Commit Graph

2048 Commits

Author SHA1 Message Date
世界 edc4595fcd Fix compatibility with MPTCP 2026-01-12 20:41:35 +08:00
世界 67d71de2bc Use a more conservative strategy for resolving with systemd-resolved for local DNS server 2026-01-12 20:41:35 +08:00
世界 1ec0c15192 Fix missing mTLS support in client options 2026-01-12 20:41:35 +08:00
世界 0a3827bfe5 Add curve preferences, pinned public key SHA256 and mTLS for TLS options 2026-01-12 20:41:35 +08:00
世界 2d27effd0b Fix WireGuard input packet 2026-01-12 20:41:35 +08:00
世界 15e67bfe0c Update tfo-go to latest 2026-01-12 20:41:35 +08:00
世界 a6e8bb6f3c Remove compatibility codes 2026-01-12 20:41:34 +08:00
世界 7f454763c1 Do not use linkname by default to simplify debugging 2026-01-12 20:41:34 +08:00
世界 25d38b7834 documentation: Update chinese translations 2026-01-12 20:41:34 +08:00
世界 e02b7780db Update quic-go to v0.55.0 2026-01-12 20:41:34 +08:00
世界 31d64cfe25 Update WireGuard and Tailscale 2026-01-12 20:41:34 +08:00
世界 dfcecb1efa Fix preConnectionCopy 2026-01-12 20:41:34 +08:00
世界 14daf14d96 Fix ping domain 2026-01-12 20:41:34 +08:00
世界 59dbf98770 release: Fix linux build 2026-01-12 20:41:34 +08:00
世界 0d137e9863 Improve ktls rx error handling 2026-01-12 20:41:33 +08:00
世界 51b1dd6664 Improve compatibility for kTLS 2026-01-12 20:41:33 +08:00
世界 b1c016b968 ktls: Add warning for inappropriate scenarios 2026-01-12 20:41:33 +08:00
世界 1ec999d222 Add support for kTLS
Reference: https://gitlab.com/go-extension/tls
2026-01-12 20:41:33 +08:00
世界 20f81796c0 Add proxy support for ICMP echo request 2026-01-12 20:41:32 +08:00
世界 f1ce48308a Fix resolve using resolved 2026-01-12 20:41:09 +08:00
世界 1863d73b76 documentation: Update behavior of local DNS server on darwin 2026-01-12 20:41:09 +08:00
世界 a9fec11b3d Remove use of ldflags -checklinkname=0 on darwin 2026-01-12 20:41:09 +08:00
世界 2b9b289566 Fix legacy DNS config 2026-01-12 20:41:09 +08:00
世界 5a4e0b7a0e Fix rule-set format 2026-01-12 20:41:08 +08:00
世界 ea68c002a3 documentation: Remove outdated icons 2026-01-12 20:41:08 +08:00
世界 f79c05b67c documentation: Improve local DNS server 2026-01-12 20:41:08 +08:00
世界 ecd1be3dbb Stop using DHCP on iOS and tvOS
We do not have the `com.apple.developer.networking.multicast` entitlement and are unable to obtain it for non-technical reasons.
2026-01-12 20:41:08 +08:00
世界 d022eca0c6 Improve local DNS server on darwin
We mistakenly believed that `libresolv`'s `search` function worked correctly in NetworkExtension, but it seems only `getaddrinfo` does.

This commit changes the behavior of the `local` DNS server in NetworkExtension to prefer DHCP, falling back to `getaddrinfo` if DHCP servers are unavailable.

It's worth noting that `prefer_go` does not disable DHCP since it respects Dial Fields, but `getaddrinfo` does the opposite. The new behavior only applies to NetworkExtension, not to all scenarios (primarily command-line binaries) as it did previously.

In addition, this commit also improves the DHCP DNS server to use the same robust query logic as `local`.
2026-01-12 20:41:08 +08:00
世界 606cec98f7 Use resolved in local DNS server if available 2026-01-12 20:41:08 +08:00
xchacha20-poly1305 4cfe63c323 Fix rule set version 2026-01-12 20:41:08 +08:00
世界 31257f6f37 documentation: Add preferred_by route rule item 2026-01-12 20:41:08 +08:00
世界 035c76afe6 Add preferred_by route rule item 2026-01-12 20:41:07 +08:00
世界 8440617b95 documentation: Add interface address rule items 2026-01-12 20:41:07 +08:00
世界 594c823684 Add interface address rule items 2026-01-12 20:41:07 +08:00
世界 117164393f Fix ECH retry support 2026-01-12 20:41:07 +08:00
neletor 6865cc877b Add support for ech retry configs 2026-01-12 20:41:07 +08:00
Zephyruso 9547f12628 Add /dns/flush-clash meta api 2026-01-12 20:41:07 +08:00
世界 ab18010ee1 Bump version v1.12.16 2026-01-12 20:38:21 +08:00
世界 e69c202c79 Fix logic issues with BBR impl 2026-01-12 20:34:04 +08:00
世界 0a812f2a46 Bump version v1.12.15 2026-01-07 15:13:35 +08:00
Gavin Luo fffe9fc566 Fix reset buffer in dhcp response loop
Previously, the buffer was not reset within the response loop. If a packet
handle failed or completed, the buffer retained its state. Specifically,
if `ReadPacketFrom` returned `io.ErrShortBuffer`, the error was ignored
via `continue`, but the buffer remained full. This caused the next
read attempt to immediately fail with the same error, creating a tight
busy-wait loop that consumed 100% CPU.

Validates `buffer.Reset()` is called at the start of each iteration to
ensure a clean state for 'ReadPacketFrom'.
2026-01-05 17:46:59 +08:00
世界 6fdf27a701 Fix Tailscale endpoint using wrong source IP with advertise_routes 2026-01-04 22:14:54 +08:00
Bruce Wayne 7fa7d4f0a9 ducumentation: update Shadowsocks inbound documentation for SSM API 2026-01-02 19:18:52 +08:00
世界 f511ebc1d4 Fix lint errors 2026-01-02 19:17:53 +08:00
世界 84bbdc2eba Revert "Pin gofumpt and golangci-lint versions"
This reverts commit d9d7f7880d.
2026-01-02 19:14:13 +08:00
世界 568612fc70 Fix duplicate tag detection for empty tags
Closes https://github.com/SagerNet/sing-box/issues/3665
2026-01-02 19:14:13 +08:00
世界 d78828fd81 Fix quic sniffer 2026-01-02 19:14:13 +08:00
世界 f56d9ab945 Bump version v1.12.14 2025-12-25 14:47:10 +08:00
世界 86fabd6a22 Update Mozilla certificates 2025-12-25 14:42:18 +08:00
世界 24a1e7cee4 Ignore darwin IP_DONTFRAG error when not supported 2025-12-25 14:40:48 +08:00