旁路由 youtube 打不开

OpenClash 调试日志

生成时间: 2022-02-05 05:26:51
插件版本: v0.44.16-beta
隐私提示: 上传此日志前请注意检查、屏蔽公网IP、节点、密码等相关敏感信息


#===================== 系统信息 =====================#

主机型号: PAIQ EC3-BT19D4L
固件版本: OpenWrt 21.02.1 r16325-88151b8303
LuCI版本: git-20.074.84698-ead5e81
内核版本: 5.4.154
处理器架构: x86_64

#此项有值时,如不使用IPv6,建议到网络-接口-lan的设置中禁用IPV6的DHCP
IPV6-DHCP: 

#此项结果应仅有配置文件的DNS监听地址
Dnsmasq转发设置: 127.0.0.1#7874

#===================== 依赖检查 =====================#

dnsmasq-full: 已安装
coreutils: 已安装
coreutils-nohup: 已安装
bash: 已安装
curl: 已安装
ca-certificates: 已安装
ipset: 已安装
ip-full: 已安装
iptables-mod-tproxy: 已安装
kmod-ipt-tproxy: 已安装
iptables-mod-extra: 已安装
kmod-ipt-extra: 已安装
libcap: 已安装
libcap-bin: 已安装
ruby: 已安装
ruby-yaml: 已安装
ruby-psych: 已安装
ruby-pstore: 已安装
ruby-dbm: 已安装
kmod-tun(TUN模式): 已安装
luci-compat(Luci-19.07): 已安装

#===================== 内核检查 =====================#

运行状态: 运行中
进程pid: 5653
运行权限: 5653: cap_dac_override,cap_net_bind_service,cap_net_admin,cap_net_raw,cap_sys_resource=eip
运行用户: nobody
已选择的架构: linux-amd64

#下方无法显示内核版本号时请确认您的内核版本是否正确或者有无权限
Tun内核版本: 2022.01.27
Tun内核文件: 存在
Tun内核运行权限: 正常

Dev内核版本: v1.9.0-7-gb1a639f
Dev内核文件: 存在
Dev内核运行权限: 正常

#===================== 插件设置 =====================#

当前配置文件: /etc/openclash/config/JMS_ Sub.yaml
启动配置文件: /etc/openclash/JMS_ Sub.yaml
运行模式: redir-host
默认代理模式: rule
UDP流量转发(tproxy): 启用
DNS劫持: 启用
自定义DNS: 停用
IPV6代理: 停用
IPV6-DNS解析: 停用
禁用Dnsmasq缓存: 启用
自定义规则: 停用
仅允许内网: 停用
仅代理命中规则流量: 停用
仅允许常用端口流量: 停用
绕过中国大陆IP: 启用
DNS远程解析: 启用

#启动异常时建议关闭此项后重试
混合节点: 停用
保留配置: 停用

#启动异常时建议关闭此项后重试
第三方规则: 停用

#===================== 配置文件 =====================#

port: 7890
socks-port: 7891
allow-lan: true
mode: rule
log-level: silent
external-controller: 0.0.0.0:9090
proxy-groups:
- name: "\U0001F680 节点选择"
  type: select
  proxies:
  - "♻️ 自动选择"
  - "\U0001F3AF 全球直连"
  - :29029
  - :29029
  - :29029
  - :29029
  - :29029
  - :29029
- name: "♻️ 自动选择"
  type: url-test
  url: http://www.gstatic.com/generate_204
  interval: 300
  proxies:
  - :29029
  - :29029
  - :29029
  - :29029
  - :29029
  - :29029
- name: "\U0001F30D 国外媒体"
  type: select
  proxies:
  - "\U0001F680 节点选择"
  - "♻️ 自动选择"
  - "\U0001F3AF 全球直连"
  - :29029
  - :29029
  - :29029
  - :29029
  - :29029
  - :29029
- name: "\U0001F4F2 电报信息"
  type: select
  proxies:
  - "\U0001F680 节点选择"
  - "\U0001F3AF 全球直连"
  - :29029
  - :29029
  - :29029
  - :29029
  - :29029
  - :29029
- name: Ⓜ️ 微软服务
  type: select
  proxies:
  - "\U0001F3AF 全球直连"
  - "\U0001F680 节点选择"
  - :29029
  - :29029
  - :29029
  - :29029
  - :29029
  - :29029
- name: "\U0001F34E 苹果服务"
  type: select
  proxies:
  - "\U0001F680 节点选择"
  - "\U0001F3AF 全球直连"
  - :29029
  - :29029
  - :29029
  - :29029
  - :29029
  - :29029
- name: "\U0001F3AF 全球直连"
  type: select
  proxies:
  - DIRECT
- name: "\U0001F6D1 全球拦截"
  type: select
  proxies:
  - REJECT
  - DIRECT
- name: "⛔ 应用拦截"
  type: select
  proxies:
  - REJECT
  - DIRECT
- name: "\U0001F41F 漏网之鱼"
  type: select
  proxies:
  - "\U0001F680 节点选择"
  - "\U0001F3AF 全球直连"
  - "♻️ 自动选择"
  - :29029
  - :29029
  - :29029
  - :29029
  - :29029
  - :29029
rules:
- IP-CIDR,198.18.0.1/16,REJECT,no-resolve
- "RULE-SET,LocalAreaNetwork_domain,\U0001F3AF 全球直连"
- "RULE-SET,LocalAreaNetwork_ipcidr,\U0001F3AF 全球直连"
- "DOMAIN-KEYWORD,admarvel,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,admaster,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,adsage,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,adsensor,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,adservice,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,adsmogo,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,adsrvmedia,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,adsserving,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,adsystem,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,adwords,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,analysis,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,applovin,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,appsflyer,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,domob,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,duomeng,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,dwtrack,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,guanggao,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,omgmta,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,omniture,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,openx,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,partnerad,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,pingfore,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,socdm,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,supersonicads,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,usage,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,wlmonitor,\U0001F6D1 全球拦截"
- "DOMAIN-KEYWORD,zjtoolbar,\U0001F6D1 全球拦截"
- "RULE-SET,BanAD_domain,\U0001F6D1 全球拦截"
- DOMAIN-KEYWORD,omgmtaw,⛔ 应用拦截
- RULE-SET,BanProgramAD_domain,⛔ 应用拦截
- RULE-SET,BanProgramAD_ipcidr,⛔ 应用拦截
- "DOMAIN-KEYWORD,-cn,\U0001F3AF 全球直连"
- "DOMAIN-KEYWORD,360buy,\U0001F3AF 全球直连"
- "DOMAIN-KEYWORD,alicdn,\U0001F3AF 全球直连"
- "DOMAIN-KEYWORD,alimama,\U0001F3AF 全球直连"
- "DOMAIN-KEYWORD,alipay,\U0001F3AF 全球直连"
- "DOMAIN-KEYWORD,appzapp,\U0001F3AF 全球直连"
- "DOMAIN-KEYWORD,baidupcs,\U0001F3AF 全球直连"
- "DOMAIN-KEYWORD,bilibili,\U0001F3AF 全球直连"
- "DOMAIN-KEYWORD,ccgslb,\U0001F3AF 全球直连"
- "DOMAIN-KEYWORD,chinacache,\U0001F3AF 全球直连"
- "DOMAIN-KEYWORD,duobao,\U0001F3AF 全球直连"
- "DOMAIN-KEYWORD,duolingo,\U0001F3AF 全球直连"
- "DOMAIN-KEYWORD,jdpay,\U0001F3AF 全球直连"
- "DOMAIN-KEYWORD,moke,\U0001F3AF 全球直连"
- "DOMAIN-KEYWORD,qhimg,\U0001F3AF 全球直连"
- "DOMAIN-KEYWORD,vpimg,\U0001F3AF 全球直连"
- "DOMAIN-KEYWORD,xiami,\U0001F3AF 全球直连"
- "DOMAIN-KEYWORD,xiaomi,\U0001F3AF 全球直连"
- "DOMAIN-KEYWORD,announce,\U0001F3AF 全球直连"
- "DOMAIN-KEYWORD,torrent,\U0001F3AF 全球直连"
- "DOMAIN-KEYWORD,tracker,\U0001F3AF 全球直连"
- "RULE-SET,ChinaDomain_domain,\U0001F3AF 全球直连"
- "RULE-SET,ChinaDomain_ipcidr,\U0001F3AF 全球直连"
- DOMAIN-KEYWORD,1drv,Ⓜ️ 微软服务
- DOMAIN-KEYWORD,microsoft,Ⓜ️ 微软服务
- RULE-SET,Microsoft_domain,Ⓜ️ 微软服务
- "RULE-SET,Apple_domain,\U0001F34E 苹果服务"
- "RULE-SET,Apple_ipcidr,\U0001F34E 苹果服务"
- "DOMAIN-KEYWORD,1e100,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,abema,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,appledaily,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,avtb,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,beetalk,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,blogspot,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,dropbox,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,facebook,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,fbcdn,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,github,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,gmail,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,google,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,instagram,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,porn,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,sci-hub,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,spotify,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,telegram,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,twitter,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,whatsapp,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,youtube,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,uk-live,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,1drv,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,onedrive,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,skydrive,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,porn,\U0001F680 节点选择"
- "DOMAIN-KEYWORD,ttvnw,\U0001F680 节点选择"
- "RULE-SET,ProxyLite_domain,\U0001F680 节点选择"
- "RULE-SET,ProxyLite_ipcidr,\U0001F680 节点选择"
- "RULE-SET,ChinaCompanyIp_ipcidr,\U0001F3AF 全球直连"
- "GEOIP,CN,\U0001F3AF 全球直连"
- "MATCH,\U0001F41F 漏网之鱼"
rule-providers:
  LocalAreaNetwork_domain:
    type: http
    behavior: domain
    url: https://api.dler.io/getruleset?type=3&url=aHR0cHM6Ly9yYXcuZ2l0aHVidXNlcmNvbnRlbnQuY29tL0FDTDRTU1IvQUNMNFNTUi9tYXN0ZXIvQ2xhc2gvTG9jYWxBcmVhTmV0d29yay5saXN0
    path: "./rule_provider/rule-provider_LocalAreaNetwork_domain.yaml"
    interval: 86400
  LocalAreaNetwork_ipcidr:
    type: http
    behavior: ipcidr
    url: https://api.dler.io/getruleset?type=4&url=aHR0cHM6Ly9yYXcuZ2l0aHVidXNlcmNvbnRlbnQuY29tL0FDTDRTU1IvQUNMNFNTUi9tYXN0ZXIvQ2xhc2gvTG9jYWxBcmVhTmV0d29yay5saXN0
    path: "./rule_provider/rule-provider_LocalAreaNetwork_ipcidr.yaml"
    interval: 86400
  BanAD_domain:
    type: http
    behavior: domain
    url: https://api.dler.io/getruleset?type=3&url=aHR0cHM6Ly9yYXcuZ2l0aHVidXNlcmNvbnRlbnQuY29tL0FDTDRTU1IvQUNMNFNTUi9tYXN0ZXIvQ2xhc2gvQmFuQUQubGlzdA
    path: "./rule_provider/rule-provider_BanAD_domain.yaml"
    interval: 86400
  BanProgramAD_domain:
    type: http
    behavior: domain
    url: https://api.dler.io/getruleset?type=3&url=aHR0cHM6Ly9yYXcuZ2l0aHVidXNlcmNvbnRlbnQuY29tL0FDTDRTU1IvQUNMNFNTUi9tYXN0ZXIvQ2xhc2gvQmFuUHJvZ3JhbUFELmxpc3Q
    path: "./rule_provider/rule-provider_BanProgramAD_domain.yaml"
    interval: 86400
  BanProgramAD_ipcidr:
    type: http
    behavior: ipcidr
    url: https://api.dler.io/getruleset?type=4&url=aHR0cHM6Ly9yYXcuZ2l0aHVidXNlcmNvbnRlbnQuY29tL0FDTDRTU1IvQUNMNFNTUi9tYXN0ZXIvQ2xhc2gvQmFuUHJvZ3JhbUFELmxpc3Q
    path: "./rule_provider/rule-provider_BanProgramAD_ipcidr.yaml"
    interval: 86400
  ChinaDomain_domain:
    type: http
    behavior: domain
    url: https://api.dler.io/getruleset?type=3&url=aHR0cHM6Ly9yYXcuZ2l0aHVidXNlcmNvbnRlbnQuY29tL0FDTDRTU1IvQUNMNFNTUi9tYXN0ZXIvQ2xhc2gvQ2hpbmFEb21haW4ubGlzdA
    path: "./rule_provider/rule-provider_ChinaDomain_domain.yaml"
    interval: 86400
  ChinaDomain_ipcidr:
    type: http
    behavior: ipcidr
    url: https://api.dler.io/getruleset?type=4&url=aHR0cHM6Ly9yYXcuZ2l0aHVidXNlcmNvbnRlbnQuY29tL0FDTDRTU1IvQUNMNFNTUi9tYXN0ZXIvQ2xhc2gvQ2hpbmFEb21haW4ubGlzdA
    path: "./rule_provider/rule-provider_ChinaDomain_ipcidr.yaml"
    interval: 86400
  Microsoft_domain:
    type: http
    behavior: domain
    url: https://api.dler.io/getruleset?type=3&url=aHR0cHM6Ly9yYXcuZ2l0aHVidXNlcmNvbnRlbnQuY29tL0FDTDRTU1IvQUNMNFNTUi9tYXN0ZXIvQ2xhc2gvTWljcm9zb2Z0Lmxpc3Q
    path: "./rule_provider/rule-provider_Microsoft_domain.yaml"
    interval: 86400
  Apple_domain:
    type: http
    behavior: domain
    url: https://api.dler.io/getruleset?type=3&url=aHR0cHM6Ly9yYXcuZ2l0aHVidXNlcmNvbnRlbnQuY29tL0FDTDRTU1IvQUNMNFNTUi9tYXN0ZXIvQ2xhc2gvQXBwbGUubGlzdA
    path: "./rule_provider/rule-provider_Apple_domain.yaml"
    interval: 86400
  Apple_ipcidr:
    type: http
    behavior: ipcidr
    url: https://api.dler.io/getruleset?type=4&url=aHR0cHM6Ly9yYXcuZ2l0aHVidXNlcmNvbnRlbnQuY29tL0FDTDRTU1IvQUNMNFNTUi9tYXN0ZXIvQ2xhc2gvQXBwbGUubGlzdA
    path: "./rule_provider/rule-provider_Apple_ipcidr.yaml"
    interval: 86400
  ProxyLite_domain:
    type: http
    behavior: domain
    url: https://api.dler.io/getruleset?type=3&url=aHR0cHM6Ly9yYXcuZ2l0aHVidXNlcmNvbnRlbnQuY29tL0FDTDRTU1IvQUNMNFNTUi9tYXN0ZXIvQ2xhc2gvUHJveHlMaXRlLmxpc3Q
    path: "./rule_provider/rule-provider_ProxyLite_domain.yaml"
    interval: 86400
  ProxyLite_ipcidr:
    type: http
    behavior: ipcidr
    url: https://api.dler.io/getruleset?type=4&url=aHR0cHM6Ly9yYXcuZ2l0aHVidXNlcmNvbnRlbnQuY29tL0FDTDRTU1IvQUNMNFNTUi9tYXN0ZXIvQ2xhc2gvUHJveHlMaXRlLmxpc3Q
    path: "./rule_provider/rule-provider_ProxyLite_ipcidr.yaml"
    interval: 86400
  ChinaCompanyIp_ipcidr:
    type: http
    behavior: ipcidr
    url: https://api.dler.io/getruleset?type=4&url=aHR0cHM6Ly9yYXcuZ2l0aHVidXNlcmNvbnRlbnQuY29tL0FDTDRTU1IvQUNMNFNTUi9tYXN0ZXIvQ2xhc2gvQ2hpbmFDb21wYW55SXAubGlzdA
    path: "./rule_provider/rule-provider_ChinaCompanyIp_ipcidr.yaml"
    interval: 86400
dns:
  nameserver:
  - 192.168.31.1
  - 114.114.114.114
  - 119.29.29.29
  - https://doh.pub/dns-query
  - https://dns.alidns.com/dns-query
  fallback:
  - https://dns.cloudflare.com/dns-query
  - "[2001:da8::666]:53"
  - https://public.dns.iij.jp/dns-query
  - https://jp.tiar.app/dns-query
  - https://jp.tiarap.org/dns-query
  - tls://dot.tiar.app
  enable: true
  ipv6: false
  enhanced-mode: fake-ip
  fake-ip-range: 198.18.0.1/16
  listen: 127.0.0.1:7874
  fake-ip-filter:
  - "+.*"
  default-nameserver:
  - 192.168.31.1
  - 114.114.114.114
  - 119.29.29.29
  - "[2001:da8::666]:53"
redir-port: 7892
tproxy-port: 7895
mixed-port: 7893
bind-address: "*"
external-ui: "/usr/share/openclash/dashboard"
ipv6: false
profile:
  store-selected: true
  store-fake-ip: true

#===================== 防火墙设置 =====================#

#IPv4 NAT chain

# Generated by iptables-save v1.8.7 on Sat Feb  5 05:26:53 2022
*nat
:PREROUTING ACCEPT [2959:1265738]
:INPUT ACCEPT [36:1880]
:OUTPUT ACCEPT [73:4370]
:POSTROUTING ACCEPT [12:708]
:openclash - [0:0]
:openclash_output - [0:0]
:postrouting_lan_rule - [0:0]
:postrouting_rule - [0:0]
:postrouting_wan_rule - [0:0]
:prerouting_lan_rule - [0:0]
:prerouting_rule - [0:0]
:prerouting_wan_rule - [0:0]
:zone_lan_postrouting - [0:0]
:zone_lan_prerouting - [0:0]
:zone_wan_postrouting - [0:0]
:zone_wan_prerouting - [0:0]
-A PREROUTING -d 8.8.4.4/32 -p tcp -m comment --comment "OpenClash Google DNS Hijack" -m tcp --dport 53 -j REDIRECT --to-ports 7892
-A PREROUTING -d 8.8.8.8/32 -p tcp -m comment --comment "OpenClash Google DNS Hijack" -m tcp --dport 53 -j REDIRECT --to-ports 7892
-A PREROUTING -p tcp -m tcp --dport 53 -m comment --comment "DNS Hijack" -j REDIRECT --to-ports 53
-A PREROUTING -p udp -m udp --dport 53 -m comment --comment "DNS Hijack" -j REDIRECT --to-ports 53
-A PREROUTING -m comment --comment "!fw3: Custom prerouting rule chain" -j prerouting_rule
-A PREROUTING -i br-lan -m comment --comment "!fw3" -j zone_lan_prerouting
-A PREROUTING -i eth2 -m comment --comment "!fw3" -j zone_wan_prerouting
-A PREROUTING -p tcp -j openclash
-A OUTPUT -j openclash_output
-A POSTROUTING -m comment --comment "!fw3: Custom postrouting rule chain" -j postrouting_rule
-A POSTROUTING -o br-lan -m comment --comment "!fw3" -j zone_lan_postrouting
-A POSTROUTING -o eth2 -m comment --comment "!fw3" -j zone_wan_postrouting
-A openclash -m set --match-set localnetwork dst -j RETURN
-A openclash -m set --match-set china_ip_route dst -j RETURN
-A openclash -p tcp -j REDIRECT --to-ports 7892
-A openclash_output -m set --match-set localnetwork dst -j RETURN
-A openclash_output -m owner ! --uid-owner 65534 -m set --match-set china_ip_route dst -j RETURN
-A openclash_output -p tcp -m owner ! --uid-owner 65534 -j REDIRECT --to-ports 7892
-A zone_lan_postrouting -m comment --comment "!fw3: Custom lan postrouting rule chain" -j postrouting_lan_rule
-A zone_lan_postrouting -m comment --comment "!fw3" -j MASQUERADE
-A zone_lan_prerouting -m comment --comment "!fw3: Custom lan prerouting rule chain" -j prerouting_lan_rule
-A zone_wan_postrouting -m comment --comment "!fw3: Custom wan postrouting rule chain" -j postrouting_wan_rule
-A zone_wan_postrouting -m comment --comment "!fw3" -j MASQUERADE
-A zone_wan_prerouting -m comment --comment "!fw3: Custom wan prerouting rule chain" -j prerouting_wan_rule
COMMIT
# Completed on Sat Feb  5 05:26:53 2022

#IPv4 Mangle chain

# Generated by iptables-save v1.8.7 on Sat Feb  5 05:26:53 2022
*mangle
:PREROUTING ACCEPT [5451:2379188]
:INPUT ACCEPT [2275:1075750]
:FORWARD ACCEPT [257:55869]
:OUTPUT ACCEPT [2359:1321306]
:POSTROUTING ACCEPT [2616:1377175]
:openclash - [0:0]
-A PREROUTING -p udp -j openclash
-A FORWARD -o eth2 -p tcp -m tcp --tcp-flags SYN,RST SYN -m comment --comment "!fw3: Zone wan MTU fixing" -j TCPMSS --clamp-mss-to-pmtu
-A FORWARD -i eth2 -p tcp -m tcp --tcp-flags SYN,RST SYN -m comment --comment "!fw3: Zone wan MTU fixing" -j TCPMSS --clamp-mss-to-pmtu
-A openclash -p udp -m udp --sport 500 -j RETURN
-A openclash -p udp -m udp --sport 68 -j RETURN
-A openclash -m set --match-set localnetwork dst -j RETURN
-A openclash -m set --match-set china_ip_route dst -j RETURN
-A openclash -p udp -m udp --dport 53 -j RETURN
-A openclash -p udp -j TPROXY --on-port 7892 --on-ip 0.0.0.0 --tproxy-mark 0x162/0xffffffff
COMMIT
# Completed on Sat Feb  5 05:26:53 2022

#IPv6 NAT chain

# Generated by ip6tables-save v1.8.7 on Sat Feb  5 05:26:53 2022
*nat
:PREROUTING ACCEPT [0:0]
:INPUT ACCEPT [0:0]
:OUTPUT ACCEPT [38:2970]
:POSTROUTING ACCEPT [38:2970]
COMMIT
# Completed on Sat Feb  5 05:26:53 2022

#IPv6 Mangle chain

# Generated by ip6tables-save v1.8.7 on Sat Feb  5 05:26:53 2022
*mangle
:PREROUTING ACCEPT [65:6217]
:INPUT ACCEPT [65:6217]
:FORWARD ACCEPT [0:0]
:OUTPUT ACCEPT [65:6217]
:POSTROUTING ACCEPT [65:6217]
-A FORWARD -o eth2 -p tcp -m tcp --tcp-flags SYN,RST SYN -m comment --comment "!fw3: Zone wan MTU fixing" -j TCPMSS --clamp-mss-to-pmtu
-A FORWARD -i eth2 -p tcp -m tcp --tcp-flags SYN,RST SYN -m comment --comment "!fw3: Zone wan MTU fixing" -j TCPMSS --clamp-mss-to-pmtu
COMMIT
# Completed on Sat Feb  5 05:26:53 2022

#===================== IPSET状态 =====================#

Name: china_ip_route
Name: localnetwork

#===================== 路由表状态 =====================#

#route -n
Kernel IP routing table
Destination     Gateway         Genmask         Flags Metric Ref    Use Iface
0.0.0.0         192.168.31.1    0.0.0.0         UG    0      0        0 br-lan
192.168.31.0    0.0.0.0         255.255.255.0   U     0      0        0 br-lan
#ip route list
default via 192.168.31.1 dev br-lan proto static 
192.168.31.0/24 dev br-lan proto kernel scope link src 192.168.31.54 
#ip rule show
0:	from all lookup local
32765:	from all fwmark 0x162 lookup 354
32766:	from all lookup main
32767:	from all lookup default

#===================== 端口占用状态 =====================#

tcp        0      0 :::7890                 :::*                    LISTEN      5653/clash
tcp        0      0 :::7891                 :::*                    LISTEN      5653/clash
tcp        0      0 :::7892                 :::*                    LISTEN      5653/clash
tcp        0      0 :::7893                 :::*                    LISTEN      5653/clash
tcp        0      0 :::7895                 :::*                    LISTEN      5653/clash
tcp        0      0 :::9090                 :::*                    LISTEN      5653/clash
udp        0      0 127.0.0.1:7874          0.0.0.0:*                           5653/clash
udp        0      0 :::7891                 :::*                                5653/clash
udp        0      0 :::7892                 :::*                                5653/clash
udp        0      0 :::7893                 :::*                                5653/clash
udp        0      0 :::7895                 :::*                                5653/clash

#===================== 测试本机DNS查询 =====================#

Server:		127.0.0.1
Address:	127.0.0.1#53

Name:      www.baidu.com
www.baidu.com	canonical name = www.a.shifen.com
Name:      www.a.shifen.com
Address 1: 110.242.xx.x
Address 2: 110.242.xx.x
*** Can't find www.baidu.com: No answer

#===================== resolv.conf.d =====================#

# Interface lan
nameserver 192.168.31.1

#===================== 测试本机网络连接 =====================#

HTTP/1.1 200 OK
Accept-Ranges: bytes
Cache-Control: private, no-cache, no-store, proxy-revalidate, no-transform
Connection: keep-alive
Content-Length: 277
Content-Type: text/html
Date: Sat, 05 Feb 2022 05:26:53 GMT
Etag: "575e1f59-115"
Last-Modified: Mon, 13 Jun 2016 02:50:01 GMT
Pragma: no-cache
Server: bfe/1.0.8.18


#===================== 测试本机网络下载 =====================#

HTTP/2 200 
cache-control: max-age=300
content-security-policy: default-src 'none'; style-src 'unsafe-inline'; sandbox
content-type: text/plain; charset=utf-8
etag: "e7c45e69dc43ff82ad5d9737a8236bcb2a366c4941b2a4e072cc810cafce3c9a"
strict-transport-security: max-age=31536000
x-content-type-options: nosniff
x-frame-options: deny
x-xss-protection: 1; mode=block
x-github-request-id: 860C:6867:C79DA0:FDAE32:61FDB9EF
accept-ranges: bytes
date: Sat, 05 Feb 2022 05:26:53 GMT
via: 1.1 varnish
x-served-by: cache-itm18837-ITM
x-cache: HIT
x-cache-hits: 1
x-timer: S1644038814.792658,VS0,VE1
vary: Authorization,Accept-Encoding,Origin
access-control-allow-origin: *
x-fastly-request-id: e3f8680a2632f88e5d192d7fab303bef88231e02
expires: Sat, 05 Feb 2022 05:31:53 GMT
source-age: 171
content-length: 80


#===================== 最近运行日志 =====================#

2022-02-05 05:22:35 OpenClash Start Successful!
2022-02-05 05:25:31 Start Updating Config File【JMS_ Sub】...
2022-02-05 05:25:34 Config File Download Successful, Check If There is Any Update...
2022-02-05 05:25:34 Config File【JMS_ Sub】Are Updates, Start Replacing...
2022-02-05 05:25:34 Config File【JMS_ Sub】Update Successful!
2022-02-05 05:25:37 OpenClash Stoping...
2022-02-05 05:25:37 Step 1: Backup The Current Groups State...
2022-02-05 05:25:38 Step 2: Delete OpenClash Firewall Rules...
2022-02-05 05:25:38 Step 3: Close The OpenClash Daemons...
2022-02-05 05:25:38 Step 4: Close The Clash Core Process...
2022-02-05 05:25:38 Step 5: Restart Dnsmasq...
2022-02-05 05:25:38 Step 6: Delete OpenClash Residue File...
2022-02-05 05:25:38 OpenClash Start Running...
2022-02-05 05:25:38 Step 1: Get The Configuration...
2022-02-05 05:25:39 Step 2: Check The Components...
2022-02-05 05:25:39 Tip: Because of the file【 /etc/config/openclash 】modificated, Pause quick start...
2022-02-05 05:25:39 Step 3: Modify The Config File...
2022-02-05 05:25:41 Step 4: Start Running The Clash Core...
2022-02-05 05:25:41 Tip: Detected The Exclusive Function of The TUN Core, Use TUN Core to Start...
2022-02-05 05:25:41 Step 5: Check The Core Status...
time="2022-02-05T05:25:42Z" level=info msg="Start initial compatible provider 🐟 漏网之鱼"
time="2022-02-05T05:25:42Z" level=info msg="Start initial compatible provider 🎯 全球直连"
time="2022-02-05T05:25:42Z" level=info msg="Start initial compatible provider ♻️ 自动选择"
time="2022-02-05T05:25:42Z" level=info msg="Start initial compatible provider Ⓜ️ 微软服务"
time="2022-02-05T05:25:42Z" level=info msg="Start initial compatible provider 🌍 国外媒体"
time="2022-02-05T05:25:42Z" level=info msg="Start initial compatible provider 🛑 全球拦截"
time="2022-02-05T05:25:42Z" level=info msg="Start initial compatible provider 📲 电报信息"
time="2022-02-05T05:25:42Z" level=info msg="Start initial compatible provider 🚀 节点选择"
time="2022-02-05T05:25:42Z" level=info msg="Start initial compatible provider ⛔ 应用拦截"
time="2022-02-05T05:25:42Z" level=info msg="Start initial compatible provider 🍎 苹果服务"
time="2022-02-05T05:25:42Z" level=info msg="Start initial rule provider ChinaCompanyIp_ipcidr"
time="2022-02-05T05:25:42Z" level=info msg="Start initial rule provider Microsoft_domain"
time="2022-02-05T05:25:42Z" level=info msg="Start initial rule provider Apple_domain"
time="2022-02-05T05:25:42Z" level=info msg="Start initial rule provider Apple_ipcidr"
time="2022-02-05T05:25:42Z" level=info msg="Start initial rule provider ProxyLite_domain"
time="2022-02-05T05:25:42Z" level=info msg="Start initial rule provider BanAD_domain"
time="2022-02-05T05:25:42Z" level=info msg="Start initial rule provider BanProgramAD_domain"
time="2022-02-05T05:25:42Z" level=info msg="Start initial rule provider ChinaDomain_ipcidr"
time="2022-02-05T05:25:42Z" level=info msg="Start initial rule provider LocalAreaNetwork_domain"
time="2022-02-05T05:25:42Z" level=info msg="Start initial rule provider ChinaDomain_domain"
time="2022-02-05T05:25:42Z" level=info msg="Start initial rule provider ProxyLite_ipcidr"
time="2022-02-05T05:25:42Z" level=info msg="Start initial rule provider LocalAreaNetwork_ipcidr"
time="2022-02-05T05:25:42Z" level=info msg="Start initial rule provider BanProgramAD_ipcidr"
time="2022-02-05T05:25:42Z" level=info msg="DNS server listening at: 127.0.0.1:7874"
2022-02-05 05:25:44 Step 6: Wait For The File Downloading...
2022-02-05 05:25:45 Step 7: Set Control Panel...
2022-02-05 05:25:45 Step 8: Set Firewall Rules...
2022-02-05 05:25:45 Step 9: Restart Dnsmasq...
2022-02-05 05:25:45 Step 10: Add Cron Rules, Start Daemons...
2022-02-05 05:25:45 OpenClash Start Successful!

#===================== 活动连接信息 =====================#

1. SourceIP:【192.168.31.212】 - Host:【Empty】 - DestinationIP:【20.205.243.168】 - Network:【tcp】 - RulePayload:【】 - Lastchain:【:29029】
2. SourceIP:【192.168.31.212】 - Host:【Empty】 - DestinationIP:【140.82.114.21】 - Network:【tcp】 - RulePayload:【】 - Lastchain:【:29029】
3. SourceIP:【192.168.31.212】 - Host:【Empty】 - DestinationIP:【35.190.80.1】 - Network:【tcp】 - RulePayload:【】 - Lastchain:【:29029】
4. SourceIP:【192.168.31.212】 - Host:【Empty】 - DestinationIP:【128.242.240.85】 - Network:【tcp】 - RulePayload:【】 - Lastchain:【:29029】
5. SourceIP:【192.168.31.212】 - Host:【Empty】 - DestinationIP:【20.205.243.166】 - Network:【tcp】 - RulePayload:【】 - Lastchain:【:29029】
6. SourceIP:【192.168.31.212】 - Host:【Empty】 - DestinationIP:【185.199.108.154】 - Network:【tcp】 - RulePayload:【】 - Lastchain:【:29029】
7. SourceIP:【192.168.31.212】 - Host:【Empty】 - DestinationIP:【185.199.109.133】 - Network:【tcp】 - RulePayload:【】 - Lastchain:【:29029】
8. SourceIP:【192.168.31.212】 - Host:【Empty】 - DestinationIP:【142.251.42.234】 - Network:【tcp】 - RulePayload:【】 - Lastchain:【:29029】
9. SourceIP:【192.168.31.212】 - Host:【Empty】 - DestinationIP:【128.242.240.85】 - Network:【tcp】 - RulePayload:【】 - Lastchain:【:29029】
10. SourceIP:【192.168.31.212】 - Host:【Empty】 - DestinationIP:【128.242.240.85】 - Network:【tcp】 - RulePayload:【】 - Lastchain:【:29029】
11. SourceIP:【192.168.31.212】 - Host:【Empty】 - DestinationIP:【128.242.240.85】 - Network:【tcp】 - RulePayload:【】 - Lastchain:【:29029】
12. SourceIP:【192.168.31.212】 - Host:【Empty】 - DestinationIP:【185.199.108.154】 - Network:【tcp】 - RulePayload:【】 - Lastchain:【:29029】
13. SourceIP:【192.168.31.212】 - Host:【Empty】 - DestinationIP:【142.251.43.14】 - Network:【tcp】 - RulePayload:【】 - Lastchain:【:29029】
14. SourceIP:【192.168.31.212】 - Host:【Empty】 - DestinationIP:【40.119.211.203】 - Network:【tcp】 - RulePayload:【】 - Lastchain:【:29029】
15. SourceIP:【192.168.31.212】 - Host:【Empty】 - DestinationIP:【128.242.240.85】 - Network:【tcp】 - RulePayload:【】 - Lastchain:【:29029】
16. SourceIP:【192.168.31.212】 - Host:【Empty】 - DestinationIP:【172.217.163.42】 - Network:【tcp】 - RulePayload:【】 - Lastchain:【:29029】