sing-box/docs
世界 aabaa42634
Reject pure-IP rule-set references without match_response
DNS rules referencing rule-sets that contain only ip_cidr predicates
silently stopped matching when legacy DNS mode was disabled, because the
IP-CIDR branch cannot match against an in-flight DNS query. The existing
validation intentionally let every rule_set through on the premise that
mixed sets still work via their non-IP branches, which is only true when
such a branch exists. Track whether a rule-set carries any non-IP-CIDR
predicate and reject pure-IP references the same way bare ip_cidr fields
are already rejected.
2026-06-08 08:51:41 +08:00
..
assets
clients Add package_name_regex route, DNS and headless rule item 2026-06-08 08:51:38 +08:00
configuration Add TLS spoof support 2026-06-08 08:51:41 +08:00
installation Add cloudflared inbound 2026-06-08 08:51:38 +08:00
manual Update uTLS to v1.8.2 2026-01-17 04:54:18 +08:00
changelog.md Add evaluate DNS rule action and related rule items 2026-06-08 08:51:34 +08:00
CNAME
deprecated.md Refactor: HTTP clients, unified HTTP2/QUIC options, Apple engines 2026-06-08 08:51:40 +08:00
deprecated.zh.md Refactor: HTTP clients, unified HTTP2/QUIC options, Apple engines 2026-06-08 08:51:40 +08:00
index.md
index.zh.md
migration.md Reject pure-IP rule-set references without match_response 2026-06-08 08:51:41 +08:00
migration.zh.md Reject pure-IP rule-set references without match_response 2026-06-08 08:51:41 +08:00
sponsors.md documentation: Remove warp ads 2026-04-20 09:49:39 +08:00
support.md
support.zh.md