทฏ็ฑ๏ผไฝๅฃฐๆ่ฅๅนฒไธชๅฐ่ทฏ็ฑไปฅ่ฆ็ๆๆๅฐๅ๏ผไธ Surge Mac ๅขๅผบๆจกๅผ่กไธบ็ธๅ๏ผ
# ่ฟ็ง้
็ฝฎไธ็ฑไบ VIF ไธๆฏไธป็ฝ็ป่ฎพๅคๆ ๆณ้
็ฝฎ็ณป็ปไปฃ็ใ้จๅๅบ็จๅจ่ฏฅๆจกๅผไธไผ่ฎคไธบ VPN ๆชๅผๅฏไปฅ่งฃๅณ็นๆฎๅ
ผๅฎนๆง้ฎ้ข๏ผๅฆ HomeKit Security Camera
# โ ๏ธ ่ฏทไป
ๅจๆๅผไธไฝฟ็จ๏ผๅผๅฏๅ้จๅๅ่ฝๅฏ่ฝๆ ๆณไฝฟ็จ
compatibility-mode = 0
# ่ทณ่ฟไปฃ็
skip-proxy = 192.168.0.0/24, 10.0.0.0/8, 172.16.0.0/12, 127.0.0.1, localhost, *.local
# ๆ้ค็ฎๅไธปๆบๅ
exclude-simple-hostnames = true
# --- DNS ---
# The IP addresses of upstream DNS servers
dns-server = 223.5.5.5, 114.114.114.114
# ไป /etc/hosts ่ฏปๅ DNS ่ฎฐๅฝ
read-etc-hosts = true
# ENCRYPTED DNS
//ๅฆๆ้
็ฝฎไบๅ ๅฏ DNS๏ผไผ ็ป DNS ๅฐไป
็จไฝ่งฃๆ DOH ๅๅๅๆต่ฏ็ฝ็ป่ฟ้ๆง
# ๆฏๆ็ๅ่ฎฎ๏ผ
# DNS over HTTPS: https://doh.pub/dns-query
# DNS over HTTP/3: h3://example.com
# DNS over QUIC: quic://example.com
//encrypted-dns-server = https://223.5.5.5/ // ้ค้ๅฝๅฐ ISP ๆไธฅ้็ DNS ๆฑกๆ้ฎ้ข๏ผๅฆๅๆฒกๅฟ
่ฆๅผๅฏ DoH๏ผไผ ็ป DNS ็ๆง่ฝๆไผ๏ผ็ฝ็ปๅผๅธธๅๆขๅค้ๅบฆๆๅฟซ
doh-skip-cert-verification=true // ไธดๆถๅ
ณ้ญ DOH ็ๆๅก็ซฏ่ฏไนฆ้ช่ฏ๏ผ่งฃๅณ Surge ๆ ๆณไธ nextdns.io ๅฎๆ TLS ๆกๆ้ฎ้ข๏ผ
# ไปฃ็่ฏทๆฑๆฌๅฐ DNS ๆ ๅฐ
//ๅผๅฏ่ฏฅ้้กนๅ๏ผๅฆๆ่ฎฟ้ฎ็ๅๅ้
็ฝฎๆๆฌๅฐ DNS ๆ ๅฐ๏ผsurge ๅฐไฝฟ็จๆฌๅฐ IP ๅฐๅ่ฟ่ก่ฏทๆฑ๏ผไธๅจ่ฟ็ซฏ่ฟ่ก่งฃๆใไป
ๅฏน้
็ฝฎไบ IP ๅฐๅ็ๆฌๅฐ DNS ๆ ๅฐ็ๆ
use-local-host-item-for-proxy = true
# ไฝฟๅ ๅฏ DNS ่ฏทๆฑ้่ฟไปฃ็็ญ็ฅๆง่ก
encrypted-dns-follow-outbound-mode = false
# --- ROUTING ---
# ๅ
ๅซๆๆ็ฝ็ป่ฏทๆฑ
include-all-networks = false
# ๅ
ๅซๆฌๅฐ็ฝ็ป่ฏทๆฑ
include-local-networks = false
# --- ADVANCED ---
# Log Level
loglevel = notify
# ๅฝ้ๅฐ REJECT ็ญ็ฅๆถ่ฟๅ้่ฏฏ้กต
show-error-page-for-reject = true
# Always Real IP Hosts
# ๅฝ Surge VIF ๅค็ DNS ้ฎ้ขๆถ๏ผๆญค้้กน่ฆๆฑ Surge ่ฟๅไธไธช็ๆญฃ็ IP ๅฐๅ๏ผ่ไธๆฏไธไธช Fake IP
# DNS ๆฐๆฎๅ
ๅฐ่ขซ่ฝฌๅๅฐไธๆธธ DNS ๆๅกๅจ
# ไพๅฆ็ฑไบๆธธๆไธปๆบไผไฝฟ็จ STUN ๆๆฏ่ฟ่ก NAT ็ฉฟ้๏ผ้่ฆ่ฟ่กไธไบ้ขๅค็้
็ฝฎๆ่ฝๆญฃๅธธๅทฅไฝ
always-real-ip = link-ip.nextdns.io, *.msftconnecttest.com, *.msftncsi.com, *.srv.nintendo.net, *.stun.playstation.net, xbox.*.microsoft.com, *.xboxlive.com, *.logon.battlenet.com.cn, *.logon.battle.net, stun.l.google.com
# Hijack DNS
# ้ป่ฎคๆ
ๅตไธ๏ผSurge ๅชๅฏนๅ้ๅฐ Surge DNS ๅฐๅ(198.18.0.2)็ DNS ๆฅ่ฏข่ฟๅ Fack IP ๅฐๅใๅ้ๅฐๆ ๅ DNS ็ๆฅ่ฏขๅฐ่ขซ่ฝฌๅ
# ๅฆ Google ็ณปๆบ่ฝ็กฌไปถไบงๅไผๆ ่ง DHCP ้
็ฝฎๅผบ่กไฝฟ็จ 8.8.8.8 ๅ 8.8.4.4๏ผ้่ฆ้
็ฝฎ Surge ๅผบ่กๅซๆๆๅฏไปฅๆญฃๅธธๅทฅไฝ
hijack-dns = 8.8.8.8:53, 8.8.4.4:53
# TCP Force HTTP Hosts
# ไฝฟ Surge ๅฐ TCP ่ฟๆฅ่งไธบ HTTP ่ฏทๆฑใSurge HTTP ๅผๆๅฐๅค็่ฏทๆฑ๏ผๅนถไธๆๆ้ซ็บงๅ่ฝ้ฝๅฐๅฏ็จ๏ผๅฆๆชๅใ้ๅๅ่ๆฌ
# ๆฏๆ้้
็ฌฆ * ๅ ?๏ผ
# ไฝฟ็จๅ็ผ - ๆ้คไธปๆบๅ๏ผ
# ้ป่ฎคๆ
ๅตไธ๏ผๅชๅฏน 80 ็ซฏๅฃ็่ฏทๆฑ่ฟ่กๅค็๏ผไฝฟ็จ example.com:443 ๆๅฎ็ซฏๅฃๆ example.com:0 ่กจ็คบๆๆ็ซฏๅฃ๏ผ๏ผ
# <ip-address> ่กจ็คบๅน้
ๆๆไธปๆบๅไธบ IP ๅฐๅ็่ฟๆฅ๏ผ
# <ipv4-address> ่กจ็คบๅน้
ๆๆไธปๆบๅไธบ IPv4 ๅฐๅ็่ฟๆฅ๏ผ
# <ipv6-address> ่กจ็คบๅน้
ๆๆไธปๆบๅไธบ IPv6 ๅฐๅ็่ฟๆฅใ
force-http-engine-hosts = *.ott.cibntv.net, 123.59.31.1,119.18.193.135, 122.14.246.33, 175.102.178.52, 116.253.24.*, 175.6.26.*, 220.169.153.*
# VIF Excluded Routes
//tun-excluded-routes = 239.255.255.250/32
# VIF Included Routes
//tun-included-routes = 192.168.1.12/32
# ๅฝ Wi-Fi ไธๆฏ้ฆ้็ฝ็ปๆถ SSID ็ป็ญ็ฅไฝฟ็จ้ป่ฎค็ญ็ฅ
use-default-policy-if-wifi-not-primary = false
# ๆงๅถๅฝ UDP ๆต้่ขซๅน้
ๅฐไธไธชไธๆฏๆ UDP ่ฝฌๅ็็ญ็ฅๆถ็่กไธบ
# - DIRECT๏ผๅ้ๅฐ DIRECT ็ญ็ฅ๏ผ้ป่ฎค๏ผ
# - REJECT๏ผๅ้ๅฐ REJECT ็ญ็ฅ
udp-policy-not-supported-behaviour = REJECT
[Proxy]
[Proxy Group]
# > ่ฟๆฏไธไธชfinal่งๅ ๆฒกๆๅฝไธญ็่ฟๆฅไผ่ตฐไปฅไธ็็ญ็ฅ็ป
โ๏ธ ๐ต๐๐จ๐๐๐ = select, ๐ ๐ด๐๐๐๐๐๐๐
, ๐ ๐จ๐๐๐๐๐๐๐๐
# > ่ฟๆฏไฝ ็ๆบๅบ้พๆฅๅกซๅ็ๅฐๆน ๅจpolicy_path=ๅ้ข็ฒ่ดดไฝ ่ชๅทฑๆบๅบ็่ฎข้
้พๆฅ๏ผไธ่ฆๅจ่ฟ้็ฒ่ดด ่ฐข่ฐข๏ผ
๐ ๐จ๐๐๐๐๐๐๐๐ = select, ๐ญ๐ฐ ๐ฏ๐๐๐ ๐ฒ๐๐๐, ๐จ๐ณ ๐ป๐๐๐๐๐, ๐ฏ๐ต ๐ฑ๐๐๐๐, ๐ธ๐ฌ ๐บ๐๐๐๐๐๐๐๐, ๐บ๐ธ ๐ผ๐๐๐๐๐
๐บ๐๐๐๐๐, interval=600, tolerance=50
๐น ๐๐ฅ๐ฅ๐๐๐ซ๐ฏ๐๐ซ = select, policy-path=https://sub.store/download/collection/Surge, update-interval=0
# > ไปฅไธๆฏ็ญ็ฅ็ป ้ๅ
้
็ฝฎๅฅฝsub-storeไฝฟ็จ
โ ๏ธ ๐ญ๐๐๐๐๐๐๐ = fallback, ๐ญ๐ฐ ๐ฏ๐๐๐ ๐ฒ๐๐๐, ๐จ๐ณ ๐ป๐๐๐๐๐, ๐ฏ๐ต ๐ฑ๐๐๐๐, ๐ธ๐ฌ ๐บ๐๐๐๐๐๐๐๐, ๐บ๐ธ ๐ผ๐๐๐๐๐
๐บ๐๐๐๐๐, interval=600
๐ ๐จ๐๐๐๐ = select, ๐ ๐ด๐๐๐๐๐๐๐
, ๐ญ๐ฐ ๐ฏ๐๐๐ ๐ฒ๐๐๐, ๐จ๐ณ ๐ป๐๐๐๐๐, ๐ธ๐ฌ ๐บ๐๐๐๐๐๐๐๐, ๐ฏ๐ต ๐ฑ๐๐๐๐, ๐บ๐ธ ๐ผ๐๐๐๐๐
๐บ๐๐๐๐๐
๐บ ๐๐๐๐๐๐๐๐ = select, ๐ ๐ด๐๐๐๐๐๐๐
, ๐ญ๐ฐ ๐ฏ๐๐๐ ๐ฒ๐๐๐, ๐จ๐ณ ๐ป๐๐๐๐๐
๐ฌ ๐ซ๐๐๐๐๐+ = select, ๐ญ๐ฐ ๐ฏ๐๐๐ ๐ฒ๐๐๐, ๐ธ๐ฌ ๐บ๐๐๐๐๐๐๐๐
๐ฅ ๐ต๐๐๐๐๐๐ = select, ๐ญ๐ฐ ๐ฏ๐๐๐ ๐ฒ๐๐๐, ๐จ๐ณ ๐ป๐๐๐๐๐, ๐ธ๐ฌ ๐บ๐๐๐๐๐๐๐๐, ๐ฏ๐ต ๐ฑ๐๐๐๐, ๐บ๐ธ ๐ผ๐๐๐๐๐
๐บ๐๐๐๐๐
๐ธ๏ธ ๐บ๐๐๐๐
๐๐๐๐ = select, ๐ ๐ด๐๐๐๐๐๐๐
, ๐ ๐จ๐๐๐๐๐๐๐๐, ๐น ๐๐ฅ๐ฅ๐๐๐ซ๐ฏ๐๐ซ
๐ฐ ๐ท๐๐๐ท๐๐ = select, ๐ ๐ด๐๐๐๐๐๐๐
, ๐ญ๐ฐ ๐ฏ๐๐๐ ๐ฒ๐๐๐, ๐บ๐ธ ๐ผ๐๐๐๐๐
๐บ๐๐๐๐๐
โ๏ธ ๐ป๐๐๐๐๐๐๐ = select, ๐ ๐จ๐๐๐๐๐๐๐๐, ๐ธ๐ฌ ๐บ๐๐๐๐๐๐๐๐, ๐บ๐ธ ๐ผ๐๐๐๐๐
๐บ๐๐๐๐๐, ๐ญ๐ฐ ๐ฏ๐๐๐ ๐ฒ๐๐๐, ๐จ๐ณ ๐ป๐๐๐๐๐, ๐ฏ๐ต ๐ฑ๐๐๐๐
๐บ ๐ป๐๐๐ป๐๐ = select, ๐จ๐ณ ๐ป๐๐๐๐๐, ๐ธ๐ฌ ๐บ๐๐๐๐๐๐๐๐, ๐ฏ๐ต ๐ฑ๐๐๐๐, ๐บ๐ธ ๐ผ๐๐๐๐๐
๐บ๐๐๐๐๐
โจ๏ธ ๐ป๐๐๐๐๐๐ = select, ๐ ๐จ๐๐๐๐๐๐๐๐, ๐ญ๐ฐ ๐ฏ๐๐๐ ๐ฒ๐๐๐, ๐จ๐ณ ๐ป๐๐๐๐๐, ๐ธ๐ฌ ๐บ๐๐๐๐๐๐๐๐, ๐ฏ๐ต ๐ฑ๐๐๐๐, ๐บ๐ธ ๐ผ๐๐๐๐๐
๐บ๐๐๐๐๐
๐๏ธ ๐๐๐๐ป๐๐๐ = select, ๐ ๐จ๐๐๐๐๐๐๐๐, ๐ญ๐ฐ ๐ฏ๐๐๐ ๐ฒ๐๐๐, ๐จ๐ณ ๐ป๐๐๐๐๐, ๐ธ๐ฌ ๐บ๐๐๐๐๐๐๐๐, ๐ฏ๐ต ๐ฑ๐๐๐๐, ๐บ๐ธ ๐ผ๐๐๐๐๐
๐บ๐๐๐๐๐
๐งฃ ๐พ๐๐๐๐ = select, ๐ ๐ด๐๐๐๐๐๐๐
, ๐ญ๐ฐ ๐ฏ๐๐๐ ๐ฒ๐๐๐, ๐จ๐ณ ๐ป๐๐๐๐๐, ๐ธ๐ฌ ๐บ๐๐๐๐๐๐๐๐, ๐ฏ๐ต ๐ฑ๐๐๐๐, ๐บ๐ธ ๐ผ๐๐๐๐๐
๐บ๐๐๐๐๐, ๐น ๐๐ฅ๐ฅ๐๐๐ซ๐ฏ๐๐ซ
๐ง ๐ช๐๐๐๐ฎ๐ท๐ป = select, ๐บ๐ธ ๐ผ๐๐๐๐๐
๐บ๐๐๐๐๐, ๐ฏ๐ต ๐ฑ๐๐๐๐, ๐ธ๐ฌ ๐บ๐๐๐๐๐๐๐๐
๐ ๐ป๐๐๐๐ = select, ๐ ๐ด๐๐๐๐๐๐๐
๐ญ๐ฐ ๐ฏ๐๐๐ ๐ฒ๐๐๐ = url-test, policy-path=https://sub.store/download/collection/Surge, update-interval=0, policy-regex-filter=ๆธฏ|๐ญ๐ฐ|้ฆๆธฏ|HK|Hong, interval=600, tolerance=50
๐จ๐ณ ๐ป๐๐๐๐๐ = url-test, policy-path=https://sub.store/download/collection/Surge, update-interval=0, policy-regex-filter=ๅฐ|๐จ๐ณ|ๅฐๆนพ|TW|Tai, interval=600, tolerance=50
๐ฏ๐ต ๐ฑ๐๐๐๐ = url-test, policy-path=https://sub.store/download/collection/Surge, update-interval=0, policy-regex-filter=ๆฅ|๐ฏ๐ต|ๆฅๆฌ|JP|Japan, interval=600, tolerance=50
๐ธ๐ฌ ๐บ๐๐๐๐๐๐๐๐ = url-test, policy-path=https://sub.store/download/collection/Surge, update-interval=0, policy-regex-filter=ๅก|๐ธ๐ฌ|ๆฐๅ ๅก|็ฎๅ|SG|Singapore, interval=600, tolerance=50
๐บ๐ธ ๐ผ๐๐๐๐๐
๐บ๐๐๐๐๐ = url-test, policy-path=https://sub.store/download/collection/Surge, update-interval=0, policy-regex-filter=็พ|๐บ๐ธ|็พๅฝ|US|States|American, interval=600, tolerance=50
๐ ๐๐ซ๐จ๐ฑ๐ฒ = select, ๐ ๐จ๐๐๐๐๐๐๐๐, โ ๏ธ ๐ญ๐๐๐๐๐๐๐, ๐ญ๐ฐ ๐ฏ๐๐๐ ๐ฒ๐๐๐, ๐จ๐ณ ๐ป๐๐๐๐๐, ๐ธ๐ฌ ๐บ๐๐๐๐๐๐๐๐, ๐ฏ๐ต ๐ฑ๐๐๐๐, ๐บ๐ธ ๐ผ๐๐๐๐๐
๐บ๐๐๐๐๐
๐ ๐ด๐๐๐๐๐๐๐
= select, DIRECT
[Rule]
# > Safari ้ฒ่ทณ่ฝฌ
DOMAIN,app-site-association.cdn-apple.com,REJECT
# ban UDP on Youtube
AND,((PROTOCOL,UDP), (DOMAIN-SUFFIX,googlevideo.com)),REJECT-NO-DROP
# ban National Anti-fraud Center
DOMAIN,prpr.96110.cn.com,DIRECT
DOMAIN-KEYWORD,96110,REJECT
DOMAIN-SUFFIX,gjfzpt.cn,REJECT
# > Vercel --> sub-store
RULE-SET,https://raw.githubusercontent.com/getsomecat/GetSomeCats/Surge/rule/substore.list,๐ ๐จ๐๐๐๐๐๐๐๐
# DOMAIN-SUFFIX,vercel.app,๐ ๐จ๐๐๐๐๐๐๐๐
# > Direct(Google|Proxy|Download|Spotify)
RULE-SET,https://raw.githubusercontent.com/bunizao/TutuBetterRules/tutu/RuleList/DOMAlN/Direct.list,DIRECT
# > Mail
DOMAIN-SUFFIX,smtp,DIRECT
URL-REGEX,(Subject|HELO|SMTP),DIRECT
# > Unbreak ๅ็ปญ่งๅไฟฎๆญฃ
RULE-SET,https://raw.githubusercontent.com/DivineEngine/Profiles/master/Surge/Ruleset/Unbreak.list,DIRECT
# > Advertising ๅนฟๅๆฆๆช
RULE-SET,https://raw.githubusercontent.com/DivineEngine/Profiles/master/Surge/Ruleset/Guard/Advertising.list,REJECT-TINYGIF
DOMAIN-SET,https://raw.githubusercontent.com/DivineEngine/Profiles/master/Surge/Ruleset/Guard/AdvertisingPlus.list,REJECT
# > ๐ ๆ็ปๅฝๅฎถๅ่ฏไธญๅฟ่ฏทๆฑ
DOMAIN-SUFFIX,gjfzpt.cn,REJECT
# > Privacy ้็งไฟๆค
# RULE-SET,https://raw.githubusercontent.com/DivineEngine/Profiles/master/Surge/Ruleset/Guard/Privacy.list,REJECT-TINYGIF
# > ๐ Anti-IPCheck ้ปๆญๅคง้app็ipๆฅ่ฏข
# RULE-SET,https://raw.githubusercontent.com/bunizao/TutuBetterRules/tutu/RuleList/DOMAlN/Anti-IPCheck.list,๐ ๐จ๐๐๐๐๐๐๐๐
# > ่งๅไปฌ็party
RULE-SET,https://raw.githubusercontent.com/DivineEngine/Profiles/master/Surge/Ruleset/Guard/Hijacking.list,REJECT-TINYGIF
# > Stream Media
RULE-SET,https://raw.githubusercontent.com/blackmatrix7/ios_rule_script/master/rule/Surge/BiliBili/BiliBili.list,๐บ ๐๐๐๐๐๐๐๐
RULE-SET,https://raw.githubusercontent.com/blackmatrix7/ios_rule_script/master/rule/Surge/Disney/Disney.list,๐ฌ ๐ซ๐๐๐๐๐+
RULE-SET,https://raw.githubusercontent.com/blackmatrix7/ios_rule_script/master/rule/Surge/Netflix/Netflix.list,๐ฅ ๐ต๐๐๐๐๐๐
RULE-SET,https://raw.githubusercontent.com/blackmatrix7/ios_rule_script/master/rule/Surge/AbemaTV/AbemaTV.list,๐ฏ๐ต ๐ฑ๐๐๐๐ // AbemaTV
RULE-SET,https://raw.githubusercontent.com/blackmatrix7/ios_rule_script/master/rule/Surge/Peacock/Peacock.list,๐บ๐ธ ๐ผ๐๐๐๐๐
๐บ๐๐๐๐๐ // Peacock
RULE-SET,https://raw.githubusercontent.com/blackmatrix7/ios_rule_script/master/rule/Surge/HBOUSA/HBOUSA.list,๐บ๐ธ ๐ผ๐๐๐๐๐
๐บ๐๐๐๐๐ // HBO NOW && HBO MAX
RULE-SET,https://raw.githubusercontent.com/blackmatrix7/ios_rule_script/master/rule/Surge/PayPal/PayPal.list,๐ฐ ๐ท๐๐๐ท๐๐
RULE-SET,https://raw.githubusercontent.com/bunizao/TutuBetterRules/tutu/RuleList/DOMAlN/Telegram.list,โ๏ธ ๐ป๐๐๐๐๐๐๐
RULE-SET,https://raw.githubusercontent.com/Semporia/TikTok-Unlock/master/Surge/TikTok.list,๐บ ๐ป๐๐๐ป๐๐
RULE-SET,https://raw.githubusercontent.com/blackmatrix7/ios_rule_script/master/rule/Surge/Speedtest/Speedtest.list,๐ธ๏ธ ๐บ๐๐๐๐
๐๐๐๐
RULE-SET,https://raw.githubusercontent.com/blackmatrix7/ios_rule_script/master/rule/Surge/Twitter/Twitter.list,โจ๏ธ ๐ป๐๐๐๐๐๐
# > OpenAI & ChatGPT
RULE-SET,https://raw.githubusercontent.com/zxfccmm4/Surge/main/rules/OpenAI.list,๐ง ๐ช๐๐๐๐ฎ๐ท๐ป
# > Tesla
RULE-SET,https://raw.githubusercontent.com/blackmatrix7/ios_rule_script/master/rule/Surge/Tesla/Tesla.list,๐ ๐ป๐๐๐๐
# > Youtube & Google Search
RULE-SET,https://raw.githubusercontent.com/blackmatrix7/ios_rule_script/master/rule/Surge/YouTube/YouTube.list,๐๏ธ ๐๐๐๐ป๐๐๐
RULE-SET,https://raw.githubusercontent.com/blackmatrix7/ios_rule_script/master/rule/Surge/GoogleSearch/GoogleSearch.list,๐๏ธ ๐๐๐๐ป๐๐๐
# > Apple
RULE-SET,https://raw.githubusercontent.com/bunizao/TutuBetterRules/tutu/RuleList/DOMAlN/Apple_Direct.list,DIRECT
RULE-SET,https://raw.githubusercontent.com/blackmatrix7/ios_rule_script/master/rule/Clash/AppleNews/AppleNews.list,๐บ๐ธ ๐ผ๐๐๐๐๐
๐บ๐๐๐๐๐
RULE-SET,https://raw.githubusercontent.com/bunizao/TutuBetterRules/tutu/RuleList/DOMAlN/Apple_Proxy.list,DIRECT
# RULE-SET,https://raw.githubusercontent.com/bunizao/TutuBetterRules/tutu/RuleList/DOMAlN/iCloudPrivateRelay.list,๐ ๐๐ซ๐จ๐ฑ๐ฒ // iCloud Private Relay๏ผMacOSไธ็Surge็ฝๅ
ณๆ่ฝ็จ iOSไธ้่ฆ่ฏท็ฆ็จใ
RULE-SET,https://raw.githubusercontent.com/blackmatrix7/ios_rule_script/master/rule/Surge/Apple/Apple.list,๐ ๐จ๐๐๐๐
RULE-SET,https://raw.githubusercontent.com/blackmatrix7/ios_rule_script/master/rule/Surge/Weibo/Weibo.list,๐งฃ ๐พ๐๐๐๐
# > Githubไปฃ็
RULE-SET,https://raw.githubusercontents.com/blackmatrix7/ios_rule_script/master/rule/Surge/GitHub/GitHub.list,๐ ๐จ๐๐๐๐๐๐๐๐
# > WeChat ๆ นๆฎไฝ ่ชๅทฑ็Wechat DC้ๆฉ็ญ็ฅ
# RULE-SET,https://raw.githubusercontent.com/DivineEngine/Profiles/master/Surge/Ruleset/Extra/WeChat.list,๐ธ๐ฌ ๐บ๐๐๐๐๐๐๐๐
# RULE-SET,https://raw.githubusercontent.com/DivineEngine/Profiles/master/Surge/Ruleset/Extra/WeChat.list,๐บ๐ธ ๐ผ๐๐๐๐๐
๐บ๐๐๐๐๐
# > Streaming ๅฝ้
ๆตๅชไฝๆๅก
RULE-SET,https://raw.githubusercontent.com/DivineEngine/Profiles/master/Surge/Ruleset/StreamingMedia/Streaming.list,๐ ๐จ๐๐๐๐๐๐๐๐
# > Global ๅ
จ็ๅ ้
RULE-SET,https://raw.githubusercontent.com/DivineEngine/Profiles/master/Surge/Ruleset/Global.list,๐ ๐จ๐๐๐๐๐๐๐๐
# > China ไธญๅฝ็ด่ฟ
RULE-SET,https://raw.githubusercontent.com/DivineEngine/Profiles/master/Surge/Ruleset/China.list,DIRECT
# > Local Area Network ๅฑๅ็ฝ
RULE-SET,LAN,DIRECT
# > ASN China ๅๆต
# RULE-SET,https://raw.githubusercontent.com/VirgilClyne/GetSomeFries/main/ruleset/ASN.China.list,DIRECT
# > ๅ
ๅบ่งๅ
FINAL,โ๏ธ ๐ต๐๐จ๐๐๐,dns-failed
# ๅบ็จไปฃ็
# pikpak
DOMAIN-SUFFIX,mypikpak.com,๐บ๐ธ ๐ผ๐๐๐๐๐
๐บ๐๐๐๐๐ // Added for: api-drive.mypikpak.com:443
# PayPal
RULE-SET,https://raw.githubusercontent.com/DivineEngine/Profiles/master/Surge/Ruleset/Extra/PayPal.list,๐บ๐ธ ๐ผ๐๐๐๐๐
๐บ๐๐๐๐๐
# Roit ๆธธๆๅๆต่งๅ
RULE-SET,https://raw.githubusercontent.com/blackmatrix7/ios_rule_script/master/rule/Surge/Riot/Riot.list,๐บ๐ธ ๐ผ๐๐๐๐๐
๐บ๐๐๐๐๐
[Host]
*.taobao.com = server:223.5.5.5
*.tmall.com = server:223.5.5.5
*.alipay.com = server:223.5.5.5
*.alicdn.com = server:223.5.5.5
*.aliyun.com = server:223.5.5.5
*.jd.com = server:119.28.28.28
*.qq.com = server:119.28.28.28
*.tencent.com = server:119.28.28.28
*.weixin.com = server:119.28.28.28
*.bilibili.com = server:119.29.29.29
hdslb.com = server:119.29.29.29
*.163.com = server:119.29.29.29
*.126.com = server:119.29.29.29
*.126.net = server:119.29.29.29
*.127.net = server:119.29.29.29
*.netease.com = server:119.29.29.29
*.mi.com = server:119.29.29.29
*.xiaomi.com = server:119.29.29.29
*testflight.apple.com = server:8.8.4.4
# Firebase Cloud Messaging
mtalk.google.com = 108.177.125.188
# Google Dl
dl.google.com = server:119.29.29.29
dl.l.google.com = server:119.29.29.29
update.googleapis.com = server:119.29.29.29
# Router Admin Panel
amplifi.lan = server:syslib // Ubiquiti Amplifi Router
router.synology.com = server:syslib // Synology Router
sila.razer.com = server:syslib // Razer Sila Router
router.asus.com = server:syslib // Asus Router
routerlogin.net = server:syslib // Netgear Router
orbilogin.com = server:syslib // Netgear Obri Router
www.LinksysSmartWiFi.com = server:syslib // Linksys Router
LinksysSmartWiFi.com = server:syslib // Linksys Router
myrouter.local = server:syslib // Linksys Router
www.miwifi.com = server:syslib // Xiaomi Mi WiFi Router
miwifi.com = server:syslib // Xiaomi Mi WiFi Router
mediarouter.home = server:syslib // Huawei Router
tplogin.cn = server:syslib // TP-Link Router
tplinklogin.net = server:syslib // TP-Link Router
melogin.cn = server:syslib // MERCURY Router
falogin.cn = server:syslib // FAST Router
# CUSTOM HOST
# ่ฏฅๆฎตๅฎไน้ๅฏน HTTP ่ฏทๆฑ็ URL ้ๅฎๅ่งๅ
# ๆไธค็ง้ๅฎๅๆนๅผ: "header" ๅ "302"
#
# Header ๆจกๅผ
# Surge ไผไฟฎๆนๅๅบ็ http header๏ผๅฟ
่ฆๆถ่ฟไผไฟฎๆน Host ๅญๆฎตใๅฎขๆท็ซฏๅฐ
# ๆ็ฅไธๅฐ่ฟไธช้ๅฎๅ่ฟ็จ. ไธๆฏๆ้ๅฎๅๅฐไธไธช HTTPS ็ๅฐๅใ
#
# 302 ๆจกๅผ
# Surge ็ดๆฅ็ฎๅ็่ฟๅไธไธช 302 ้ๅฎๅๅๅบใ
[URL Rewrite]
# Redirect Google Search Service
^https?:\/\/(www.)?(g|google)\.cn https://www.google.com 302
# Redirect Google Maps Service
^https?:\/\/(ditu|maps).google\.cn https://maps.google.com 302
# Redirect HTTP to HTTPS
^https?:\/\/(www.)?taobao\.com\/ https://taobao.com/ 302
^https?:\/\/(www.)?jd\.com\/ https://www.jd.com/ 302
^https?:\/\/(www.)?mi\.com\/ https://www.mi.com/ 302
^https?:\/\/you\.163\.com\/ https://you.163.com/ 302
^https?:\/\/(www.)?suning\.com\/ https://suning.com/ 302
^https?:\/\/(www.)?yhd\.com\/ https://yhd.com/ 302
# AbeamTV
^https?:\/\/api\.abema\.io\/v\d\/ip\/check - reject
# CUSTOM URL
[Header Rewrite]
^https?:\/\/.*\.zhihu\.com\/(question|topic) header-replace User-Agent "osee2unifiedRelease/4432 osee2unifiedReleaseVersion/7.8.0 Mozilla/5.0 (iPhone; CPU iPhone OS 14_4 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mo bile/15E148"
# ่ฏฅๆฎตไป
ๅจ iOS ็ๆฌไธ็ๆใ
# ไฝ ๅฏไปฅไธบๆไบ็นๅฎ็ WiFi ็ฝ็ป่ฎพ็ฝฎ่ฎพ็ฝฎๅๆฐ
# ๅๆฐ:
# suspend: "true" ๆ "false"
# ๅจ่ฏฅ็ฝ็ปไธ Surge ๅฐๆๅๅทฅไฝใ ่ฏทๆณจๆ๏ผๅฆๆไฝ ๅจ่ฏฅ็ฝ็ปไธ็ดๆฅๅฏๅจ Surge๏ผ้ฃไน
# Surge ไพ็ถไผๅทฅไฝใๅชๆๅฝไปๅ
ถไป็ฝ็ปๅๆขๅฐ่ฏฅ็ฝ็ปๆถ๏ผSurge ๆไผๆๅใ
#
# SSID Setting ๆฎต่กจ่พพๅผ๏ผ้็จ SUBNET ่งๅ๏ผ
# ๅฏไฝฟ็จ MCCMNC:100-200 ๅน้
็นๅฎๆฐๆฎ็ฝ็ป
# ๅฏไฝฟ็จ SSID:value ็นๅฎๅน้
SSID๏ผๆฏๆ้้
็ฌฆ
# ๅฏไฝฟ็จ BSSID:value ็นๅฎๅน้
BSSID๏ผๆฏๆ้้
็ฌฆ
# ๅฏไฝฟ็จ ROUTER:value ็นๅฎๅน้
่ทฏ็ฑๅฐๅ
# ๅฏไฝฟ็จ TYPE:WIFI ๅน้
ๆๆ WiFi ็ฝ็ป
# ๅฏไฝฟ็จ TYPE:CELLULAR ๅน้
ๆๆๆฐๆฎ็ฝ็ป
# ๅฏไฝฟ็จ TYPE:WIRED ๅน้
ๆๆๆ็บฟ็ฝ็ป๏ผiOS ไธๆฏๆ USB ็ฝ็ป้้
# ๅๆฐ cellular-fallback ๅฏๅ็ฌๆงๅถไธไบ Wi-Fi ไธ็ all-hybrid ๅ wifi-assist ่กไธบ
# cellular-fallback=default ไฝฟ็จ [General] ไธญ็ all-hybrid ๅ wifi-assist ้
็ฝฎ/
# cellular-fallback=off ๅ
ณ้ญ all-hybrid ๅ wifi-assist
# cellular-fallback=hybrid ๅผๅฏ all-hybrid
# cellular-fallback=wifi-assist ๅผๅฏ wifi-assist
# ๅฆๆ ๅ็ผๅๆ็
งๆง็่งๅๅน้
SSIDใBSSIDใ่ทฏ็ฑๅฐๅ
# SSID Setting ๆฎตๅ
ๅฎนไปไธ่ณไธไพๆฌกๅน้
๏ผๅน้
ๅฐ็ฌฌไธไธช็ปๆๅ็ซๅป็ปๆญข
#
# ไธญๅฝ็จๆท่ฅไฝฟ็จ TFO ๅปบ่ฎฎๅผบๅถๅ
ณ้ญๆฐๆฎ็ฝ็ปไธ็ TFO๏ผ้ฟๅ
ไบง็้ฎ้ข๏ผ็ถๅๅจๅทฒๆต่ฏ่ฟ็็ฝ็ปไธๅผบๅถๅผๅฏใๅชๆ่ฟๆ ท้
็ฝฎๅๆนๅฏๅ
ๅไบซๅ TFO ็ไผๅฟใ
[SSID Setting]
# Temporarily Suspend
"SSID Here" suspend=true
# TCP Fast Open
"My Home" tfo-behaviour=force-enabled
TYPE:CELLULAR tfo-behaviour=force-disabled
[MITM]
# ่ทณ่ฟๆๅก็ซฏ่ฏไนฆ้ช่ฏ
skip-server-cert-verify = true
# MITM over HTTP/2
//MITM over HTTP/2๏ผไฝฟ็จ HTTP/2 ๅ่ฎฎ่ฟ่ก MITM ่งฃๅฏ๏ผๅฏๅจ้ซๅนถๅไธไผๅๆง่ฝ
h2 = true
# ไธปๆบๅ
//Surge ไป
ไผ่งฃๅฏ่ฟ้ๆๅฎ็ไธปๆบๅ็่ฏทๆฑ๏ผios ็ณป็ปๅๆไบๅบ็จๆไธฅๆ ผ็ๅฎๅ
จ็ญ็ฅ๏ผไป
ไฟกไปปๆไบ็นๅฎ็่ฏไนฆ๏ผๅฏน่ฟไบๅๅๅฏๅจ่งฃๅฏๅฏ่ฝๅฏผ่ด้ฎ้ข๏ผๅฆ *apple.com, *icloud.com.
# ๅฏไฝฟ็จ้้
็ฌฆ* ๅ๏ผ
# ๅฏไฝฟ็จๅ็ผ-ๅฐ็นๅฎไธปๆบๅๆ้ค
# ้ป่ฎคไป
่งฃๅฏๅๅพ 443 ็ซฏๅฃ็่ฏทๆฑ
# ๅฏไฝฟ็จๅ็ผ๏ผport ่งฃๅฏ็นๅฎ็ซฏๅฃ
# ๅฏไฝฟ็จๅ็ผ๏ผ0่งฃๅฏๆๆ็ซฏๅฃ
tcp-connection = true
hostname = www.google.cn, api.abema.io, *.zhihu.com, -CUSTOMMitM, sub.store
[Panel]
flushDNS = script-name=flushDNS,update-interval=-1
[Script]
# Flush DNS, show the DNS delay and server.
flushDNS = type=generic,timeout=10,script-path=https://raw.githubusercontent.com/zZPiglet/Task/master/asset/flushDNS.js,argument=icon=wand.and.stars.inverse&color=#3d3d5b