moproxy
moproxy copied to clipboard
setup blacklist and whitelist
i want all traffic pass through direct connection expect some domains (like Privoxy program) Example:
* direct
*.test.com proxy
*.test2.org proxy
cdn.test2.org direct
I'm doing this on iptables/nftables level: let DNS resolver add IP addresses to ipset (or nft set), then match them on the firewall. I was using dnsmasq (w/ ipset feature) + iptables, then switched to unbound + dnsnfset + nftables solution.
But this only works on transparent proxy mode, not the SOCKS5 frontend, and it's way too complicated. I agree that the black/whitelist is a nice-to-have feature.