Skip to content

伪造 SNI 后 522 证书错误 #173

Answered by SeaHOH
Franinc asked this question in 问答/咨询
Jan 25, 2021 · 9 comments · 5 replies
Discussion options

You must be logged in to vote

Ok,搞定。信任 ddos-guard,不验证 Host 即可。请谨慎使用这个配置,一定要搭配可靠的 DNS,即使这样也有风险。

把 ddos-guard 自签 CA 导出为 pem 格式,后缀也改成 pem,放入 cert/cacerts 文件夹。
nyaa.si = none@none

Replies: 9 comments 5 replies

Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
1 reply
@SeaHOH
Comment options

Answer selected by SeaHOH
Comment options

You must be logged in to vote
3 replies
@SeaHOH
Comment options

@ghost
Comment options

@SeaHOH
Comment options

Comment options

You must be logged in to vote
1 reply
@SeaHOH
Comment options

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
2 participants
Converted from issue

This discussion was converted from issue #172 on January 28, 2021 04:53.