2025-12-15 12:58:40 +08:00
---
icon : material/new-box
---
2025-12-12 15:02:08 +08:00
2025-12-15 12:58:40 +08:00
!!! question "Since sing-box 1.13.0"
2025-12-12 15:02:08 +08:00
### Structure
```json
{
"type" : "naive" ,
"tag" : "naive-out" ,
"server" : "127.0.0.1" ,
"server_port" : 443 ,
"username" : "sekai" ,
"password" : "password" ,
"insecure_concurrency" : 0 ,
"extra_headers" : {},
2025-12-15 12:58:40 +08:00
"udp_over_tcp" : false | {},
2025-12-18 17:08:36 +08:00
"quic" : false ,
"quic_congestion_control" : "" ,
2025-12-12 15:02:08 +08:00
"tls" : {},
... // Dial Fields
}
```
2025-12-16 22:15:47 +08:00
!!! warning "Platform Support"
2025-12-12 15:02:08 +08:00
2025-12-16 22:15:47 +08:00
NaiveProxy outbound is only available on Apple platforms, Android, Windows and certain Linux builds.
**Official Release Build Variants:**
| Build Variant | Platforms | Description |
|---------------|-----------|-------------|
2026-03-09 15:04:44 +08:00
| (no suffix) | Linux amd64/arm64 | purego build, `libcronet.so` included |
| `-glibc` | Linux 386/amd64/arm/arm64/mipsle/mips64le/riscv64/loong64 | CGO build, dynamically linked with glibc, requires glibc >= 2.31 (loong64: >= 2.36) |
| `-musl` | Linux 386/amd64/arm/arm64/mipsle/riscv64/loong64 | CGO build, statically linked with musl |
| (no suffix) | Windows amd64/arm64 | purego build, `libcronet.dll` included |
For Linux, choose the glibc or musl variant based on your distribution's libc type.
2025-12-16 22:15:47 +08:00
**Runtime Requirements:**
- **Linux purego**: `libcronet.so` must be in the same directory as the sing-box binary or in system library path
- **Windows**: `libcronet.dll` must be in the same directory as `sing-box.exe` or in a directory listed in `PATH`
For self-built binaries, see [Build from source ](/installation/build-from-source/#with_naive_outbound ).
2025-12-12 15:02:08 +08:00
### Fields
#### server
==Required==
The server address.
#### server_port
==Required==
The server port.
#### username
Authentication username.
#### password
Authentication password.
#### insecure_concurrency
Number of concurrent tunnel connections. Multiple connections make the tunneling easier to detect through traffic analysis, which defeats the purpose of NaiveProxy's design to resist traffic analysis.
#### extra_headers
Extra headers to send in HTTP requests.
2025-12-15 12:58:40 +08:00
#### udp_over_tcp
UDP over TCP protocol settings.
See [UDP Over TCP ](/configuration/shared/udp-over-tcp/ ) for details.
2025-12-18 17:08:36 +08:00
#### quic
Use QUIC instead of HTTP/2.
#### quic_congestion_control
QUIC congestion control algorithm.
| Algorithm | Description |
|-----------|-------------|
| `bbr` | BBR |
| `bbr2` | BBRv2 |
| `cubic` | CUBIC |
| `reno` | New Reno |
`bbr` is used by default (the default of QUICHE, used by Chromium which NaiveProxy is based on).
2025-12-12 15:02:08 +08:00
#### tls
==Required==
TLS configuration, see [TLS ](/configuration/shared/tls/#outbound ).
2025-12-19 17:32:55 +08:00
Only `server_name` , `certificate` , `certificate_path` and `ech` are supported.
Self-signed certificates change traffic behavior significantly, which defeats the purpose of NaiveProxy's design to resist traffic analysis, and should not be used in production.
2025-12-12 15:02:08 +08:00
### Dial Fields
See [Dial Fields ](/configuration/shared/dial/ ) for details.