# CFNext 订阅 v2.3.5 · 机房 CMH(CMH) · 实测 ATL(美国) · 访客 US(美国) · 节点 127 个
test-url: 'http://www.gstatic.com/generate_204'
proxies:
  - name: 台湾-04
    type: vless
    server: 188.253.6.249
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 美国-05
    type: vless
    server: 23.94.79.83
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 韩国-05
    type: vless
    server: 119.205.235.58
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 美国-03
    type: vless
    server: 192.6.161.16
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 香港-09
    type: vless
    server: 207.57.131.117
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 日本-07
    type: vless
    server: 167.179.106.168
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 台湾-02
    type: vless
    server: 83.147.15.253
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 台湾-08
    type: vless
    server: 140.235.38.78
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 美国-08
    type: vless
    server: 117.55.234.38
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 韩国-03
    type: vless
    server: 161.118.153.136
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 台湾-07
    type: vless
    server: 114.32.9.249
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 台湾-01
    type: vless
    server: 140.235.38.47
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 新加坡-06
    type: vless
    server: 159.65.141.109
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 新加坡-05
    type: vless
    server: 82.153.135.54
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 韩国-06
    type: vless
    server: 64.110.70.64
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 新加坡-03
    type: vless
    server: 152.42.212.65
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 香港-02
    type: vless
    server: 38.207.184.202
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 新加坡-07
    type: vless
    server: 185.115.207.190
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 美国-06
    type: vless
    server: 129.146.131.158
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 台湾-05
    type: vless
    server: 23.146.248.149
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 新加坡-08
    type: vless
    server: 45.32.123.57
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 新加坡-01
    type: vless
    server: 159.65.1.74
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 日本-01
    type: vless
    server: 103.53.80.84
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 台湾-09
    type: vless
    server: 45.207.159.187
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 台湾-06
    type: vless
    server: 83.147.13.49
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 香港-05
    type: vless
    server: 156.224.76.205
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 香港-08
    type: vless
    server: 45.149.92.125
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 韩国-07
    type: vless
    server: 146.56.167.171
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 韩国-01
    type: vless
    server: 134.185.114.16
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 台湾-03
    type: vless
    server: 142.249.60.51
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 韩国-02
    type: vless
    server: 146.56.151.92
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 新加坡-04
    type: vless
    server: 193.104.75.6
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 日本-02
    type: vless
    server: 138.2.31.37
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 香港-06
    type: vless
    server: 95.182.95.41
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 美国-04
    type: vless
    server: 45.76.3.36
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 美国-07
    type: vless
    server: 23.27.163.198
    port: 443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 香港-01
    type: vless
    server: 207.57.135.204
    port: 8443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 韩国-08
    type: vless
    server: 64.176.226.26
    port: 8443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 新加坡-02
    type: vless
    server: 143.198.87.50
    port: 8443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 香港-04
    type: vless
    server: 141.11.149.89
    port: 2053
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 韩国-04
    type: vless
    server: 158.247.201.201
    port: 8443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 日本-04
    type: vless
    server: 138.3.217.198
    port: 8443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 美国-02
    type: vless
    server: 172.86.110.19
    port: 8443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 日本-06
    type: vless
    server: 152.70.109.128
    port: 8443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 日本-05
    type: vless
    server: 167.148.6.161
    port: 2083
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 日本-08
    type: vless
    server: 202.182.108.246
    port: 8443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 香港-03
    type: vless
    server: 91.103.123.202
    port: 8443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 日本-03
    type: vless
    server: 151.145.74.6
    port: 8443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 香港-07
    type: vless
    server: 119.45.41.162
    port: 8443
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 美国-01
    type: vless
    server: 74.50.96.219
    port: 2087
    uuid: 32920d39-89bd-4724-8ff6-15d193fcc5df
    network: ws
    udp: true
    tls: true
    skip-cert-verify: true
    alpn: [http/1.1]
    servername: cfxg-5v2.pages.dev
    client-fingerprint: chrome
    ws-opts:
      path: "/admin?ed=2048"
      headers:
        Host: cfxg-5v2.pages.dev
  - name: 家宽JP
    type: openvpn
    server: 221.71.177.210
    port: 1749
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: &hwca |
      -----BEGIN CERTIFICATE-----
      MIIFazCCA1OgAwIBAgIRAIIQz7DSQONZRGPgu2OCiwAwDQYJKoZIhvcNAQELBQAw
      TzELMAkGA1UEBhMCVVMxKTAnBgNVBAoTIEludGVybmV0IFNlY3VyaXR5IFJlc2Vh
      cmNoIEdyb3VwMRUwEwYDVQQDEwxJU1JHIFJvb3QgWDEwHhcNMTUwNjA0MTEwNDM4
      WhcNMzUwNjA0MTEwNDM4WjBPMQswCQYDVQQGEwJVUzEpMCcGA1UEChMgSW50ZXJu
      ZXQgU2VjdXJpdHkgUmVzZWFyY2ggR3JvdXAxFTATBgNVBAMTDElTUkcgUm9vdCBY
      MTCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBAK3oJHP0FDfzm54rVygc
      h77ct984kIxuPOZXoHj3dcKi/vVqbvYATyjb3miGbESTtrFj/RQSa78f0uoxmyF+
      0TM8ukj13Xnfs7j/EvEhmkvBioZxaUpmZmyPfjxwv60pIgbz5MDmgK7iS4+3mX6U
      A5/TR5d8mUgjU+g4rk8Kb4Mu0UlXjIB0ttov0DiNewNwIRt18jA8+o+u3dpjq+sW
      T8KOEUt+zwvo/7V3LvSye0rgTBIlDHCNAymg4VMk7BPZ7hm/ELNKjD+Jo2FR3qyH
      B5T0Y3HsLuJvW5iB4YlcNHlsdu87kGJ55tukmi8mxdAQ4Q7e2RCOFvu396j3x+UC
      B5iPNgiV5+I3lg02dZ77DnKxHZu8A/lJBdiB3QW0KtZB6awBdpUKD9jf1b0SHzUv
      KBds0pjBqAlkd25HN7rOrFleaJ1/ctaJxQZBKT5ZPt0m9STJEadao0xAH0ahmbWn
      OlFuhjuefXKnEgV4We0+UXgVCwOPjdAvBbI+e0ocS3MFEvzG6uBQE3xDk3SzynTn
      jh8BCNAw1FtxNrQHusEwMFxIt4I7mKZ9YIqioymCzLq9gwQbooMDQaHWBfEbwrbw
      qHyGO0aoSCqI3Haadr8faqU9GY/rOPNk3sgrDQoo//fb4hVC1CLQJ13hef4Y53CI
      rU7m2Ys6xt0nUW7/vGT1M0NPAgMBAAGjQjBAMA4GA1UdDwEB/wQEAwIBBjAPBgNV
      HRMBAf8EBTADAQH/MB0GA1UdDgQWBBR5tFnme7bl5AFzgAiIyBpY9umbbjANBgkq
      hkiG9w0BAQsFAAOCAgEAVR9YqbyyqFDQDLHYGmkgJykIrGF1XIpu+ILlaS/V9lZL
      ubhzEFnTIZd+50xx+7LSYK05qAvqFyFWhfFQDlnrzuBZ6brJFe+GnY+EgPbk6ZGQ
      3BebYhtF8GaV0nxvwuo77x/Py9auJ/GpsMiu/X1+mvoiBOv/2X/qkSsisRcOj/KK
      NFtY2PwByVS5uCbMiogziUwthDyC3+6WVwW6LLv3xLfHTjuCvjHIInNzktHCgKQ5
      ORAzI4JMPJ+GslWYHb4phowim57iaztXOoJwTdwJx4nLCgdNbOhdjsnvzqvHu7Ur
      TkXWStAmzOVyyghqpZXjFaH3pO3JLF+l+/+sKAIuvtd7u+Nxe5AW0wdeRlN8NwdC
      jNPElpzVmbUq4JUagEiuTDkHzsxHpFKVK7q4+63SM1N95R1NbdWhscdCb+ZAJzVc
      oyi3B43njTOQ5yOf+1CceWxG1bQVs5ZufpsMljq4Ui0/1lvh+wjChP4kqKOJ2qxq
      4RgqsahDYVvTH9w7jXbyLeiNdd8XM2w9U/t7y0Ff/9yi0GE44Za4rF2LN9d11TPA
      mRGunUHBcnWEvgJBQl9nJEiU0Zsnvgc/ubhPgXRR4Xq37Z0j4r7g1SgEEzwxA57d
      emyPxgcYxn/eR44/KJ4EBs+lVDR3veyJm+kXQ99b21/+jh5Xos1AnX5iItreGCc=
      -----END CERTIFICATE-----
    cert: &hwcert |
      -----BEGIN CERTIFICATE-----
      MIICxjCCAa4CAQAwDQYJKoZIhvcNAQEFBQAwKTEaMBgGA1UEAxMRVlBOR2F0ZUNs
      aWVudENlcnQxCzAJBgNVBAYTAkpQMB4XDTEzMDIxMTAzNDk0OVoXDTM3MDExOTAz
      MTQwN1owKTEaMBgGA1UEAxMRVlBOR2F0ZUNsaWVudENlcnQxCzAJBgNVBAYTAkpQ
      MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA5h2lgQQYUjwoKYJbzVZA
      5VcIGd5otPc/qZRMt0KItCFA0s9RwReNVa9fDRFLRBhcITOlv3FBcW3E8h1Us7RD
      4W8GmJe8zapJnLsD39OSMRCzZJnczW4OCH1PZRZWKqDtjlNca9AF8a65jTmlDxCQ
      CjntLIWk5OLLVkFt9/tScc1GDtci55ofhaNAYMPiH7V8+1g66pGHXAoWK6AQVH67
      XCKJnGB5nlQ+HsMYPV/O49Ld91ZN/2tHkcaLLyNtywxVPRSsRh480jju0fcCsv6h
      p/0yXnTB//mWutBGpdUlIbwiITbAmrsbYnjigRvnPqX1RNJUbi9Fp6C2c/HIFJGD
      ywIDAQABMA0GCSqGSIb3DQEBBQUAA4IBAQChO5hgcw/4oWfoEFLu9kBa1B//kxH8
      hQkChVNn8BRC7Y0URQitPl3DKEed9URBDdg2KOAz77bb6ENPiliD+a38UJHIRMqe
      UBHhllOHIzvDhHFbaovALBQceeBzdkQxsKQESKmQmR832950UCovoyRB61UyAV7h
      +mZhYPGRKXKSJI6s0Egg/Cri+Cwk4bjJfrb5hVse11yh4D9MHhwSfCOH+0z4hPUT
      Fku7dGavURO5SVxMn/sL6En5D+oSeXkadHpDs+Airym2YHh15h0+jPSOoR6yiVp/
      6zZeZkrN43kuS73KpKDFjfFPh8t4r1gOIjttkNcQqBccusnplQ7HJpsk
      -----END CERTIFICATE-----
    key: &hwkey |
      -----BEGIN RSA PRIVATE KEY-----
      MIIEpAIBAAKCAQEA5h2lgQQYUjwoKYJbzVZA5VcIGd5otPc/qZRMt0KItCFA0s9R
      wReNVa9fDRFLRBhcITOlv3FBcW3E8h1Us7RD4W8GmJe8zapJnLsD39OSMRCzZJnc
      zW4OCH1PZRZWKqDtjlNca9AF8a65jTmlDxCQCjntLIWk5OLLVkFt9/tScc1GDtci
      55ofhaNAYMPiH7V8+1g66pGHXAoWK6AQVH67XCKJnGB5nlQ+HsMYPV/O49Ld91ZN
      /2tHkcaLLyNtywxVPRSsRh480jju0fcCsv6hp/0yXnTB//mWutBGpdUlIbwiITbA
      mrsbYnjigRvnPqX1RNJUbi9Fp6C2c/HIFJGDywIDAQABAoIBAERV7X5AvxA8uRiK
      k8SIpsD0dX1pJOMIwakUVyvc4EfN0DhKRNb4rYoSiEGTLyzLpyBc/A28Dlkm5eOY
      fjzXfYkGtYi/Ftxkg3O9vcrMQ4+6i+uGHaIL2rL+s4MrfO8v1xv6+Wky33EEGCou
      QiwVGRFQXnRoQ62NBCFbUNLhmXwdj1akZzLU4p5R4zA3QhdxwEIatVLt0+7owLQ3
      lP8sfXhppPOXjTqMD4QkYwzPAa8/zF7acn4kryrUP7Q6PAfd0zEVqNy9ZCZ9ffho
      zXedFj486IFoc5gnTp2N6jsnVj4LCGIhlVHlYGozKKFqJcQVGsHCqq1oz2zjW6LS
      oRYIHgECgYEA8zZrkCwNYSXJuODJ3m/hOLVxcxgJuwXoiErWd0E42vPanjjVMhnt
      KY5l8qGMJ6FhK9LYx2qCrf/E0XtUAZ2wVq3ORTyGnsMWre9tLYs55X+ZN10Tc75z
      4hacbU0hqKN1HiDmsMRY3/2NaZHoy7MKnwJJBaG48l9CCTlVwMHocIECgYEA8jby
      dGjxTH+6XHWNizb5SRbZxAnyEeJeRwTMh0gGzwGPpH/sZYGzyu0SySXWCnZh3Rgq
      5uLlNxtrXrljZlyi2nQdQgsq2YrWUs0+zgU+22uQsZpSAftmhVrtvet6MjVjbByY
      DADciEVUdJYIXk+qnFUJyeroLIkTj7WYKZ6RjksCgYBoCFIwRDeg42oK89RFmnOr
      LymNAq4+2oMhsWlVb4ejWIWeAk9nc+GXUfrXszRhS01mUnU5r5ygUvRcarV/T3U7
      TnMZ+I7Y4DgWRIDd51znhxIBtYV5j/C/t85HjqOkH+8b6RTkbchaX3mau7fpUfds
      Fq0nhIq42fhEO8srfYYwgQKBgQCyhi1N/8taRwpk+3/IDEzQwjbfdzUkWWSDk9Xs
      H/pkuRHWfTMP3flWqEYgW/LW40peW2HDq5imdV8+AgZxe/XMbaji9Lgwf1RY005n
      KxaZQz7yqHupWlLGF68DPHxkZVVSagDnV/sztWX6SFsCqFVnxIXifXGC4cW5Nm9g
      va8q4QKBgQCEhLVeUfdwKvkZ94g/GFz731Z2hrdVhgMZaU/u6t0V95+YezPNCQZB
      wmE9Mmlbq1emDeROivjCfoGhR3kZXW1pTKlLh6ZMUQUOpptdXva8XxfoqQwa3enA
      M7muBbF0XN7VO80iJPv+PmIZdEIAkpwKfi201YB+BafCIuGxIF50Vg==
      -----END RSA PRIVATE KEY-----
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-2
    type: openvpn
    server: 180.199.85.135
    port: 1341
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-3
    type: openvpn
    server: 27.95.27.36
    port: 1324
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR
    type: openvpn
    server: 121.172.79.131
    port: 1998
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-4
    type: openvpn
    server: 126.1.52.210
    port: 1590
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽US
    type: openvpn
    server: 104.28.214.148
    port: 1981
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-5
    type: openvpn
    server: 153.129.244.180
    port: 1269
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-6
    type: openvpn
    server: 126.36.67.239
    port: 1308
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-7
    type: openvpn
    server: 126.79.124.253
    port: 1691
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-2
    type: openvpn
    server: 211.117.54.119
    port: 1249
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-3
    type: openvpn
    server: 58.126.176.178
    port: 1517
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-4
    type: openvpn
    server: 39.118.138.90
    port: 1879
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-8
    type: openvpn
    server: 110.163.135.206
    port: 1194
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-5
    type: openvpn
    server: 220.117.95.231
    port: 1334
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-6
    type: openvpn
    server: 180.211.26.133
    port: 1362
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-7
    type: openvpn
    server: 211.252.48.192
    port: 1666
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽VN
    type: openvpn
    server: 118.70.55.95
    port: 1443
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-9
    type: openvpn
    server: 60.149.136.130
    port: 1767
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-8
    type: openvpn
    server: 175.210.116.13
    port: 995
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-10
    type: openvpn
    server: 60.103.252.159
    port: 1991
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-11
    type: openvpn
    server: 58.87.159.9
    port: 1605
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-9
    type: openvpn
    server: 14.37.213.41
    port: 1301
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-10
    type: openvpn
    server: 175.122.73.80
    port: 1298
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽RU
    type: openvpn
    server: 188.113.143.216
    port: 1388
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-11
    type: openvpn
    server: 1.241.203.229
    port: 995
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-12
    type: openvpn
    server: 125.184.145.62
    port: 995
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-13
    type: openvpn
    server: 222.96.208.83
    port: 995
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-12
    type: openvpn
    server: 221.118.159.39
    port: 1276
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-14
    type: openvpn
    server: 221.147.63.37
    port: 1295
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-13
    type: openvpn
    server: 153.172.5.86
    port: 1232
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-14
    type: openvpn
    server: 124.32.30.64
    port: 1603
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽RU-2
    type: openvpn
    server: 31.162.242.209
    port: 1746
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽RO
    type: openvpn
    server: 217.138.212.62
    port: 443
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-15
    type: openvpn
    server: 1.220.0.57
    port: 1222
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽TH
    type: openvpn
    server: 27.130.6.48
    port: 1599
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-15
    type: openvpn
    server: 175.128.95.93
    port: 1648
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽RU-3
    type: openvpn
    server: 5.164.131.232
    port: 1393
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-16
    type: openvpn
    server: 211.224.211.73
    port: 995
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽RU-4
    type: openvpn
    server: 37.140.9.232
    port: 995
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-16
    type: openvpn
    server: 126.163.128.63
    port: 1210
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-17
    type: openvpn
    server: 222.113.99.223
    port: 1556
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-18
    type: openvpn
    server: 58.122.38.225
    port: 1369
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-17
    type: openvpn
    server: 150.249.117.150
    port: 1948
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽RU-5
    type: openvpn
    server: 95.70.74.240
    port: 1577
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽RU-6
    type: openvpn
    server: 77.35.239.36
    port: 1708
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-19
    type: openvpn
    server: 211.229.23.26
    port: 995
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-20
    type: openvpn
    server: 14.34.3.130
    port: 1202
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-21
    type: openvpn
    server: 119.200.143.121
    port: 995
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-22
    type: openvpn
    server: 222.120.133.10
    port: 1291
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-18
    type: openvpn
    server: 122.210.82.158
    port: 1556
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-19
    type: openvpn
    server: 121.84.19.218
    port: 1746
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽RU-7
    type: openvpn
    server: 94.190.39.192
    port: 1246
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-20
    type: openvpn
    server: 113.158.224.228
    port: 1791
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-23
    type: openvpn
    server: 112.149.154.175
    port: 1622
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-21
    type: openvpn
    server: 124.150.224.101
    port: 1641
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-24
    type: openvpn
    server: 220.88.108.19
    port: 1225
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-25
    type: openvpn
    server: 58.233.2.51
    port: 1868
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-22
    type: openvpn
    server: 27.134.47.176
    port: 1929
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-26
    type: openvpn
    server: 121.181.84.155
    port: 1834
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-23
    type: openvpn
    server: 27.85.5.105
    port: 1432
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-27
    type: openvpn
    server: 210.104.96.99
    port: 1342
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-28
    type: openvpn
    server: 221.161.52.235
    port: 995
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽TH-2
    type: openvpn
    server: 171.4.15.101
    port: 1571
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-24
    type: openvpn
    server: 180.31.135.18
    port: 1665
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-29
    type: openvpn
    server: 1.221.115.162
    port: 1387
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽AU
    type: openvpn
    server: 125.253.56.120
    port: 1521
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽VN-2
    type: openvpn
    server: 14.161.18.225
    port: 1245
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽JP-25
    type: openvpn
    server: 222.229.242.139
    port: 1569
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-30
    type: openvpn
    server: 123.248.163.147
    port: 1814
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-31
    type: openvpn
    server: 211.41.27.114
    port: 1306
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽RU-8
    type: openvpn
    server: 77.35.143.52
    port: 1420
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-32
    type: openvpn
    server: 121.164.146.116
    port: 995
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽RU-9
    type: openvpn
    server: 95.70.97.104
    port: 1665
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-33
    type: openvpn
    server: 169.211.222.152
    port: 1381
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-34
    type: openvpn
    server: 121.158.113.59
    port: 995
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-35
    type: openvpn
    server: 175.193.123.121
    port: 1491
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置
  - name: 家宽KR-36
    type: openvpn
    server: 183.106.84.223
    port: 1418
    proto: tcp
    udp: false
    username: vpn
    password: vpn
    ca: *hwca
    cert: *hwcert
    key: *hwkey
    dev: tun
    cipher: AES-128-CBC
    auth: SHA1
    handshake-timeout: 30
    dialer-proxy: 隧道前置

# ==================== 锚点配置 ====================
# 代理提供者模板 - 订阅源基础配置

# 监听器与策略组由订阅生成时按实际节点动态输出（见下方 listeners / proxy-groups）：
# 有节点的地区才生成对应分组，无节点不占位

# ==================== 核心配置 ====================
mode: rule
port: 7890
socks-port: 7891
redir-port: 7892
mixed-port: 7893
tproxy-port: 7895
ipv6: true
allow-lan: true
unified-delay: true
tcp-concurrent: true
log-level: warning
bind-address: '*'
find-process-mode: 'always'
keep-alive-interval: 15
keep-alive-idle: 600

# 认证配置（默认凭据请务必修改！）
authentication:
  - mihomo:yyds666
skip-auth-prefixes:
  - 192.168.1.0/24
  - 192.168.31.0/24
  - 192.168.100.0/24
  - 127.0.0.1/8

# 实验性功能
experimental:
  quic-go-disable-gso: true

# 管理面板配置（不内嵌面板 UI：省去 2MB 下载，桌面/手机客户端均自带面板）
external-controller: 127.0.0.1:9090
secret: yyds666    # 请修改为自定义密钥
# 允许网页面板跨域访问
external-controller-cors:
  allow-origins:
    - "*"
  allow-private-network: true

# 配置存储
profile:
  store-selected: true
  store-fake-ip: true

# 原地理大文件数据源已移除：地理兜底规则由规则集（China / ChinaIP / Advertising 等）替代，
# 省去首次导入 20MB+ 的 geo 数据下载（防「下载外部资源很慢」卡导入）

# 流量嗅探
sniffer:
  enable: true
  force-dns-mapping: true   # 强制 DNS 映射，提高分流准确度
  parse-pure-ip: true       # 解析纯 IP 连接
  override-destination: true
  sniff:
    HTTP:
      ports: [80, 8080-8880]
    TLS:
      ports: [443, 8443]
    QUIC:
      ports: [443, 8443]
  skip-domain:
    - "+.push.apple.com"

# TUN模式配置
tun:
  enable: false
  stack: mixed
  mtu: 1480
  dns-hijack:
    - "any:53"
    - "tcp://any:53"
  udp-timeout: 300
  auto-route: true
  strict-route: true
  auto-redirect: true
  auto-detect-interface: true
  # 提示：系统级防泄露的最强手段是开启 TUN（自动劫持全部 DNS 流量）；
  # 不开 TUN 时，请把系统 / LAN 设备的 DNS 指向 127.0.0.1:53（本机）或本机局域网 IP:53。

hosts:
  miwifi.com: 192.168.31.2
  "epdg.epc.mnc010.mcc234.pub.3gppnetwork.org": [87.194.8.8, 87.194.88.8, 87.194.89.8, 87.194.9.8]
  services.googleapis.cn: services.googleapis.com
  cn.bing.com: www4.bing.com

# ==================== DNS 配置 ====================
# 防泄露要点：
#   1) respect-rules: true：DNS 服务器连接遵循路由规则（国外 DoH 走代理隧道、国内 DoH 直连），
#      解析行为与规则分流一致，避免“规则走代理、解析却直连”的泄露。
#   2) 默认 nameserver 用国内 DoH；只有“将走代理”的规则集才用国外 DoH，
#      且其域名在 rules 中显式固定走代理。
#   3) fake-ip-filter 补齐系统连通性检测 / 时间同步 / 运营商登录等域名，防止系统误判断网而回退运营商 DNS。
dns:
  enable: true
  listen: 0.0.0.0:53        # 本机 / LAN 设备可把 DNS 指向此地址，避免走运营商 DNS
  ipv6: true
  prefer-h3: false          # respect-rules 下官方不推荐 DoH3；且 QUIC 已被规则拦截
  cache-algorithm: arc      # 性能更优的 ARC 缓存算法
  cache-size: 4096
  enhanced-mode: fake-ip
  fake-ip-range: 198.18.0.1/16
  fake-ip-filter:
    - "+.lan"
    - "+.local"
    - "+.localhost"
    - "+.home.arpa"
    - "+.internal"
    # 系统连通性检测（防止 fake-ip 导致“无网络”判断，回退 ISP DNS 造成泄露）
    - "+.msftconnecttest.com"
    - "+.msftncsi.com"          # 通配已覆盖 dns.msftncsi.com
    - "captive.apple.com"
    - "connectivitycheck.gstatic.com"
    - "detectportal.firefox.com"
    # 时间同步
    - "time.nist.gov"
    - "+.pool.ntp.org"
    - "time.*.com"              # 通配已覆盖 time.windows.com
    - "ntp.*.com"               # 通配已覆盖 ntp.ubuntu.com
    # 运营商 Wi-Fi 登录页
    - "+.cmpassport.com"
    - "id6.me"
    - "open.e.189.cn"
    - "mdn.open.wo.cn"
    - "opencloud.wostore.cn"
    - "auth.wosms.cn"
    - "+.10099.com.cn"
    # 原配置保留项
    - "+.market.xiaomi.com"
    - "+.pub.3gppnetwork.org"
    - "+.push.apple.com"
    - "+.bing.com"
    - "+.miwifi.com"
    - "+.docker.io"
    # 国内应用登录（+.qq.com 已覆盖 localhost.ptlogin2.qq.com）
    - "+.qq.com"
    # 直连 / 国内类规则集：返回真实 IP
    - rule-set:Direct
    - rule-set:Private
    - rule-set:China
  use-hosts: true
  respect-rules: true
  # 引导用 DNS（解析 DoH/DoT 服务器自身的域名），必须是 IP
  default-nameserver:
    - 223.5.5.5
    - 119.29.29.29
  # 默认解析：未命中 nameserver-policy 的域名（国内 DoH，直连）
  nameserver:
    - "https://dns.alidns.com/dns-query"
    - "https://doh.pub/dns-query"
  # 直连出口的解析
  direct-nameserver:
    - "https://dns.alidns.com/dns-query"
    - "https://doh.pub/dns-query"
  # 解析代理节点域名（防套娃 / 防循环，用国内直连可达的 DoH）
  proxy-server-nameserver:
    - "https://dns.alidns.com/dns-query"
    - "https://doh.pub/dns-query"
  nameserver-policy:
    # 广告域名直接返回空应答
    "rule-set:Advertising,AWAvenueAds": rcode://success
    # 直连类：国内 DoH（微软已并入直连，微软域名走国内解析后直连）
    "rule-set:Direct,Private,China,Microsoft":
      - "https://dns.alidns.com/dns-query"
      - "https://doh.pub/dns-query"
    # 走代理类：国外 DoH（连接本身经代理隧道，不直连暴露查询）
    "rule-set:AI,Telegram,Twitter,SocialMedia,Netflix,YouTube,Spotify,TikTok,disney,Google,Proxy":
      - "https://dns.google/dns-query"
      - "https://cloudflare-dns.com/dns-query"

# ==================== 监听器 ====================
listeners:
  # Shadowsocks监听器 - 远程连接家庭网络，端口和密码使用时请修改（默认密码请勿用于公网）
  - {name: SS-IN,  type: shadowsocks, listen: '::', port: 10000, udp: true, password: Xf3#Lp9WqZ, cipher: aes-256-gcm}
  # Mixed监听器 - 分地区专用端口 玩法：本地浏览器插件或手机APP配置代理，实现分地区访问
  - {name: MIXED-TW, type: mixed, port: 50000, proxy: 台湾节点}
  - {name: MIXED-US, type: mixed, port: 50001, proxy: 美国节点}
  - {name: MIXED-HK, type: mixed, port: 50002, proxy: 香港节点}
  - {name: MIXED-KR, type: mixed, port: 50003, proxy: 韩国节点}
  - {name: MIXED-SG, type: mixed, port: 50004, proxy: 新加坡节点}
  - {name: MIXED-JP, type: mixed, port: 50005, proxy: 日本节点}
  - {name: MIXED-AL, type: mixed, port: 50007, proxy: 一键连接}

# ==================== 代理策略组 ====================
proxy-groups:
  # 主入口：默认自动选择延迟最低节点，可手动切换各地区 / 全部节点 / 直接连接
  - {name: 一键连接, type: select, proxies: [自动选择, 故障转移, 台湾节点, 美国节点, 香港节点, 韩国节点, 新加坡节点, 日本节点, 全部节点, 直接连接]}
  # 自动选择：隐藏（面板不可手动选择），纯自动优选延时最低节点；故障转移：按序自动切换
  - {name: 自动选择, type: url-test, include-all: true, url: 'https://www.google.com/generate_204', interval: 200, lazy: true, hidden: true, empty-fallback: REJECT}
  - {name: 故障转移, type: fallback, proxies: [台湾节点, 美国节点, 香港节点, 韩国节点, 新加坡节点, 日本节点, 全部节点], url: 'https://www.google.com/generate_204', interval: 200, lazy: true, empty-fallback: REJECT}
  # 台湾（9 节点）：默认选中「台湾自动」=自动优选该地区最快节点，也可手动指定单个节点
  - {name: 台湾节点, type: select, proxies: [台湾自动, 台湾-04, 台湾-02, 台湾-08, 台湾-07, 台湾-01, 台湾-05, 台湾-09, 台湾-06, 台湾-03]}
  - {name: 台湾自动, type: url-test, proxies: [台湾-04, 台湾-02, 台湾-08, 台湾-07, 台湾-01, 台湾-05, 台湾-09, 台湾-06, 台湾-03], url: 'https://www.google.com/generate_204', interval: 200, lazy: true, empty-fallback: REJECT, hidden: true}
  # 美国（8 节点）：默认选中「美国自动」=自动优选该地区最快节点，也可手动指定单个节点
  - {name: 美国节点, type: select, proxies: [美国自动, 美国-05, 美国-03, 美国-08, 美国-02, 美国-06, 美国-01, 美国-04, 美国-07]}
  - {name: 美国自动, type: url-test, proxies: [美国-05, 美国-03, 美国-08, 美国-02, 美国-06, 美国-01, 美国-04, 美国-07], url: 'https://www.google.com/generate_204', interval: 200, lazy: true, empty-fallback: REJECT, hidden: true}
  # 香港（9 节点）：默认选中「香港自动」=自动优选该地区最快节点，也可手动指定单个节点
  - {name: 香港节点, type: select, proxies: [香港自动, 香港-01, 香港-09, 香港-04, 香港-02, 香港-03, 香港-05, 香港-08, 香港-07, 香港-06]}
  - {name: 香港自动, type: url-test, proxies: [香港-01, 香港-09, 香港-04, 香港-02, 香港-03, 香港-05, 香港-08, 香港-07, 香港-06], url: 'https://www.google.com/generate_204', interval: 200, lazy: true, empty-fallback: REJECT, hidden: true}
  # 韩国（8 节点）：默认选中「韩国自动」=自动优选该地区最快节点，也可手动指定单个节点
  - {name: 韩国节点, type: select, proxies: [韩国自动, 韩国-05, 韩国-08, 韩国-04, 韩国-03, 韩国-06, 韩国-07, 韩国-01, 韩国-02]}
  - {name: 韩国自动, type: url-test, proxies: [韩国-05, 韩国-08, 韩国-04, 韩国-03, 韩国-06, 韩国-07, 韩国-01, 韩国-02], url: 'https://www.google.com/generate_204', interval: 200, lazy: true, empty-fallback: REJECT, hidden: true}
  # 新加坡（8 节点）：默认选中「新加坡自动」=自动优选该地区最快节点，也可手动指定单个节点
  - {name: 新加坡节点, type: select, proxies: [新加坡自动, 新加坡-02, 新加坡-06, 新加坡-05, 新加坡-03, 新加坡-07, 新加坡-08, 新加坡-01, 新加坡-04]}
  - {name: 新加坡自动, type: url-test, proxies: [新加坡-02, 新加坡-06, 新加坡-05, 新加坡-03, 新加坡-07, 新加坡-08, 新加坡-01, 新加坡-04], url: 'https://www.google.com/generate_204', interval: 200, lazy: true, empty-fallback: REJECT, hidden: true}
  # 日本（8 节点）：默认选中「日本自动」=自动优选该地区最快节点，也可手动指定单个节点
  - {name: 日本节点, type: select, proxies: [日本自动, 日本-07, 日本-04, 日本-06, 日本-05, 日本-01, 日本-08, 日本-03, 日本-02]}
  - {name: 日本自动, type: url-test, proxies: [日本-07, 日本-04, 日本-06, 日本-05, 日本-01, 日本-08, 日本-03, 日本-02], url: 'https://www.google.com/generate_204', interval: 200, lazy: true, empty-fallback: REJECT, hidden: true}
  # 全部节点（手动挑选任意节点；首个选项「自动选择」=全部节点中最快）
  - {name: 全部节点, type: select, include-all: true, proxies: [自动选择]}
  - {name: 直接连接, type: select, proxies: [DIRECT]}


  # 家宽隧道前置：CF 优选节点自动测活，家宽 openvpn 经此拨号（dialer-proxy）
  - {name: 隧道前置, type: url-test, proxies: [台湾-04, 美国-05, 韩国-05, 美国-03, 香港-09, 日本-07, 台湾-02, 台湾-08, 美国-08, 韩国-03, 台湾-07, 台湾-01, 新加坡-06, 新加坡-05, 韩国-06, 新加坡-03, 香港-02, 新加坡-07, 美国-06, 台湾-05, 新加坡-08, 新加坡-01, 日本-01, 台湾-09, 台湾-06, 香港-05, 香港-08, 韩国-07, 韩国-01, 台湾-03, 韩国-02, 新加坡-04, 日本-02, 香港-06, 美国-04, 美国-07, 香港-01, 韩国-08, 新加坡-02, 香港-04, 韩国-04, 日本-04, 美国-02, 日本-06, 日本-05, 日本-08, 香港-03, 日本-03, 香港-07, 美国-01], url: 'https://www.google.com/generate_204', interval: 300, lazy: true, hidden: true, empty-fallback: REJECT}
  # 家宽模式：自动测活（url-test 自动选择延迟最低家宽节点）
  - {name: 家宽自动, type: url-test, proxies: [家宽JP, 家宽JP-2, 家宽JP-3, 家宽KR, 家宽JP-4, 家宽US, 家宽JP-5, 家宽JP-6, 家宽JP-7, 家宽KR-2, 家宽KR-3, 家宽KR-4, 家宽JP-8, 家宽KR-5, 家宽KR-6, 家宽KR-7, 家宽VN, 家宽JP-9, 家宽KR-8, 家宽JP-10, 家宽JP-11, 家宽KR-9, 家宽KR-10, 家宽RU, 家宽KR-11, 家宽KR-12, 家宽KR-13, 家宽JP-12, 家宽KR-14, 家宽JP-13, 家宽JP-14, 家宽RU-2, 家宽RO, 家宽KR-15, 家宽TH, 家宽JP-15, 家宽RU-3, 家宽KR-16, 家宽RU-4, 家宽JP-16, 家宽KR-17, 家宽KR-18, 家宽JP-17, 家宽RU-5, 家宽RU-6, 家宽KR-19, 家宽KR-20, 家宽KR-21, 家宽KR-22, 家宽JP-18, 家宽JP-19, 家宽RU-7, 家宽JP-20, 家宽KR-23, 家宽JP-21, 家宽KR-24, 家宽KR-25, 家宽JP-22, 家宽KR-26, 家宽JP-23, 家宽KR-27, 家宽KR-28, 家宽TH-2, 家宽JP-24, 家宽KR-29, 家宽AU, 家宽VN-2, 家宽JP-25, 家宽KR-30, 家宽KR-31, 家宽RU-8, 家宽KR-32, 家宽RU-9, 家宽KR-33, 家宽KR-34, 家宽KR-35, 家宽KR-36], url: 'https://www.google.com/generate_204', interval: 600, lazy: true, hidden: true, empty-fallback: REJECT}
  # 家宽模式：VPN Gate OpenVPN 出口（多台家宽节点自动测活，经 dialer-proxy 隧道拨号）
  - {name: 家宽出口, type: select, proxies: [家宽自动, 家宽AU, 家宽JP, 家宽JP-10, 家宽JP-11, 家宽JP-12, 家宽JP-13, 家宽JP-14, 家宽JP-15, 家宽JP-16, 家宽JP-17, 家宽JP-18, 家宽JP-19, 家宽JP-2, 家宽JP-20, 家宽JP-21, 家宽JP-22, 家宽JP-23, 家宽JP-24, 家宽JP-25, 家宽JP-3, 家宽JP-4, 家宽JP-5, 家宽JP-6, 家宽JP-7, 家宽JP-8, 家宽JP-9, 家宽KR, 家宽KR-10, 家宽KR-11, 家宽KR-12, 家宽KR-13, 家宽KR-14, 家宽KR-15, 家宽KR-16, 家宽KR-17, 家宽KR-18, 家宽KR-19, 家宽KR-2, 家宽KR-20, 家宽KR-21, 家宽KR-22, 家宽KR-23, 家宽KR-24, 家宽KR-25, 家宽KR-26, 家宽KR-27, 家宽KR-28, 家宽KR-29, 家宽KR-3, 家宽KR-30, 家宽KR-31, 家宽KR-32, 家宽KR-33, 家宽KR-34, 家宽KR-35, 家宽KR-36, 家宽KR-4, 家宽KR-5, 家宽KR-6, 家宽KR-7, 家宽KR-8, 家宽KR-9, 家宽RO, 家宽RU, 家宽RU-2, 家宽RU-3, 家宽RU-4, 家宽RU-5, 家宽RU-6, 家宽RU-7, 家宽RU-8, 家宽RU-9, 家宽TH, 家宽TH-2, 家宽US, 家宽VN, 家宽VN-2, 直接连接]}
# ==================== 规则路由 ====================
rules:
  # 广告拦截（常用：直接拒绝；如需临时放行可改为一键连接）
  - RULE-SET,Tracking,REJECT
  - RULE-SET,AWAvenueAds,REJECT
  - RULE-SET,Advertising,REJECT

  # DNS 服务器域名：解析通道固定，避免 DNS 流量走错路径（防泄露关键）
  - DOMAIN-SUFFIX,alidns.com,直接连接
  - DOMAIN-SUFFIX,doh.pub,直接连接
  - DOMAIN,dns.google,一键连接
  - DOMAIN,cloudflare-dns.com,一键连接

  # 大陆直连优先（置于国外服务规则之前：大陆应用一律直连，不被国外服务规则集抢先命中）
  - RULE-SET,Private,直接连接
  - RULE-SET,Direct,直接连接
  - RULE-SET,Download,直接连接
  - RULE-SET,AppleCN,直接连接
  - RULE-SET,Microsoft,直接连接        # 微软全家桶直连（Office / OneDrive / Windows 更新 / Teams / Xbox 等）
  - RULE-SET,China,直接连接             # 国内域名直连
  # 阻止走代理的 QUIC（强制回退 TCP，避免 QUIC 绕过代理 / 被干扰）。
  # 放在直连规则之后：直连 QUIC（大陆 / 微软 / 苹果）不受影响。如需 Telegram 语音等 UDP，可删除此行。
  - AND,((DST-PORT,443),(NETWORK,UDP)),REJECT

  # 常用国外服务（统一走一键连接）
  - RULE-SET,AI,一键连接
  - RULE-SET,Telegram,一键连接
  - RULE-SET,Twitter,一键连接
  - RULE-SET,SocialMedia,一键连接
  - RULE-SET,Netflix,一键连接
  - RULE-SET,YouTube,一键连接
  - RULE-SET,Spotify,一键连接
  - RULE-SET,TikTok,一键连接
  - RULE-SET,disney,一键连接
  - RULE-SET,Google,一键连接
  - RULE-SET,github,一键连接
  - RULE-SET,Proxy,一键连接

  # IP规则
  - RULE-SET,PrivateIP,直接连接,no-resolve
  - RULE-SET,TelegramIP,一键连接,no-resolve
  - RULE-SET,ProxyIP,一键连接,no-resolve
  - RULE-SET,ChinaIP,直接连接,no-resolve

  # 兜底规则：其余（国外）走一键连接
  # 家宽模式：VPN Gate 相关流量走家宽出口（OpenVPN 经 CF 隧道）
  - DOMAIN-SUFFIX,vpngate.net,家宽出口
  - MATCH,一键连接

# ==================== 规则集 ====================
# 规则集行为模板（interval 放宽到 7 天：规则集由 Worker 同域代下并缓存，无需频繁回源）
BehaviorDN: &BehaviorDN {type: http, behavior: domain, format: mrs, interval: 604800}
BehaviorDY: &BehaviorDY {type: http, behavior: domain, format: yaml, interval: 604800}
BehaviorIP: &BehaviorIP {type: http, behavior: ipcidr, format: mrs, interval: 604800}
ClassicalYaml: &ClassicalYaml {type: http, behavior: classical, interval: 604800, format: yaml, proxy: DIRECT}
BehaviorCL: &BehaviorCL {type: http, behavior: classical, interval: 604800, format: yaml, proxy: DIRECT}   # 经典规则集（blackmatrix7 等，DOMAIN/DOMAIN-SUFFIX/DOMAIN-KEYWORD/PROCESS-NAME）

# 规则提供者（仅保留常用）
# ★ 同域代下：url 指向 https://cfxg-5v2.pages.dev/crules（生成时替换为 https://<当前订阅域名>/crules）——
#   客户端导入/更新零外部直连（不开梯子也能导入）；上游仓库资源由 Worker 服务端拉取，
#   KV 缓存 7 天 + 进程内缓存 1 小时，客户端不再每次直连外站下载
rule-providers:
  # 广告
  Tracking:       {<<: *BehaviorDN, url: https://cfxg-5v2.pages.dev/crules/Tracking.mrs}
  Advertising:    {<<: *BehaviorDN, url: https://cfxg-5v2.pages.dev/crules/Advertising.mrs}
  AWAvenueAds:    {<<: *BehaviorDY, url: https://cfxg-5v2.pages.dev/crules/AWAvenueAds.yaml}
  # 直连 / 国内
  Direct:         {<<: *BehaviorDN, url: https://cfxg-5v2.pages.dev/crules/Direct.mrs}
  Private:        {<<: *BehaviorDN, url: https://cfxg-5v2.pages.dev/crules/Private.mrs}
  Download:       {<<: *BehaviorDN, url: https://cfxg-5v2.pages.dev/crules/Download.mrs}
  AppleCN:        {<<: *BehaviorDN, url: https://cfxg-5v2.pages.dev/crules/AppleCN.mrs}
  China:          {<<: *BehaviorCL, url: https://cfxg-5v2.pages.dev/crules/China.yaml}   # 大陆直连全量：ChinaMaxNoIP（11万+ 域名，含大陆可达国际服务）
  # 常用国外服务
  AI:             {<<: *BehaviorDN, url: https://cfxg-5v2.pages.dev/crules/AI.mrs}
  Telegram:       {<<: *BehaviorDN, url: https://cfxg-5v2.pages.dev/crules/Telegram.mrs}
  Twitter:        {<<: *BehaviorDN, url: https://cfxg-5v2.pages.dev/crules/Twitter.mrs}
  SocialMedia:    {<<: *BehaviorDN, url: https://cfxg-5v2.pages.dev/crules/SocialMedia.mrs}
  Netflix:        {<<: *BehaviorDN, url: https://cfxg-5v2.pages.dev/crules/Netflix.mrs}
  YouTube:        {<<: *BehaviorDN, url: https://cfxg-5v2.pages.dev/crules/YouTube.mrs}
  Google:         {<<: *BehaviorDN, url: https://cfxg-5v2.pages.dev/crules/Google.mrs}
  Microsoft:      {<<: *BehaviorCL, url: https://cfxg-5v2.pages.dev/crules/Microsoft.yaml}   # 微软全家桶全量（Office/OneDrive/Xbox/Teams/Skype/Bing/Azure 等）
  Proxy:          {<<: *BehaviorDN, url: https://cfxg-5v2.pages.dev/crules/Proxy.mrs}
  # 媒体（DustinWin）
  Spotify:        {<<: *BehaviorDN, url: https://cfxg-5v2.pages.dev/crules/Spotify.mrs}
  TikTok:         {<<: *BehaviorDN, url: https://cfxg-5v2.pages.dev/crules/TikTok.mrs}
  disney:         {<<: *BehaviorDN, url: https://cfxg-5v2.pages.dev/crules/disney.mrs}
  # GitHub
  github:          {<<: *ClassicalYaml, url: https://cfxg-5v2.pages.dev/crules/github.yaml}
  # IP规则
  PrivateIP:      {<<: *BehaviorIP, url: https://cfxg-5v2.pages.dev/crules/PrivateIP.mrs}
  TelegramIP:     {<<: *BehaviorIP, url: https://cfxg-5v2.pages.dev/crules/TelegramIP.mrs}
  ProxyIP:        {<<: *BehaviorIP, url: https://cfxg-5v2.pages.dev/crules/ProxyIP.mrs}
  ChinaIP:        {<<: *BehaviorIP, url: https://cfxg-5v2.pages.dev/crules/ChinaIP.mrs}

# ==================== EOF ====================


