From 4cc60b0a7971eaf5e572f5cc3affd546c8a2d3a4 Mon Sep 17 00:00:00 2001 From: N1klaz <78135608+N1klaz@users.noreply.github.com> Date: Fri, 1 Jul 2022 03:06:13 +0800 Subject: [PATCH] Update README.md MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit fix typo update 移除 client、bridge 配置中的 "allowInsecure": true 默认注释 portal.json 中仅转发内网流量的配置 update readme.md --- ReverseProxy/README.md | 6 +++--- ReverseProxy/VLESS-TCP-XTLS-WS/README.md | 10 ++++++++-- ReverseProxy/VLESS-TCP-XTLS-WS/bridge.json | 1 - ReverseProxy/VLESS-TCP-XTLS-WS/client_tcp.json | 1 - ReverseProxy/VLESS-TCP-XTLS-WS/client_ws.json | 1 - ReverseProxy/VLESS-TCP-XTLS-WS/portal.json | 6 +++--- 6 files changed, 14 insertions(+), 11 deletions(-) diff --git a/ReverseProxy/README.md b/ReverseProxy/README.md index d362988..8919be2 100644 --- a/ReverseProxy/README.md +++ b/ReverseProxy/README.md @@ -1,10 +1,10 @@ # 反向代理 # 原理 -Xray Client <--- VMESS/SS ---> Xray Protal(需要公网 IP) <--- VMESS/SS ---> Xray Bridge +Xray Client <--- VMESS/SS ---> Xray Portal(需要公网 IP) <--- VMESS/SS ---> Xray Bridge # 说明 -配置中,内网设备使用的配置为 `bridge.json`,有公网 ip 的设备使用 `protal.json`,通过`protal`连接到内网的设备使用`client.json`。 +配置中,内网设备使用的配置为 `bridge.json`,有公网 ip 的设备使用 `portal.json`,通过`portal`连接到内网的设备使用`client.json`。 -实际应用中,可以使用`VMESS-TCP、Shadowsocks-2022`等作为Xray Client 到 Xray Protal、Xray Bridge 到 Xray Protal 的传输协议。 +实际应用中,可以使用`VMESS-TCP、Shadowsocks-2022`等作为Xray Client 到 Xray Portal、Xray Bridge 到 Xray Portal 的传输协议。 ## psk diff --git a/ReverseProxy/VLESS-TCP-XTLS-WS/README.md b/ReverseProxy/VLESS-TCP-XTLS-WS/README.md index 24ab5df..0a781b9 100644 --- a/ReverseProxy/VLESS-TCP-XTLS-WS/README.md +++ b/ReverseProxy/VLESS-TCP-XTLS-WS/README.md @@ -10,6 +10,12 @@ portal 设置默认回落到 80 端口的 Web 服务器(也可以换成数据 如果你的 portal 在境外,可以使用路由分流来同时实现科学上网 + 访问内网设备。 ## 路由分流 -根据配置内提示,在 `Portal` 配置中的路由设置为: -匹配 `"external","externalws"` 标签,且访问的目标 ip 为`私有 ip`时,才将流量转发至 bridge,其余流量走 direct。 +根据配置内提示,在 `Portal` 配置中, 取消注释第一项路由中的: +``` +// "ip": [ +// "geoip:private" +// ], +``` + +此时流量匹配 `"external"` 或 `"externalws"` 标签,且访问的目标 ip 为`私有 ip 地址`时,才会将流量转发至 bridge,其余流量走 direct。 diff --git a/ReverseProxy/VLESS-TCP-XTLS-WS/bridge.json b/ReverseProxy/VLESS-TCP-XTLS-WS/bridge.json index d4ef0ea..5cad826 100644 --- a/ReverseProxy/VLESS-TCP-XTLS-WS/bridge.json +++ b/ReverseProxy/VLESS-TCP-XTLS-WS/bridge.json @@ -33,7 +33,6 @@ "network": "ws", "security": "tls", "tlsSettings": { - "allowInsecure": true, "serverName": "reverse.example" // 换成你的域名 }, "wsSettings": { diff --git a/ReverseProxy/VLESS-TCP-XTLS-WS/client_tcp.json b/ReverseProxy/VLESS-TCP-XTLS-WS/client_tcp.json index 38978b5..e82c479 100644 --- a/ReverseProxy/VLESS-TCP-XTLS-WS/client_tcp.json +++ b/ReverseProxy/VLESS-TCP-XTLS-WS/client_tcp.json @@ -53,7 +53,6 @@ "network": "tcp", "security": "xtls", "xtlsSettings": { - "allowInsecure": true, "serverName": "reverse.example" // 换成你的域名 } } diff --git a/ReverseProxy/VLESS-TCP-XTLS-WS/client_ws.json b/ReverseProxy/VLESS-TCP-XTLS-WS/client_ws.json index 3b26433..1d243c2 100644 --- a/ReverseProxy/VLESS-TCP-XTLS-WS/client_ws.json +++ b/ReverseProxy/VLESS-TCP-XTLS-WS/client_ws.json @@ -52,7 +52,6 @@ "network": "ws", "security": "tls", "tlsSettings": { - "allowInsecure": true, "serverName": "reverse.example" // 换成你的域名 }, "wsSettings": { diff --git a/ReverseProxy/VLESS-TCP-XTLS-WS/portal.json b/ReverseProxy/VLESS-TCP-XTLS-WS/portal.json index 49df62c..6da4cfd 100644 --- a/ReverseProxy/VLESS-TCP-XTLS-WS/portal.json +++ b/ReverseProxy/VLESS-TCP-XTLS-WS/portal.json @@ -122,9 +122,9 @@ ], // 默认将所有来自 external 的流量转发至bridge // 如果仅转发内网设备流量,则取消注释下面三行 - "ip": [ - "geoip:private" - ], + // "ip": [ + // "geoip:private" + // ], "outboundTag": "portal" }, {