Final Rule
The FINAL rule must be written after all other rules. It defines the default policy for requests which are not matched by any other rules. If the configuration contains no FINAL rule, Chute behaves as if FINAL,DIRECT were appended.
Example:
[Rule]
DOMAIN-SUFFIX,company.com,ProxyA
DOMAIN-KEYWORD,google,DIRECT
GEOIP,US,DIRECT
IP-CIDR,192.168.0.0/16,DIRECT
FINAL,ProxyB
dns-failed
Add dns-failed to the FINAL rule to rescue requests whose DNS lookup fails. When a request's verdict needs a local lookup — a DIRECT verdict, typically — and the lookup fails, the request is handed to the FINAL policy, which resolves the name on the proxy side, instead of failing. This applies in rule mode, to TCP and UDP, and only when the FINAL policy is not DIRECT. Without the option, the connection fails as before.
[Rule]
DOMAIN-SUFFIX,internal.example,DIRECT
FINAL,Proxy,dns-failed