Miscellaneous Rule
DEST-PORT
Rule matches if the target port of the request matches. The value can be a single port, a range (8000-9000), a comparison (>1024, <1024, >=50000, <=1023), or several of these joined with / (80/443/8000-9000, the mihomo form). A malformed value is a configuration error, not a rule that silently never matches. DST-PORT is accepted as an alias.
DEST-PORT,80,DIRECT
DEST-PORT,8000-9000,DIRECT
DEST-PORT,>=50000,Proxy
DST-PORT,80/443,Proxy
SRC-IP
Rule matches if the client IP address of the request matches. Only for remote machines. CIDR notation is also accepted.
SRC-IP,192.168.20.100,DIRECT
SRC-IP,192.168.20.0/24,DIRECT
SRC-PORT
Rule matches if the source port of the request matches. It accepts the same ranges, comparisons and / lists as DEST-PORT.
SRC-PORT,52345,DIRECT
IN-PORT
Rule matches if the incoming port of the request matches. Useful while Chute listening on multiple ports. It accepts the same ranges, comparisons and / lists as DEST-PORT.
IN-PORT,6152,DIRECT
Notice: IN-PORT matches connections arriving through the HTTP and SOCKS5 proxy inbounds. A TUN session has no listener behind it, so its inbound port is left at 0 — and 0 is a port the matcher accepts. Every form whose range starts at 0 therefore matches all TUN traffic as well:
IN-PORT,<1024,IN-PORT,<=1023andIN-PORT,0-9000match every TUN session, while a single port and the>and>=forms match none. Pair IN-PORT with IN-TYPE when the rule should only take proxy-inbound traffic.