I

ikuai+openwrt+paopaodns实现国内外分流

admin 默认分类 2024-06-27
一:接口设置
1. ikuai
    - wan: pppoe拨号
    - wan2: 
        - ip: 10.0.0.2 
        - 网关: 10.0.0.1
    - lan: 
        - ip: 192.168.5.252 
        - 网关: 192.168.5.252
    - dhcp: 
        - dns: 
            - 主:192.168.5.250 
            - 备:192.168.5.250
    - dns: 
        - 主:192.168.5.250 
        - 备:192.168.5.250 
        - 不勾选dns加速
    - 多线路dns: 
        - wan1: 
            - 主: 58.240.57.33 
            - 备: 221.6.4.66 
        - wan2: 
            - 主: 8.8.8.8 
            - 备: 1.1.1.1
    - 自定义运营商:
        - fakeip: 198.18.0.0/16 
        - cn: [https://raw.githubusercontent.com/Loyalsoldier/geoip/release/text/cn.txt](https://raw.githubusercontent.com/Loyalsoldier/geoip/release/text/cn.txt)
    - 端口分流: 
        - 外网线路  wan1  任意  192.168.5.253  
        - 外网线路  wan1  udp  192.168.5.250  (openwrt和paopaodns走wan1出口)
    - 域名分流:
        - wan1  op.doi.pp.ua
        - wan1   onedrive: [https://learn.microsoft.com/zh-cn/microsoft-365/enterprise/urls-and-ip-address-ranges?view=o365-worldwide](https://learn.microsoft.com/zh-cn/microsoft-365/enterprise/urls-and-ip-address-ranges?view=o365-worldwide)
        - wan2   gfw: [https://raw.githubusercontent.com/Loyalsoldier/v2ray-rules-dat/release/gfw.txt](https://raw.githubusercontent.com/Loyalsoldier/v2ray-rules-dat/release/gfw.txt)
        
2. openwrt
    - wan: 
        - ip: 192.168.5.253 
        - 网关: 192.168.5.252 
        - dns: 192.168.5.250
    - wan6: dhcpv6客户端 @wan
    - lan: 
        - ip: 10.0.0.1 
        - 禁用dhcp和ipv6
    - dhcp/dns: 
        - 关闭重定向保护 
        - 取消缓存
    - openclash: 
        - 取消dns劫持 
        - 开启绕过大陆ip 
        - 解析dns:192.168.5.250

二:泡泡dns搭建
docker run -d \
--name paopaodns \
--net host \
--restart unless-stopped \
-v /root/paopao:/data \
-e CNAUTO=yes \
-e IPV6=yes \
-e CNFALL=yes \
-e USE_MARK_DATA=yes \
-e AUTO_FORWARD=yes \
-e CUSTOM_FORWARD=openclash的IP地址:7874 \
-e TZ=Asia/Shanghai \
-e HTTP_FILE=yes \
-e DNS_SERVERNAME=PaoPaoDNS \
-e SERVER_IP=paopao所在宿主机ip
-e SOCKS5=openclash的IP地址:7891 \
-e CN_TRACKER=yes \
-e SAFEMODE=no \
--restart unless-stopped \
sliamb/paopaodns:latest
nameserver:127.0.0.1

评论(0)

发布评论