📄 torrc.complete.in
字号:
## Bind to this address to listen for connections from SOCKS-## speaking applications. (Default: 127.0.0.1) You can also spec-## ify a port (e.g. 192.168.0.1:9100). This directive can be spec-## ified multiple times to bind to multiple addresses/ports.#SOCKSBindAddress IP[:PORT]## Set an entrance policy for this server, to limit who can con-## nect to the SOCKS ports. The policies have the same form as## exit policies below.#SOCKSPolicy policy,policy,...## For each value in the comma separated list, Tor will track## recent connections to hosts that match this value and attempt## to reuse the same exit node for each. If the value is prepended## with a ’.’, it is treated as matching an entire domain. If one## of the values is just a ’.’, it means match everything. This## option is useful if you frequently connect to sites that will## expire all your authentication cookies (ie log you out) if your## IP address changes. Note that this option does have the disad-## vantage of making it more clear that a given history is associ-## ated with a single user. However, most people who would wish to## observe this will observe it through cookies or other protocol-## specific means anyhow.#TrackHostExits host,.domain,...## Since exit servers go up and down, it is desirable to expire## the association between host and exit server after NUM seconds.## The default is 1800 seconds (30 minutes).#TrackHostExitsExpire NUM## If this option is set to 1, we pick a few entry servers as our## "helpers", and try to use only those fixed entry servers. This## is desirable, because constantly changing servers increases the## odds that an adversary who owns some servers will observe a## fraction of your paths. (Defaults to 0; will eventually## default to 1.)#UseHelperNodes 0|1## If UseHelperNodes is set to 1, we will try to pick a total of## NUM helper nodes as entries for our circuits. (Defaults to 3.)#NumHelperNodes NUM## Section 3: Server Options Only## The IP or fqdn of this server (e.g. moria.mit.edu). You can## leave this unset, and Tor will guess your IP.#Address address## Administrative contact information for server.#ContactInfo email_address## Set an exit policy for this server. Each policy is of the form## "accept|reject ADDR[/MASK][:PORT]". If /MASK is omitted then## this policy just applies to the host given. Instead of giving## a host or network you can also use "*" to denote the universe## (0.0.0.0/0). PORT can be a single port number, an interval of## ports "FROM_PORT-TO_PORT", or "*". If PORT is omitted, that## means "*".## ## For example, "reject 127.0.0.1:*,reject 192.168.1.0/24:*,accept## *:*" would reject any traffic destined for localhost and any## 192.168.1.* address, but accept anything else.## ## This directive can be specified multiple times so you don’t## have to put it all on one line.## ## See RFC 3330 for more details about internal and reserved IP## address space. Policies are considered first to last, and the## first match wins. If you want to _replace_ the default exit## policy, end your exit policy with either a reject *:* or an## accept *:*. Otherwise, you’re _augmenting_ (prepending to) the## default exit policy. The default exit policy is:## reject 0.0.0.0/8## reject 169.254.0.0/16## reject 127.0.0.0/8## reject 192.168.0.0/16## reject 10.0.0.0/8## reject 172.16.0.0/12## reject *:25## reject *:119## reject *:135-139## reject *:445## reject *:1214## reject *:4661-4666## reject *:6346-6429## reject *:6699## reject *:6881-6999## accept *:*#ExitPolicy policy,policy,...## If you have more than this number of onionskins queued for## decrypt, reject new ones. (Default: 100)#MaxOnionsPending NUM## Declare that this Tor server is controlled or administered by a## group or organization identical or similar to that of the other## named servers. When two servers both declare that they are in## the same ’family’, Tor clients will not use them in the same## circuit. (Each server only needs to list the other servers in## its family; it doesn’t need to list itself, but it won’t hurt.)#MyFamily nickname,nickname,...## Set the server’s nickname to ’name’.#Nickname name## If you set NoPublish 1, Tor will act as a server if you have an## ORPort defined, but it will not publish its descriptor to the## dirservers. This option is useful if you're testing out your## server, or if you're using alternate dirservers (e.g. for other## Tor networks such as Blossom). (Default: 0)#NoPublish 0|1## How many processes to use at once for decrypting onionskins.## (Default: 1)#NumCPUs num## Advertise this port to listen for connections from Tor clients## and servers.#ORPort PORT## Bind to this IP address to listen for connections from Tor## clients and servers. If you specify a port, bind to this port## rather than the one specified in ORPort. (Default: 0.0.0.0)#ORBindAddress IP[:PORT]## Whenever an outgoing connection tries to connect to one of a## given set of addresses, connect to target (an address:port## pair) instead. The address pattern is given in the same format## as for an exit policy. The address translation applies after## exit policies are applied. Multiple RedirectExit options can## be used: once any one has matched successfully, no subsequent## rules are considered. You can specify that no redirection is## to be performed on a given set of addresses by using the spe-## cial target string "pass", which prevents subsequent rules from## being considered.#RedirectExit pattern target## When we get a SIGINT and we're a server, we begin shutting## down: we close listeners and start refusing new circuits. After## NUM seconds, we exit. If we get a second SIGINT, we exit imme-## diately. (Default: 30 seconds)#ShutdownWaitLengthNUM## Every time the specified period elapses, Tor uploads its server## descriptors to the directory servers. This information is also## uploaded whenever it changes. (Default: 20 minutes)#DirPostPeriod N seconds|minutes|hours|days|weeks## A token bucket limits the average relayed bandwidth (server## traffic only, not client traffic) on this node to the specified## number of bytes per second.#RelayBandwidthRate N bytes|KB|MB|GB|TB## Limit the maximum token bucket size (also known as the burst) for## relayed traffic (server traffic only, not client traffic) to the## given number of bytes.#RelayBandwidthBurst N bytes|KB|MB|GB|TB## Never send more than the specified number of bytes in a given## accounting period, or receive more than that number in the## period. For example, with AccountingMax set to 1 GB, a server## could send 900 MB and receive 800 MB and continue running. It## will only hibernate once one of the two reaches 1 GB. When the## number of bytes is exhausted, Tor will hibernate until some## time in the next accounting period. To prevent all servers## from waking at the same time, Tor will also wait until a random## point in each period before waking up. If you have bandwidth## cost issues, enabling hibernation is preferable to setting a## low bandwidth, since it provides users with a collection of## fast servers that are up some of the time, which is more useful## than a set of slow servers that are always "available".#AccountingMax N bytes|KB|MB|GB|TB## Specify how long accounting periods last. If month is given,## each accounting period runs from the time HH:MM on the dayth## day of one month to the same day and time of the next. (The## day must be between 1 and 28.) If week is given, each account-## ing period runs from the time HH:MM of the dayth day of one## week to the same day and time of the next week, with Monday as## day 1 and Sunday as day 7. If day is given, each accounting## period runs from the time HH:MM each day to the same time on## the next day. All times are local, and given in 24-hour time.## (Defaults to "month 1 0:00".)#AccountingStart day|week|month [day] HH:MM## Section 4: Directory Server Options (for running your own Tor## network)## When this option is set to 1, Tor operates as an authoritative## directory server. Instead of caching the directory, it gener-## ates its own list of good servers, signs it, and sends that to## the clients. Unless the clients already have you listed as a## trusted directory, you probably do not want to set this option.## Please coordinate with the other admins at ## tor-ops@freehaven.net if you think you should be a directory.#AuthoritativeDirectory 0|1## Advertise the directory service on this port.#DirPort PORT## Bind the directory service to this address. If you specify a## port, bind to this port rather than the one specified in DirPort.## (Default: 0.0.0.0)#DirBindAddress IP[:PORT]## Set an entrance policy for this server, to limit who can con-## nect to the directory ports. The policies have the same form## as exit policies above.#DirPolicy policy,policy,...## STRING is a command-separated list of Tor versions currently## believed to be safe. The list is included in each directory,## and nodes which pull down the directory learn whether they need## to upgrade. This option can appear multiple times: the values## from multiple lines are spliced together.#RecommendedVersions STRING## If set to 1, Tor will accept router descriptors with arbitrary## "Address" elements. Otherwise, if the address is not an IP or## is a private IP, it will reject the router descriptor. Defaults## to 0.#DirAllowPrivateAddresses 0|1## If set to 1, Tor tries to build circuits through all of the## servers it knows about, so it can tell which are up and which## are down. This option is only useful for authoritative direc-## tories, so you probably don't want to use it.#RunTesting 0|1## Section 5: Hidden Service Options (clients and servers)## Store data files for a hidden service in DIRECTORY. Every hid-## den service must have a separate directory. You may use this## option multiple times to specify multiple services.#HiddenServiceDir DIRECTORY## Configure a virtual port VIRTPORT for a hidden service. You## may use this option multiple times; each time applies to the## service using the most recent hiddenservicedir. By default,## this option maps the virtual port to the same port on## 127.0.0.1. You may override the target port, address, or both## by specifying a target of addr, port, or addr:port.#HiddenServicePort VIRTPORT [TARGET]## If possible, use the specified nodes as introduction points for## the hidden service. If this is left unset, Tor will be smart## and pick some reasonable ones; most people can leave this unset.#HiddenServiceNodes nickname,nickname,...## Do not use the specified nodes as introduction points for the## hidden service. In normal use there is no reason to set this.#HiddenServiceExcludeNodes nickname,nickname,...## Publish the given rendezvous service descriptor versions for the## hidden service.#HiddenServiceVersion 0,2## Every time the specified period elapses, Tor uploads any ren-## dezvous service descriptors to the directory servers. This## information is also uploaded whenever it changes. ## (Default: 20 minutes)#RendPostPeriod N seconds|minutes|hours|days|weeks#
⌨️ 快捷键说明
复制代码
Ctrl + C
搜索代码
Ctrl + F
全屏模式
F11
切换主题
Ctrl + Shift + D
显示快捷键
?
增大字号
Ctrl + =
减小字号
Ctrl + -