Features
- Support ACL configuration
- Examples could be found in shadowsocks/shadowsocks-libev
sslocal
supports transparent proxy protocol (experimental)- TCP
- Linux:
iptables
withREDIRECT
orTPROXY
rules - macOS:
pf
- FreeBSD:
pf
oripfw
, not tested - OpenBSD:
pf
, not tested
- Linux:
- UDP
- Linux:
iptables
withTPROXY
rules - FreeBSD/OpenBSD:
pf
, not tested
- Linux:
- Usage: Run
sslocal
with--protocol redir
- TCP
- Better command line option verifications
Fixed BUGs
sslocal
with HTTP protocol clears Hop-by-Hop headersCryptoStream
is now thread safe- #222
rc4
cipher is now working
Miscellaneous
- Integrate into the Android's client implementation, shadowsocks/shadowsocks-android#2452
- Not finished yet, you shouldn't use them in production environment
- Abort on
panic!
for release builds - #223
--log-without-time
command line option is added back - #205
-6
command line option to resolve host names to IPv6 addresses first
BREAKING Changes
- Merged
sstunnel
andssredir
intosslocal
- DNS-over-HTTPS and DNS-over-TLS are disabled by default, could be enabled by features
dns-over-https
anddns-over-tls
- #217 Logging output uses local datetime instead of UTC
- Logging output is now in customized format