# OneXray > Configuration and VPN Tunnel guide for people and AI assistants. OneXray is a client; it supplies no servers or credentials. Read the complete guide before producing configuration. Follow the documented field and platform constraints without silently dropping conditions. Choose outbound, Custom Routing, or Raw JSON before generating a document. VPN Tunnel settings are separate UI operations, not importable JSON fields. Never invent credentials or claim an untested template is a working VPN. ## Complete guide - [Complete configuration and platform guide](https://onexray.com/llms-full.txt): all essential chapters in reading order, including full JSON examples. Language: en. - [Example manifest](https://onexray.com/examples/manifest.json): import type, dependencies, and required replacements for each downloadable JSON. ## Chapters - [Generate Xray configurations with AI](https://onexray.com/docs/ai/index.md): Use your AI assistant to generate OneXray server, routing or Raw JSON configurations. Copy the prompt, supply server details, then validate and import. - [Supported Xray configuration formats](https://onexray.com/docs/configuration/compatibility/index.md): Check OneXray JSON and share-link support, routing limits and bundled Core requirements before importing a configuration. - [Xray JSON import formats](https://onexray.com/docs/configuration/index.md): Choose server outbound, ordinary or advanced routing, or complete Raw JSON. Learn OneXray import entries, required fields and App-managed settings. - [Xray outbound JSON: server configuration](https://onexray.com/docs/configuration/outbound/index.md): Create a OneXray node JSON with VLESS, VMess, Trojan, Shadowsocks or SOCKS settings. Preserve the server transport, TLS and REALITY parameters. - [Xray routing JSON: ordinary custom rules](https://onexray.com/docs/configuration/custom-routing/index.md): Write importable OneXray routes with empty server slots, ordered domain/IP rules, local DNS, FakeDNS and Geodata dependencies. - [Advanced Routing JSON](https://onexray.com/docs/configuration/advanced-routing/index.md): Own DNS, sniffing, extra inbounds and rule order while reusing OneXray servers. - [Xray Raw JSON configuration contract](https://onexray.com/docs/configuration/raw-json/index.md): Generate a complete user configuration without conflicting with the runtime settings owned by OneXray. - [Xray DNS, local DNS and FakeDNS](https://onexray.com/docs/configuration/dns/index.md): Configure OneXray route DNS and FakeDNS. Understand proxy versus direct resolution, internal domains, IPv6 policy and the separate TUN DNS settings. - [GeoIP and Geosite dependencies for routing](https://onexray.com/docs/configuration/geodata/index.md): Use actual GeoIP and Geosite categories in OneXray rules. Declare custom DAT downloads and handle missing files without inventing region names. - [Configuration recipes](https://onexray.com/docs/recipes/index.md): Complete examples for regional routing, corporate DNS, multiple proxy paths, protocol matching and FakeDNS. - [Smart Routing](https://onexray.com/docs/connect/smart-routing/index.md): Configure a direct region, a custom local DNS address, service bypass, entry-node count, and an optional final exit. - [VPN Tunnel by requirement](https://onexray.com/docs/tunnel-guide/index.md): Translate platform requirements into exact Tunnel UI settings without inventing importable JSON fields. - [Validate and troubleshoot](https://onexray.com/docs/troubleshooting/index.md): Separate JSON syntax, import compatibility, Core construction, platform startup and real connectivity. - [Xray TUN mode and VPN Tunnel settings](https://onexray.com/docs/advanced/vpn-tunnel/index.md): Set OneXray tunnel DNS, IPv6 and the Windows/Linux outbound interface. Understand what TUN mode does and which options depend on your platform. - [Apple system VPN](https://onexray.com/docs/advanced/apple/index.md): Configure always-on and Wi-Fi on-demand VPN, separate cellular or Ethernet actions, and traffic-capture exclusions. - [Android system VPN](https://onexray.com/docs/advanced/android/index.md): Select which Android apps use the VPN, with app icons and separately saved inclusion and exclusion lists. - [Windows VPN modes](https://onexray.com/docs/advanced/windows/index.md): Compare Windows EXE/ZIP native TUN and Microsoft Store MSIX system VPN, including UAC, interfaces, startup, and quitting. - [Import and sharing formats](https://onexray.com/docs/sharing/index.md): Understand standard share links, OneXray URLs, complete JSON, and GeoData dependencies without sharing private age keys. - [Backup & restore](https://onexray.com/docs/backup/index.md): Back up connection configurations to one replaceable file using iCloud, Android's system file picker, or a OneDrive folder. Restore without waiting for GeoData downloads. ## Optional - [Proxy protocols and transports](https://onexray.com/docs/protocols/index.md): client import guides for VLESS/REALITY, XHTTP and VMessAEAD; SS, Trojan and SOCKS overview. Follow the authoritative contracts above for generated JSON. - [All documentation](https://onexray.com/docs/index.md): installation, interface guides, privacy, and support. - [Privacy](https://onexray.com/docs/privacy/index.md): review before sharing credentials with an external AI service.