Commit Graph
104 Commits
Author SHA1 Message Date
fscarmenandGitHub f77b3ba2df Thanks to [VPS.Town](https://vps.town). 2026-03-11 20:07:31 +08:00
fscarmenandGitHub c2c59acfbb fix: correct password variable in Shadowsocks configuration
- Replace `${UUID}` with `${SIP022_PASSWORD}` in Clash configuration
- Ensure consistent SS password across all clients (ShadowRocket, V2rayN, NekoBox, Sing-box)
- Fix connection issues caused by inconsistent passwords
2026-02-28 12:06:16 +08:00
fscarmen f4af9c1687 Modify the IP API URL to ip.cloudflare.now.cc 2026-02-20 04:32:08 +00:00
fscarmen 4d87f17ec3 v1.3.4 Chore: upgrade SS encryption method to SS-2022 spec. 2026-02-10 17:11:06 +00:00
fscarmen 6c4021a9b7 Thanks to @DHR60. Set allowInsecure=true for better legacy version compatibility
Thanks to @DHR60 (v2rayN team) for pointing this out
Ref: https://github.com/2dust/v2rayN/issues/8670#issuecomment-3771775914
2026-01-20 09:42:12 +00:00
fscarmen 8bd017c214 v1.3.3 feat: enhance security and update SFM/SFA compatibility.
Security: Add pinnedPeerCertSha256 for Hy2/Trojan in v2rayN to prevent MITM (replaces AllowInsecure).

Compatibility: Refactor SFM/SFI/SFA configs for sing-box v1.13.0+.
2026-01-20 07:32:16 +00:00
fscarmenandGitHub 63e80cff38 feat: optimize IP info retrieval and add node flag emojis
1. Implement self-hosted IP API for faster data fetching and improved stability.

2. Add region-specific flag emojis to node names for a more intuitive visual experience.
2026-01-03 12:00:49 +08:00
fscarmen 146f21f780 Restore statistics of run-times. 2025-12-22 11:47:48 +00:00
fscarmen a7dd49d7ec Fix Alpine compatibility: use musl libc instead of glibc. https://github.com/fscarmen/sing-box/issues/249 2025-12-21 01:42:09 +00:00
fscarmen a58ca29f42 Fix Alpine compatibility and improve process management.
- Fix Alpine compatibility issues
- Correct process supervision on Alpine
- Improve application PID detection logic
2025-12-18 16:16:25 +00:00
fscarmen d7cdde95f6 v1.3.2 feat: Add Argo tunnel creation via Cloudflare API
- Auto-create Argo tunnels using Cloudflare API tokens with auto DNS setup
- Intelligent GitHub proxy fallback: test direct first, then cycle proxies
- Support 3 Argo auth methods: Token, Json, and API token
- Add comprehensive API token permission requirements to README
- Update documentation with Cloudflare API setup instructions

Credits: Thanks to zmlu for Cloudflare API implementation approach
2025-12-15 13:36:23 +00:00
fscarmen cdc8601727 feat: Add SNI support and self-signed certificate enhancements for multiple protocols
- Add SNI (Server Name Indication) support to Hysteria2, Tuic, Trojan, and AnyTLS protocols for improved TLS handshake compatibility
- Update self-signed certificate public key configuration across affected protocol inbound configurations
- Add detailed documentation on handling self-signed certificates in various client applications
- Include client-specific instructions for certificate validation and bypass methods
- Improve security posture by leveraging SNI for better certificate verification workflows
- Update configuration templates and inline comments for clarity on certificate usage per protocol
2025-12-09 14:51:03 +00:00
fscarmen f0240b9081 Add LICENSE (GNU GPL v3)
Add the full GNU General Public License v3.0 text to the project root (LICENSE) and
include the SPDX identifier (SPDX-License-Identifier: GPL-3.0-or-later). Update README
to reference the LICENSE file.
2025-11-21 11:42:33 +00:00
fscarmen 8ebd2d54f6 Switched the image from supervisord to s6-overlay because it provides a much smaller memory footprint.
s6-overlay vs supervisord — Memory Footprint Comparison

s6-overlay:
Uses only 1–2 MB of RAM. Its service processes typically consume around 200 KB RSS each.
Extremely lightweight, written in C, minimal overhead.

supervisord:
Consumes roughly 10–15 MB of RAM in real-world usage.
Implemented in Python, so it naturally has a higher baseline memory footprint (≈8–10× s6-overlay).
2025-11-16 01:38:44 +00:00
fscarmen 4713fc4cca Optimized Sing-box deployment with local-first Reality key handling for reduced latency, DNF integration for modern CentOS systems, and Supervisor as PID 1 in Docker for robust process supervision.
1. Local-First Reality Key Computation: Prioritize on-device calculation of public key from private key for faster processing; fallback to API only if local fails, reducing latency and API calls.

2. DNF Support for CentOS 8+: Replace YUM with DNF on CentOS 8 and later for improved dependency resolution and speed, with backward compatibility for older systems.

3. Ensure Supervisor runs as true PID 1 in Docker container for proper signal handling and supervision.
2025-11-15 03:07:34 +00:00
fscarmen bd89cd8964 Enhance installation menu, fix Nginx status display, improve CentOS 7 compatibility, and add conditional Nginx startup for WS protocol support. https://github.com/fscarmen/sing-box/issues/232
1. Add quick install mode to the menu for faster, automated setup.

    2. Fix bug causing incorrect display of Nginx running status.

    3. Resolve compatibility issues specific to CentOS 7 environments.

    4. Introduce Nginx process startup in the guardian script for WS protocol (previo
usly unsupported due to missing Nginx dependency).
2025-11-13 12:55:55 +00:00
fscarmen 76920a992b v1.3.1 Quick Install Mode and Custom Reality Key Support.
1. Reality Configuration Update: In Reality configurations, the original multiplexing (multiplex) has been replaced with xtls-rprx-vision flow control, improving transmission efficiency, reducing latency, and enhancing security. The original configuration conversion script command remains fully compatible and unchanged — bash <(curl -sSL https://raw.githubusercontent.com/fscarmen/tools/main/vision.sh).

2. Quick Install Mode: Added a one-click installation feature that auto-fills all parameters, simplifying the deployment process. Chinese users can use -l or -L; English users can use -k or -K. Case-insensitive support makes operations more flexible.

3. Custom Reality Key Support: In response to user feedback, you can now specify a custom Reality private key via --REALITY_PRIVATE=<privateKey>. The script will automatically compute the corresponding public key using the integrated API. If left blank, it generates a random private-public key pair in real-time.

4. Enhanced HTTP + Reality Support in Clash Clients: Added full compatibility for HTTP + Reality transport in Clash clients, improving connection stability and performance.
2025-11-12 10:39:08 +00:00
fscarmen c1cc9d372e v1.3.0 Replace multiplex with xtls-rprx-vision flow control in reality configuration. 2025-11-11 02:56:12 +00:00
fscarmen 55779c3f7d feat: Enhance self-signed certs with DNS SAN and add insecure=1 support to v2rayN TUIC/Trojan URIs. 2025-11-08 16:13:01 +00:00
fscarmen adcaf813fc v1.2.19 Enhance security by replacing certificate skipping with certificate fingerprint verification
This commit improves the security posture for Shadowrocket, Clash, and sing-box clients by implementing certificate fingerprint validation instead of the less secure certificate skipping approach.

Key changes:
- Shadowrocket: Replaced insecure TLS validation with HPKP-based certificate fingerprint verification
- Clash: Updated configuration to use certificate fingerprints instead of skip-cert-verify flags
- sing-box: Implemented certificate_public_key_sha256 verification for enhanced TLS security

This change ensures that only connections with verified server certificates are accepted, significantly reducing the risk of man-in-the-middle attacks while maintaining compatibility with self-signed certificates.
2025-11-06 09:16:58 +00:00
fscarmen 6465d2ef8d Remove statistics of run-times. 2025-10-31 05:16:55 +00:00
fscarmenandGitHub 8ee7f904ff Fix bug where UUID was missing from nginx config path after changing port. 2025-10-19 11:58:59 +08:00
fscarmenandGitHub d05a2fbe9c sing-box v1.13.0-alpha.7 return to working. 2025-08-27 23:15:48 +08:00
fscarmen 633623dfdf v1.2.18 Support AnyTLS URI in v2rayN v7.14.3+ 2025-08-27 07:54:16 +00:00
fscarmen 85917ee7f4 Fix a bug in Clash proxy format; Change the Github Proxy. 2025-08-22 14:00:28 +00:00
fscarmenandGitHub 09a1d2104f Fix a bug in checking ChatGPT unlock. 2025-08-02 04:24:48 +08:00
fscarmenandGitHub d2a005647c Thanks to [Sharon](https://sharon.io). 2025-07-29 18:32:51 +08:00
fscarmen 56004f8f75 Modify the API URL for counting runtime statistics. 2025-07-28 08:33:11 +00:00
fscarmen 78f0bb5995 Fix the bug related to iproute2 dependency installation in Alpine system. 2025-07-25 15:10:13 +00:00
fscarmen 464c5dc714 Modify DNS strategy logic to use ping for detecting IPv4 and IPv6 network connectivity. 2025-07-24 13:39:02 +00:00
fscarmen ade20bb77e Fix a bug in non-interactive installation. 2025-07-14 06:50:56 +00:00
fscarmen b520674f09 Prioritize using a GitHub proxy and replace the script execution count tracking service. 2025-07-12 04:18:19 +00:00
fscarmen 38a7f4cd77 Fix the issue where AnyTLS URI is not displayed in Shadowrocket. 2025-07-01 08:19:41 +00:00
fscarmen c37baf743c fix bug when upgrading sing-box to the latest core version. 2025-05-19 04:23:42 +00:00
fscarmenandGitHub 5dc6bc2ea4 fix: GitHub API 403 rate limit error caused sing-box download failure. 2025-05-11 12:40:48 +08:00
fscarmen 049e0105cd sing-box v1.1.12.0-beta.8 return to working. 2025-04-29 17:02:32 +00:00
fscarmen 3b5a945238 Fix: downgrade sing-box to v1.12.0-beta.6 due to critical bug in beta.7 2025-04-29 07:15:40 +00:00
fscarmen 6e54af3170 v1.2.17 Added the ability to change CDNs online using [sb -d]. 2025-04-26 02:20:44 +00:00
fscarmenandGitHub 681a2ad7b7 Solving CentOS7 firewall problems. 2025-04-23 11:02:06 +08:00
fscarmenandGitHub a12ff6acb6 Add Anytls URI for Nekobox. 2025-04-19 22:46:49 +08:00
fscarmen ee030a8e09 v1.2.16 Use OpenRC on Alpine to replace systemctl (Python3-compatible version). 2025-04-07 02:01:40 +00:00
fscarmen 712185c578 v1.2.15 AnyTLS supports output for clients such as Shadowrocket, Clash Mihomo, and Sing-box. 2025-04-05 14:18:05 +00:00
fscarmen 5312718dde Use Firebase realtime database + Netlify cloud function to replace hits.seeyoufarm.com for usage statistics; Replace CF CDN domains. 2025-04-03 07:45:56 +00:00
fscarmen 974fe8736d Adapt to the new DNS configuration format in Sing-box v1.12 alpha.18+. 2025-04-01 15:22:17 +00:00
fscarmen 9795b9ffcd Update config file describe. 2025-03-27 06:02:02 +00:00
fscarmen bd3e1777b7 domain_strategy is merged to domain_resolver in sing-box 1.12.0; Clash support TCP Brutal. 2025-03-25 12:52:30 +00:00
fscarmen d6ab0a626d v1.2.14 Added support for anytls protocol. 2025-03-24 00:53:26 +00:00
fscarmen bf575805bb v1.2.13 Compatible with Sing-box 1.12.0-alpha.18 2025-03-18 05:43:17 +00:00
fscarmenandGitHub 490940b0af Update mirror.yml 2025-02-06 17:28:34 +08:00
fscarmen b44432c55b v1.2.12 Add a mandatory version file. 2025-01-31 07:17:16 +00:00