oixClash installation and configuration
For Merlin firmware with the KoolCenter software center (Merlin mods and modified stock firmware). Use the build linked by the download center. oixClash takes over LAN devices with the configuration oixCloud delivers, so devices need no setup; other subscriptions cannot be imported. The plugin page is in Chinese, so its labels below are given in Chinese with a translation.
1. Choose the package
Open 软件中心 (Software Center) in the router admin page, check the platform it reports, then click the matching package below to download it directly. You do not need to open GitHub:
| Platform | Package | Common models |
|---|---|---|
| hnd | Download | Most models, such as RT-AX86U, RT-AX88U, GT-AX6000 and GT-AX11000 |
| mtk | Download | TUF-AX4200Q, TX-AX6000, RT-AX57 Go and similar |
| qca | Download | RT-AX89X |
| ipq32 | Download | ZenWiFi BD4 |
| ipq64 | Download | Model code TUF_6500 |
These links follow the latest stable release. You can also download the SHA256 checksums to verify file integrity.
The package is about 18 MB and needs room on JFFS. At run time the core takes about 48 MB of memory plus what the proxy itself uses, so a model with 512 MB of RAM or more is recommended.
2. Install offline
- Open 软件中心 → 离线安装 (Software Center → Offline Install) and upload the downloaded package.
- Keep the file name. Remove any
(1)a browser adds to repeated downloads, or the software center refuses the package. - When the installation finishes, return to the software center and open oixClash.
If the platform does not match, the software center says so and stops; install the package for your platform instead.
3. Sign in to oixCloud
Under oixCloud 账号 (oixCloud account), choose how to sign in:
- 登录令牌 (sign-in token): paste the access token copied from the oixCloud website or app, not a subscription URL.
- 邮箱和密码 (email and password): the password is only used for this sign-in and is not stored on the router.
After signing in, the page shows the account, plan, expiry date and traffic. A token from another oixCloud client is swapped for oixClash's own token, so its node filter is kept separately; tokens created on the website cannot be swapped and are used as they are.
4. Turn on the proxy
- Under 运行 (Run), turn on the switch and click 保存并应用 (Save and Apply).
- Wait for the log to report a successful start. The first run also downloads GeoIP data and takes a moment.
- 运行状态 (Status) shows the core as running with its version.
oixClash takes over TCP and DNS of devices on the main LAN. To proxy UDP such as games and voice calls, tick UDP 转发 (UDP forwarding) and save; it only works once the status reads that UDP is forwarded. Without UDP forwarding, keep 屏蔽 QUIC (Block QUIC) on so browsers fall back to TCP, which is proxied.
5. Verify with a LAN device
- Let the test device use the gateway and DNS the router hands out, and turn off the browser's secure DNS before testing.
- Visit a site that should go direct and one that needs the proxy.
- Click 打开控制面板 (Open Dashboard) and check the destination, matched rule and outbound in the connection list.
Traffic of the router itself and of guest networks does not pass through oixClash. Devices that use IPv6 bypass the proxy; the status warns about it, and setting the connection type on the IPv6 page to disabled is recommended.
6. Nodes, filters and updates
- Switch nodes: click 打开控制面板 and pick a node in a proxy group; the choice survives restarts.
- Node filter: 订阅管理 (Subscription Management) in the account row opens the website editor. After saving, click 更新节点 (Update Nodes) in the plugin to fetch them now, or wait for the daily update. The filter applies to every oixClash signed in to the same account; see Subscriptions and filters.
- Update the plugin: while it is turned on, the plugin checks for a new version daily, or click 检查更新 (Check for Updates) next to the version. When 更新到 x.y.z (Update to x.y.z) appears, click it; the plugin downloads and verifies the package before installing, and the proxy pauses briefly.
Troubleshooting
| Symptom | Next step |
|---|---|
| Offline install reports a platform mismatch or a bad file name | Download the package for the platform the software center reports and remove (1) from the file name |
| 运行状态 shows 登录已失效 (sign-in expired) | Click 退出登录 (Sign out), then sign in again |
| Status shows 账号没有可用的套餐 (no active plan) | Renew, then click 保存并应用 |
| Status shows 路由器时间尚未同步 (router time not synchronized), or the log says the time is wrong | Check the time zone and NTP server under Administration → System; the plugin starts by itself once the time syncs |
| UDP forwarding does not take effect | Click 自检 (Self-check) and look at the TPROXY and policy routing items; firmware without support only loses UDP, TCP stays proxied |
| Conflict with fancyss or MerlinClash | Turn off the other proxy plugin; only one can run |
| The router runs but a device still misbehaves | Check the device's gateway, DNS and IPv6, then the dashboard's connection list |
Before contacting support, click 自检 and send its result together with the plugin log from 查看日志 (View Log), with account details hidden.