port:7890socks-port:7891redir-port:7892mixed-port:allow-lan:truebind-address:'*'mode:rulelog-level:infoipv6:falseexternal-controller:0.0.0.0:9090external-ui:yacdinterface-name:br0# unraid 中很坑,必须用 ifconfig 看才能知道真正的网卡,webui 上的是假的hosts:# '*.clash.dev': 127.0.0.1# '.dev': 127.0.0.1# 'alpha.clash.dev': '::1'profile:store-selected:truedns:enable:truelisten:0.0.0.0:53# ipv6: false # when the false, response to AAAA questions will be emptydefault-nameserver:- 114.114.114.114- 1.2.4.8- 8.8.8.8enhanced-mode:redir-host# or fake-ipfake-ip-range:198.168.0.1/24# Fake IP addresses pool CIDR# use-hosts: true # lookup hosts and return IP record# Hostnames in this list will not be resolved with fake IPs# i.e. questions to these domain names will always be answered with their# real IP addresses# fake-ip-filter:# - '*.lan'# - localhost.ptlogin2.qq.com# Supports UDP, TCP, DoT, DoH. You can specify the port to connect to.# All DNS questions are sent directly to the nameserver, without proxies# involved. Clash answers the DNS question with the first result gathered.nameserver:- 114.114.114.114- 1.2.4.8- 1.1.1.1# This is a countermeasure against DNS pollution attacks.fallback-filter:geoip:trueipcidr:# - 240.0.0.0/4# domain:# - '+.google.com'# - '+.facebook.com'# - '+.youtube.com'tun:enable:truestack:system# or gvisor# dns-hijack:# - 8.8.8.8:53# - tcp://8.8.8.8:53auto-route:true# auto set global routeauto-detect-interface:false# Linux 下必须为 false