ASR_BASE

Change-Id: Icf3719cc0afe3eeb3edc7fa80a2eb5199ca9dda1
diff --git a/external/subpack/net/dnscrypt-proxy/files/dnscrypt-proxy.config b/external/subpack/net/dnscrypt-proxy/files/dnscrypt-proxy.config
new file mode 100644
index 0000000..cac4b37
--- /dev/null
+++ b/external/subpack/net/dnscrypt-proxy/files/dnscrypt-proxy.config
@@ -0,0 +1,35 @@
+config global
+	# start dnscrypt-proxy from procd interface trigger rather than immediately in init
+	# if needed you can restrict trigger to certain interface(s)
+	# list procd_trigger 'wan'
+	# list procd_trigger 'wan6'
+
+config dnscrypt-proxy ns1
+	option address '127.0.0.1'
+	option port '5353'
+	option resolver 'quad9-dnscrypt-ip4-nofilter-pri'
+	# more details about the following options can be found in:
+	#    https://github.com/dyne/dnscrypt-proxy/blob/master/dnscrypt-proxy.conf
+	# option resolvers_list '/usr/share/dnscrypt-proxy/dnscrypt-resolvers.csv'
+	# ephemeral keys option requires extra CPU cycles and can cause huge system load
+	# option ephemeral_keys '0'
+	# option client_key '/path/to/client_key'
+	# option log_level '6'
+	# option syslog '1'
+	# option syslog_prefix 'dnscrypt-proxy'
+	# option query_log_file '/path/to/logfile'
+	# enable cache may speed up dnscrypt-proxy
+	# option local_cache '0'
+	# disable IPv6 may also speed up dnscrypt-proxy
+	# option block_ipv6 '0'
+	# Blacklists allow you to block domains, ip, ...
+	# list blacklist 'domains:/path/to/domains-blacklist-file.txt'
+	# list blacklist 'domains:/path/to/domains-blacklist2-file.txt'
+
+#	config dnscrypt-proxy ns2
+#		option address '127.0.0.1'
+#		option port '5454'
+#		# option resolver 'adguard-dns'
+#		# option resolvers_list '/usr/share/dnscrypt-proxy/dnscrypt-resolvers.csv'
+#		# option ephemeral_keys '0'
+#		# option client_key ''