本来想做这个的。。但忽然想起UDP好像在ISP那边不太受待见,就作罢了。。先记下配置文件吧。。。
其实是全程的quic。。客户端-中转-国外全是quic。。。感觉可以试下中转前面
搞h2+tls+caddy什么的。。以后再说吧。
quic里面的header,key跟security对得上就好。。
不过用了搬瓦工以后感觉。。或许能留着吧。。大概
国外的:
{ "log": { "loglevel": "warning", "error": "/var/log/v2ray/error.log", "access": "/var/log/v2ray/access.log" }, "dns": {}, "stats": {}, "inbounds": [ { "settings": { "clients": [ { "alterId": 32, "id": "(对中转服的user id)" } ] }, "protocol": "vmess", "streamSettings": { "security": "tls", "quicSettings": { "security": "aes-128-gcm", "header": { "type": "srtp" }, "key": "(对中转服的quic的key)" }, "tlsSettings": { "certificates": [ { "certificateFile": "/etc/v2ray/v2ray.crt", "keyFile": "/etc/v2ray/v2ray.key" } ] }, "network": "quic" }, "port": (对中转服的端口), "tag": "in-0" } ], "outbounds": [ { "tag": "direct", "protocol": "freedom", "settings": {} }, { "tag": "blocked", "protocol": "blackhole", "settings": {} } ], "routing": { "domainStrategy": "AsIs", "rules": [ { "outboundTag": "blocked", "ip": [ "geoip:private" ], "type": "field" } ] }, "policy": {}, "reverse": {}, "transport": {} }
国内的:
{ "log": { "loglevel": "warning", "error": "/var/log/v2ray/error.log", "access": "/var/log/v2ray/access.log" }, "dns": {}, "stats": {}, "inbounds": [ { "settings": { "clients": [ { "alterId": 32, "id": "(对客户端user id)" } ] }, "protocol": "vmess", "streamSettings": { "security": "tls", "quicSettings": { "security": "aes-128-gcm", "header": { "type": "srtp" }, "key": "(对客户端的quic的key)" }, "tlsSettings": { "certificates": [ { "certificateFile": "/etc/v2ray/v2ray.crt", "keyFile": "/etc/v2ray/v2ray.key" } ] }, "network": "quic" }, "port": (对客户端的端口), "tag": "in-0" } ], "outbounds": [ { "sendThrough": "0.0.0.0", "protocol": "vmess", "settings": { "vnext": [ { "address": "(落地服务器的域名)", "port": (对落地服务器的端口), "users": [ { "id": "(对落地服务器的user id)", "alterId": 32, "security": "auto", "level": 0 } ] } ]}, "tag": "out-0", "streamSettings": { "security": "tls", "quicSettings": { "security": "aes-128-gcm", "header": { "type": "srtp" }, "key": "(对落地服务器的quic的key)" }, "tlsSettings": { "allowInsecure": false, "alpn": [ "http/1.1" ], "serverName": "(落地服务器的域名)", "allowInsecureCiphers": false }, "network": "quic"}, "mux": {"enabled": true, "concurrency": 8 } } ], "routing": { "domainStrategy": "AsIs", "rules": [ { "outboundTag": "blocked", "ip": [ "geoip:private" ], "type": "field" } ] }, "policy": {}, "reverse": {}, "transport": {} }
ws tls就行了。其他非标端口或非主流协议或伪装全都是特征