reality: Add support_x25519mlkem768 option

This commit is contained in:
Shtorm
2026-09-20 22:01:43 +03:00
parent 311d9b51eb
commit aae5f7ff02
3 changed files with 38 additions and 22 deletions
+12 -1
View File
@@ -152,7 +152,8 @@ icon: material/new-box
"reality": {
"enabled": false,
"public_key": "jNXHt1yRo0vDuchQlIP6Z0ZvjT3KtzVI-T4E7RoLJS0",
"short_id": "0123456789abcdef"
"short_id": "0123456789abcdef",
"support_x25519mlkem768": false
}
}
```
@@ -825,6 +826,16 @@ Public key, generated by `sing-box generate reality-keypair`.
A hexadecimal string with zero to eight digits.
#### support_x25519mlkem768
==Client only==
Keep the `X25519MLKEM768` post-quantum hybrid key share in the ClientHello instead of stripping it.
Required by REALITY servers running `xtls/reality` built after 2026-09-08 (Xray-core >= v26.9.8), which reject
ClientHellos that don't offer it before any plain `X25519` share. Older REALITY servers may fail the handshake
if this key share is present, so it is disabled by default.
#### max_time_difference
==Server only==