Skip to content

Xray如何从入站IP中嗅探出域名?sniffing的原理是什么? #2842

Answered by chise0713
Benjamin1919 asked this question in Q&A
Discussion options

You must be logged in to vote
  1. http header中的host字段,tls/quic握手中的sni字段,fakedns中的反向解析
  2. 不会出现你说的这个问题,因为反向解析不会在除fakedns外的情况下使用。
  3. 不开sniffing的情况下,假设传入的连接就是域名(socks/http/前置fakeip),域名规则依旧生效,IP分流始终生效
  4. 减少解析可以使用 sniffing.routeOnly 字段,它不会将被解析为IP的连接重置为域名

Replies: 1 comment 8 replies

Comment options

You must be logged in to vote
8 replies
@chise0713
Comment options

@Benjamin1919
Comment options

@chise0713
Comment options

@haodayizhia
Comment options

@Benjamin1919
Comment options

Answer selected by Benjamin1919
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
3 participants