zfl9/chinadns-ng
chinadns 重构增强版,支持域名分流、ipset/nftset、UDP/TCP/DoT observed · 2026-08-28
Health v2 · maintenance only
47/100
- Activity 36
- Release rhythm 30
- Longevity 100
How is this computed?
round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-02. Adoption (stars, forks) is never an input.
- gap_med: 43.0
- age_days: 2599
- days_rel: 389
- days_push: 389
- n_releases_24m: 7
Adoption not part of the score
1374 stars · 200 forks observed · 2026-08-28
What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded
ChinaDNS-NG is a rewritten and enhanced version of ChinaDNS that splits DNS queries between domestic (China) and trusted upstream DNS servers based on domain lists like chnlist and gfwlist. It supports UDP/TCP/DoT upstreams, dynamic ipset/nftset population, DNS caching, and fine-grained IPv6 filtering to support transparent proxy and anti-censorship routing setups.
Use cases
- split DNS queries between Chinese and foreign DNS servers
- avoid DNS poisoning when resolving blocked domains
- populate ipset or nftables sets with resolved IPs for transparent proxying
- prevent DNS leaks when using a VPN or proxy
- run a lightweight DNS forwarder on an OpenWrt router
- resolve Chinese domains via domestic DNS for CDN-friendly results
When to choose
- you need DNS-based traffic splitting for transparent proxy setups like ss-tproxy
- you want gfwlist/chnlist-based domain routing with ipset/nftset integration
- you run a Linux router or embedded device and need a fast, low-memory DNS splitter
- you need DoT support and DNS caching with stale-cache and pre-refresh features
When to avoid
- you need a general-purpose full-featured DNS server like dnsmasq or AdGuard Home
- you are not in a censorship/DNS-pollution scenario and just need a simple DNS resolver
- you need DNS-over-HTTPS upstreams, which are not supported
- you need a GUI-managed DNS solution
Facets
cli-tool · maturity active
networking proxy security caching networking privacy censorship-circumvention self-hosted cli embedded dns-splitting gfwlist chnlist ipset nftables dns-over-tls transparent-proxy openwrt anti-dns-poisoning command-line linux
1 source
- readme: https://github.com/zfl9/chinadns-ng · fetched 2026-08-28 · f3792c5285c9
Member repositories
| Repository | Role | Health v2 |
|---|---|---|
| zfl9/chinadns-ng | main | 47 |
For agents
markdown · JSON · MCP: product_card(name="zfl9/chinadns-ng")
Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem