class DnscryptProxy < Formula desc "Secure communications between a client and a DNS resolver" homepage "https://github.com/DNSCrypt/dnscrypt-proxy" url "https://github.com/jedisct1/dnscrypt-proxy/archive/2.0.36.tar.gz" sha256 "ddc9225b86bf3595ceedaed6470764e6194241ce26cfea86f9fdfcf6bd3a7575" head "https://github.com/DNSCrypt/dnscrypt-proxy.git" bottle do cellar :any_skip_relocation sha256 "53a0f6b9e1b560cfbf35445b54f3e0fd44ffd983fd94d023bbd7fbab52464a76" => :catalina sha256 "dd830600e3cea667e59f0a7e03b7432eb9e1831819f27a0b80deff76b355a6ab" => :mojave sha256 "ddda9b1d5ca4d111023201062fe81914d1cb56ce0df8de7b5b3501db466c5eac" => :high_sierra end depends_on "go" => :build def install ENV["GOPATH"] = buildpath prefix.install_metafiles dir = buildpath/"src/github.com/jedisct1/dnscrypt-proxy" dir.install buildpath.children cd dir/"dnscrypt-proxy" do system "go", "build", "-ldflags", "-X main.version=#{version}", "-o", sbin/"dnscrypt-proxy" pkgshare.install Dir["example*"] etc.install pkgshare/"example-dnscrypt-proxy.toml" => "dnscrypt-proxy.toml" end end def caveats; <<~EOS After starting dnscrypt-proxy, you will need to point your local DNS server to 127.0.0.1. You can do this by going to System Preferences > "Network" and clicking the "Advanced..." button for your interface. You will see a "DNS" tab where you can click "+" and enter 127.0.0.1 in the "DNS Servers" section. By default, dnscrypt-proxy runs on localhost (127.0.0.1), port 53, balancing traffic across a set of resolvers. If you would like to change these settings, you will have to edit the configuration file: #{etc}/dnscrypt-proxy.toml To check that dnscrypt-proxy is working correctly, open Terminal and enter the following command. Replace en1 with whatever network interface you're using: sudo tcpdump -i en1 -vvv 'port 443' You should see a line in the result that looks like this: resolver.dnscrypt.info EOS end plist_options :startup => true def plist; <<~EOS Label #{plist_name} KeepAlive RunAtLoad ProgramArguments #{opt_sbin}/dnscrypt-proxy -config #{etc}/dnscrypt-proxy.toml UserName root StandardErrorPath /dev/null StandardOutPath /dev/null EOS end test do assert_match version.to_s, shell_output("#{sbin}/dnscrypt-proxy --version") config = "-config #{etc}/dnscrypt-proxy.toml" output = shell_output("#{sbin}/dnscrypt-proxy #{config} -list 2>&1") assert_match "Source [public-resolvers] loaded", output end end