There is no "Rule mode" in Streisand. Split tunnel is under Settings → Routing (separate from the server profile).

A. Enable RU direct (do this)

  1. Open the link below in Safari on the iPhone (or scan QR → short HTTPS page → Streisand)
  2. Streisand → Settings → Routing
  3. Select RU-direct
  4. Turn Routing ON
  5. Routing → Assets → Update All (once)
  6. Reconnect VPN

Open RU-direct import in Streisand

Streisand RU route QR Or copy deeplink:

B. Server subscription (HTTPS)

Add Subscription, then pick any profile. Section A controls RU bypass. classic sub json

C. DNS adblocker (blocky)

Streisand → Settings → DNS. With RU-direct, remove DNS IP entries and use only this full DoH URL. Raw DNS to 109.172.90.103 is routed directly and intentionally blocked; direct Cloudflare DoH may also be blocked by the ISP. Use port 443, not :8443. DoH QR

D. Routing assets (slim RU-only)

Streisand → Settings → Routing → Assets. Set both URLs, then Update All. Files contain only geoip:ru/private and RU geosite lists (~400KB total). https://sub.109.172.90.103.nip.io/geoip.dat
https://sub.109.172.90.103.nip.io/geosite.dat

E. Amnezia (AWG)

These files contain a private client key. Anyone who downloads them can use this VPN profile.

DE / Frankfurt (Mac) — AmneziaWG 2.0, VPN IP 10.8.3.2, endpoint 104.248.240.52:47180/UDP. Use this on macOS (3.1 on :47179 completes handshake but passes no data). Delete the old DE profile first, then import in AmneziaVPN.

Download amnezia-awg-de2.vpn · amnezia-awg-de2.json · amneziawg-de2.conf

Or paste this share link into AmneziaVPN:

DE / Frankfurt 3.1 — VPN IP 10.8.1.3, endpoint 104.248.240.52:47179/UDP (not for Mac).

Download amnezia-awg-de.vpn · amnezia-awg-de.json · amneziawg-de.conf

Or paste this share link into AmneziaVPN:
Split tunneling on iOS: use the AmneziaVPN app (not standalone AmneziaWG). Delete any old imported profile first, then import the .vpn / vpn:// profile below. Site split tunneling only unlocks when AllowedIPs includes both 0.0.0.0/0 and ::/0 — older regenerated configs that omitted IPv6 kept the toggle locked.

Client 1 — VPN IP 10.77.77.2 (existing; unchanged)

AmneziaVPN profile (recommended for iOS split tunneling):

Download amnezia-awg.vpn · amnezia-awg.json

Or paste this share link into AmneziaVPN:

Raw AmneziaWG .conf (AmneziaWG app / file import — no sites-split UI):

Download AmneziaWG config

AmneziaWG client 1 config QR
Or copy raw config:
Endpoint: 109.172.90.103:61371/UDP. VPN DNS: 10.77.77.1. MTU: 1280. AllowedIPs: 0.0.0.0/0, ::/0.

Client 2 — VPN IP 10.77.77.3 (second device; separate keys)

AmneziaVPN profile:

Download amnezia-awg-2.vpn · amnezia-awg-2.json

Or paste this share link into AmneziaVPN:

Raw AmneziaWG .conf:

Download AmneziaWG client 2 config

AmneziaWG client 2 config QR
Or copy raw config:
Same endpoint/DNS/MTU/AllowedIPs as client 1; different private key and 10.77.77.3/32.

Client 3 — VPN IP 10.77.77.4

AmneziaVPN profile:

Download amnezia-awg-3.vpn · amnezia-awg-3.json

Or paste this share link into AmneziaVPN:

Raw AmneziaWG .conf:

Download AmneziaWG client 3 config

AmneziaWG client 3 config QR
Or copy raw config:
VPN IP 10.77.77.4/32.

Client 4 — VPN IP 10.77.77.5

AmneziaVPN profile:

Download amnezia-awg-4.vpn · amnezia-awg-4.json

Or paste this share link into AmneziaVPN:

Raw AmneziaWG .conf:

Download AmneziaWG client 4 config

AmneziaWG client 4 config QR
Or copy raw config:
VPN IP 10.77.77.5/32.

Client 5 — VPN IP 10.77.77.6

AmneziaVPN profile:

Download amnezia-awg-5.vpn · amnezia-awg-5.json

Or paste this share link into AmneziaVPN:

Raw AmneziaWG .conf:

Download AmneziaWG client 5 config

AmneziaWG client 5 config QR
Or copy raw config:
VPN IP 10.77.77.6/32.

Client N — VPN IP 10.77.77.7

AmneziaVPN profile:

Download amnezia-awg-N.vpn · amnezia-awg-N.json

Or paste this share link into AmneziaVPN:

Raw AmneziaWG .conf:

Download AmneziaWG client N config

AmneziaWG client N config QR
Or copy raw config:
VPN IP 10.77.77.7/32.

Client M — VPN IP 10.77.77.8

AmneziaVPN profile:

Download amnezia-awg-M.vpn · amnezia-awg-M.json

Or paste this share link into AmneziaVPN:

Raw AmneziaWG .conf:

Download AmneziaWG client M config

AmneziaWG client M config QR
Or copy raw config:
VPN IP 10.77.77.8/32.

Client P — VPN IP 10.77.77.9

AmneziaVPN profile:

Download amnezia-awg-P.vpn · amnezia-awg-P.json

Or paste this share link into AmneziaVPN:

Raw AmneziaWG .conf:

Download AmneziaWG client P config

AmneziaWG client P config QR
Or copy raw config:
VPN IP 10.77.77.9/32.

Client rob — VPN IP 10.77.77.10

AmneziaVPN profile:

Download amnezia-awg-rob.vpn · amnezia-awg-rob.json

Or paste this share link into AmneziaVPN:

Raw AmneziaWG .conf:

Download AmneziaWG client rob config

AmneziaWG client rob config QR
Or copy raw config:
VPN IP 10.77.77.10/32.

F. Amnezia RU IPs (iOS split tunneling)

AmneziaVPN 5.0.0.5+: use the updated list below. Older JSON put CIDRs only in hostname; 5.0 strips /prefix on import so entries became bare IPs without subnets. New format keeps the CIDR in ip (e.g. {"hostname":"2.56.24.0_22","ip":"2.56.24.0/22"}). Re-import with Replace site list.
After the profile is imported in AmneziaVPN and split tunneling is unlocked: Settings → Split tunneling → Sites. Choose Addresses from the list should not be accessed via VPN (RU-direct bypass). Then ⋮ → Replace site list → pick this JSON (~8.6k RIR aggregated RU IPv4 CIDRs).

Download amnezia-ru-ips.json (Amnezia 5.0+) · legacy JSON (Amnezia < 5)

G. Hiddify (Windows)

Recommended Windows client instead of Amnezia site-split with the full RU list. Import the sing-box profile below (VLESS Reality + XHTTP, geoip:ru / .ru direct, TUN). Download from hiddify/hiddify-app releases only.
  1. Install Hiddify from the official GitHub Releases
  2. Home → + → Add from clipboard / Add manually
  3. Paste the profile URL or open the hiddify:// link
  4. Enable VPN / TUN and connect

Sing-box profile (RU-direct built in):

Hiddify sing-box profile QR
Download hiddify.json
Or open in Hiddify:

Classic subscription (nodes only — set region/bypass rules in the app if needed):