default.surge.conf 3.4 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273
  1. #!MANAGED-CONFIG $subs_link interval=43200 strict=true
  2. # Surge 的规则配置手册: https://manual.nssurge.com/
  3. [General]
  4. loglevel = notify
  5. # 从 Surge iOS 4 / Surge Mac 3.3.0 起,工具开始支持 DoH
  6. doh-server = https://doh.pub/dns-query
  7. # https://dns.alidns.com/dns-query, https://13800000000.rubyfish.cn/, https://dns.google/dns-query
  8. dns-server = 223.5.5.5, 114.114.114.114
  9. tun-excluded-routes = 0.0.0.0/8, 10.0.0.0/8, 100.64.0.0/10, 127.0.0.0/8, 169.254.0.0/16, 172.16.0.0/12, 192.0.0.0/24, 192.0.2.0/24, 192.168.0.0/16, 192.88.99.0/24, 198.51.100.0/24, 203.0.113.0/24, 224.0.0.0/4, 255.255.255.255/32
  10. skip-proxy = localhost, *.local, injections.adguard.org, local.adguard.org, captive.apple.com, guzzoni.apple.com, 0.0.0.0/8, 10.0.0.0/8, 17.0.0.0/8, 100.64.0.0/10, 127.0.0.0/8, 169.254.0.0/16, 172.16.0.0/12, 192.0.0.0/24, 192.0.2.0/24, 192.168.0.0/16, 192.88.99.0/24, 198.18.0.0/15, 198.51.100.0/24, 203.0.113.0/24, 224.0.0.0/4, 240.0.0.0/4, 255.255.255.255/32
  11. wifi-assist = true
  12. allow-wifi-access = true
  13. wifi-access-http-port = 6152
  14. wifi-access-socks5-port = 6153
  15. http-listen = 0.0.0.0:6152
  16. socks5-listen = 0.0.0.0:6153
  17. external-controller-access = surgepasswd@0.0.0.0:6170
  18. replica = false
  19. tls-provider = openssl
  20. network-framework = false
  21. exclude-simple-hostnames = true
  22. ipv6 = true
  23. test-timeout = 4
  24. proxy-test-url = http://www.gstatic.com/generate_204
  25. [Replica]
  26. hide-apple-request = true
  27. hide-crashlytics-request = true
  28. use-keyword-filter = false
  29. hide-udp = false
  30. # -----------------------------
  31. # Surge 的几种策略配置规范,请参考 https://manual.nssurge.com/policy/proxy.html
  32. # 不同的代理策略有*很多*可选参数,请参考上方连接的 Parameters 一段,根据需求自行添加参数。
  33. #
  34. # Surge 现已支持 UDP 转发功能,请参考: https://trello.com/c/ugOMxD3u/53-udp-%E8%BD%AC%E5%8F%91
  35. # Surge 现已支持 TCP-Fast-Open 技术,请参考: https://trello.com/c/ij65BU6Q/48-tcp-fast-open-troubleshooting-guide
  36. # Surge 现已支持 ss-libev 的全部加密方式和混淆,请参考: https://trello.com/c/BTr0vG1O/47-ss-libev-%E7%9A%84%E6%94%AF%E6%8C%81%E6%83%85%E5%86%B5
  37. # -----------------------------
  38. [Proxy]
  39. $proxies
  40. [Proxy Group]
  41. Proxy = select, auto, fallback, $proxy_group
  42. auto = url-test, $proxy_group, url=http://www.gstatic.com/generate_204, interval=43200
  43. fallback = fallback, $proxy_group, url=http://www.gstatic.com/generate_204, interval=43200
  44. [Rule]
  45. # 自定义规则
  46. ## 您可以在此处插入自定义规则
  47. # 实用规则片段集
  48. # RULE-SET,https://cdn.jsdelivr.net/gh/Hackl0us/SS-Rule-Snippet@master/Rulesets/Surge/Basic/Apple-News.list,Proxy
  49. RULE-SET,https://cdn.jsdelivr.net/gh/Hackl0us/SS-Rule-Snippet@master/Rulesets/Surge/Basic/Apple-proxy.list,Proxy
  50. RULE-SET,https://cdn.jsdelivr.net/gh/Hackl0us/SS-Rule-Snippet@master/Rulesets/Surge/Basic/Apple-direct.list,DIRECT
  51. RULE-SET,https://cdn.jsdelivr.net/gh/Hackl0us/SS-Rule-Snippet@master/Rulesets/Surge/Basic/CN.list,DIRECT
  52. RULE-SET,https://cdn.jsdelivr.net/gh/Hackl0us/SS-Rule-Snippet@master/Rulesets/Surge/Basic/common-ad-keyword.list,REJECT-TINYGIF
  53. RULE-SET,https://cdn.jsdelivr.net/gh/Hackl0us/SS-Rule-Snippet@master/Rulesets/Surge/Basic/foreign.list,Proxy
  54. RULE-SET,https://cdn.jsdelivr.net/gh/Hackl0us/SS-Rule-Snippet@master/Rulesets/Surge/App/social/Telegram.list,Proxy
  55. RULE-SET,LAN,DIRECT
  56. # 最终规则
  57. GEOIP,CN,DIRECT
  58. FINAL,Proxy,dns-failed
  59. [URL Rewrite]
  60. ^https?://(www.)?(g|google).cn https://www.google.com 302