What's Changed
- Go v1.27 and Xray-core v26.9.30
- Xray-core v26.9.30 compatibility: udphop mask, new xDNS/xICMP schema, WireGuard remoteDNS
- MASQUE (CONNECT-IP) inbound and outbound
- XDRIVE transport for inbounds and outbounds
- Finalmask: noise "exp" type, new QUIC parameters and Hysteria masquerade xForwarded
- Finalmask: BBR profile next to congestion in QUIC parameters
- Finalmask: UDP mask lists per transport and mkcp-legacy
- Finalmask: XMC (Minecraft) TCP mask with Mojang profile lookup
- Share links carry the finalmask in
fm(VLESS, Trojan, Shadowsocks), and outbounds import it - Blackhole custom response and routing rule localOS
- TUN: system routes, system DNS to gateway and Windows leak blocking
- non-interactive install #1650
- limit xray version to minimum v26.9.30
- update dependencies
Upgrade note: This version needs Xray-core v26.9.30 or later, and older cores are no longer offered in the panel. Saved outbounds are migrated automatically on first start: Hysteria port hopping (
quicParams.udpHop) becomes audphopmask,proxySettingsbecomessockopt.dialerProxy, and WireGuarddomainStrategybecomes the outboundtargetStrategy. Shadowsocks 2022 inbounds whose keys have the wrong size for their method (every2022-blake3-aes-128-gcminbound created by the panel) get new keys. Xray could not start with those keys, so the inbounds never worked, but their clients need new links. Back up/etc/x-ui/x-ui.dbfirst if you may want to roll back.
Bug fixes
- Shadowsocks 2022 keys: right size per method, wrong keys rejected, stored ones repaired
- adding Shadowsocks 2022 users over the API without restarting Xray
- valid Header Custom mask items
- cron timezone #1648
- xray release limit check
- data race in the panel log buffer