2023-09-17 13:19:34 +08:00
回复了 yikyo 创建的主题 路由器 不聊苹果,聊点家庭网络出国方案
试试大鹅 ebpf 层的
dns 泄漏 设置好国内外的域名 一般没事
2023-09-16 10:06:50 +08:00
回复了 co2maker 创建的主题 宽带症候群 河南联通到日本 NTT 好稳
2023-09-15 19:28:35 +08:00
回复了 Aurora0 创建的主题 iPhone iPhone 15 使用 USB 2.0 的原因
做的好 下次别这样了🙃
@lo0pback 有的光猫自带镜像功能
只要电视(盒子)还能自己安装 app
2023-09-14 15:41:30 +08:00
回复了 DJCNMHG 创建的主题 macOS macOS 14 RC 你们升级了吗?体验如何?
原来 mullvad 和 tor 有合作啊
第一次见用 pf 的服务商😇

cat pfdump.txt
r scrub-anchor "com.apple/*" all fragment reassemble
r anchor "com.apple/*" all
r anchor "mullvad" all
n nat-anchor "com.apple/*" all
n rdr-anchor "com.apple/*" all
n rdr-anchor "mullvad" all
A com.apple
A mullvad
com.apple r anchor "200.AirDrop/*" all
com.apple r anchor "250.ApplicationFirewall/*" all
com.apple A com.apple/200.AirDrop
com.apple A com.apple/250.ApplicationFirewall
mullvad r pass quick on lo0 all flags any keep state
mullvad r pass out quick inet proto udp from any port = 68 to port = 67 no state
mullvad r pass in quick inet proto udp from any port = 67 to any port = 68 no state
mullvad r pass out quick inet6 proto udp from fe80::/10 port = 546 to ff02::1:2 port = 547 no state
mullvad r pass out quick inet6 proto udp from fe80::/10 port = 546 to ff05::1:3 port = 547 no state
mullvad r pass in quick inet6 proto udp from fe80::/10 port = 547 to fe80::/10 port = 546 no state
mullvad r pass out quick inet6 proto ipv6-icmp from any to ff02::2 icmp6-type routersol no state
mullvad r pass in quick inet6 proto ipv6-icmp from fe80::/10 to any icmp6-type routeradv no state
mullvad r pass in quick inet6 proto ipv6-icmp from fe80::/10 to any icmp6-type redir no state
mullvad r pass out quick inet6 proto ipv6-icmp from any to ff02::1:ff00:0/104 icmp6-type neighbrsol no state
mullvad r pass out quick inet6 proto ipv6-icmp from any to fe80::/10 icmp6-type neighbrsol no state
mullvad r pass in quick inet6 proto ipv6-icmp from fe80::/10 to any icmp6-type neighbrsol no state
mullvad r pass out quick inet6 proto ipv6-icmp from any to fe80::/10 icmp6-type neighbradv no state
mullvad r pass in quick inet6 proto ipv6-icmp all icmp6-type neighbradv no state
mullvad r pass out quick on utun3 inet proto tcp from any to port = 53 flags S/SA keep state
mullvad r pass out quick on utun3 inet proto udp from any to port = 53 no state
mullvad r pass out quick inet proto tcp from any to port = 443 user = 0 flags S/SA keep state
mullvad r block return out quick proto tcp from any to any port = 53
mullvad r block return out quick proto udp from any to any port = 53
mullvad r pass quick on utun3 all flags S/SA keep state
mullvad r pass out quick inet from any to no state
mullvad r pass in quick inet from to any no state
mullvad r pass out quick inet from any to no state
mullvad r pass in quick inet from to any no state
mullvad r pass out quick inet from any to no state
mullvad r pass in quick inet from to any no state
mullvad r pass out quick inet from any to no state
mullvad r pass in quick inet from to any no state
mullvad r pass out quick inet6 from any to fe80::/10 no state
mullvad r pass in quick inet6 from fe80::/10 to any no state
mullvad r pass out quick inet6 from any to fc00::/7 no state
mullvad r pass in quick inet6 from fc00::/7 to any no state
mullvad r pass out quick inet from any to no state
mullvad r pass out quick inet from any to no state
mullvad r pass out quick inet from any to no state
mullvad r pass out quick inet6 from any to ff01::/16 no state
mullvad r pass out quick inet6 from any to ff02::/16 no state
mullvad r pass out quick inet6 from any to ff03::/16 no state
mullvad r pass out quick inet6 from any to ff04::/16 no state
mullvad r pass out quick inet6 from any to ff05::/16 no state
mullvad r pass out quick inet proto udp from any port = 67 to any port = 68 no state
mullvad r pass in quick inet proto udp from any port = 68 to port = 67 no state
mullvad r block return out quick all
mullvad r block drop quick all

2023-09-14 12:21:06 +08:00
回复了 DJCNMHG 创建的主题 macOS macOS 14 RC 你们升级了吗?体验如何?
用 pf 的不多吧
这家 vpn 会用到 pf 吗
2023-09-14 12:14:46 +08:00
回复了 luckykong 创建的主题 macOS Sonama 正式发布了?
@wsjjacky 这个设置界面 ui 太难受了 还不如 ipad 呢
2023-09-11 15:41:46 +08:00
回复了 zhwguest 创建的主题 微软 大家怎么看微软的这次 Storm-0558 攻击啊?
只能说 nb.
2023-09-11 12:08:20 +08:00
回复了 FaiChou 创建的主题 macOS macOS 中是如何将 utun 网卡接口接管所有网络请求的?
@FaiChou 要看各自的设置和 log 了
2023-09-11 10:17:44 +08:00
回复了 FaiChou 创建的主题 macOS macOS 中是如何将 utun 网卡接口接管所有网络请求的?
原来是这样啊 解惑了

firewall 不是问题 macos 上有 pf

之前测试 google one vbn
它的 utun 会路由所有的 v4 v6
第一次遇到遇到路由 v6 的 即使本机没有 v6 地址
而且会修改 dns 到 4.4 和对应的 v6 地址
cat /etc/resolv.conf

系统设置里面的自定义 dns 已经失效了 google 的 dns 最优先了
2023-09-11 09:22:03 +08:00
回复了 FaiChou 创建的主题 macOS macOS 中是如何将 utun 网卡接口接管所有网络请求的?
@MrGba2z 但是软件也可以不遵守规则强制使用某一个
