All Activity
This stream auto-updates
- Past hour
-
-
-
-
-
-
- Today
-
-
-
-
-
- Yesterday
-
-
Jean Fourche reacted to a post in a topic:
Port forwarding — historical account-to-port mapping retention? ...
-
-
-
Tech Jedi Alex started following Port forwarding — historical account-to-port mapping retention? ...
-
I don't believe that info is retained. There is no technical reason to do so ad-infinitum. Port is immediately open for forwarding by others if you remove it. Mostly the account to which the port is forwarded to at the time of lookup, I believe, which may or may not be the same account which the request is about, making it nothing you can really hold someone accountable for anything done via that port. And even then, accounts don't hold any personal information, safe for the mail address (which must be valid-looking mail addresses since the forums software requires it, but not valid as in reachable). Well, I had been torrenting over AirVPN in the past for years, only changing the port once in the entire time span, and nothing ever happened. Unless you're not just asking for the purpose of torrenting.
-
-
-
-
Ok thanks. Did you help write the client? I've been trying on and off to write my own client but have been experiencing some odd behaviour when querying the API. When I call it with parameters "act" => "connect" same parameters as the Eddie client but somehow it instead returns <?xml version="1.0" standalone="yes"?> <connect message="" message_action="stop"/> I haven't dug deep into the code yet mainly intercepting the API requests and interpreting them myself and reading and logging the main functions to see what's going on, what's being sent etc, matching that. For some reason the AES key is also regenerated and a different one is used every single request? Instead of per session or the like. When I call manifest and login and such I get the expected results but not connect, although I'm not quite certain if I even need it or if I'm better to skip over it. I mean when you call login it responds back with the certs, public key, etc... everything you need to establish a connection, I guess you could just call manifest the API for configs and using that connect. Maybe I'm going about this the wrong way tho, technically you could just use the API key and leave it at that, call the manifest or whatever to get all available servers, pick one, generate a config then call wireguard (or openvpn) and create a tunnel. I think I'll maybe try that for now. Of course you can't via the client with your username and password that way. I think I'll start with that maybe add the login feature later when I get something working. Addition: I logged the response which I get back in the original Eddie client and get the same outcome as in my program, so it's not an error of mine calling connect returns ❯ cat /tmp/eddie_response_xml <?xml version="1.0" standalone="yes"?> <connect message="" message_action="stop"/> regardless, can someone clarify why? What exactly is the point of this, and I thought message_action="stop" generally was for error messages? Why let the server know you connect to it to then return an empty string? I guess this has to do with https://airvpn.org/api/disconnect but why not return an approval message that the server registered your request? Think I'll skip this one and implement it later, for now I'll just keep the login and start working on allow the client to connect.
-
- Last week
-
-
-
Hello, I have a question about the remote port forwarding feature that I couldn't find covered in the FAQ, and support has closed my ticket three times without an answer (both via the website form and via direct support email), so I'm trying here. Your documentation states that "a port will remain reserved to your account as long as it has a valid subscription plan." I understand this describes the current, active assignment of a port to an account. My question concerns historical data: after a port reservation is changed or released (e.g. account cancellation, manual port change, or subscription lapse), do you retain any record of which account was previously assigned to a given port, and for how long? Specifically: Is the account-to-port mapping treated as part of your no-log policy, or is it considered account configuration data retained separately? If a port assignment changes, is the previous assignment logged anywhere, or immediately and irreversibly overwritten? In the event of a valid legal request concerning a specific server/port/timestamp, what information (if any) would you be able to provide, and how far back? I'm asking to properly understand the privacy guarantees of the port forwarding feature, not for any operational issue. Thank you for your time. Best regards,
-
-
-
WG automatic = omit causes Wireguard to calculate MTU on connect based on the gateway or endpoint addresses which can be too high for some setups since Wireguard doesn't take the connection type into account, so fragmentation takes place, and therefore problems with connections inside the tunnel. In my case, for example, MTU is set to 1420 on a v6 connection which doesn't work for me, so I manually adjust to 1392.
-
-
-
Thanks for your answer. Ok, I'll do that in a couple of days. I've read somewhere that a similar situation turned OK by itself after 2/3 days. Let's wait a while and see... 🤞
-
-
-
-
-
-
I try switching servers but I usually get the same slow speed. Right now (it's 21:00 local time), it's particularly slow. I was connected to Matar, the best available server according to Eddie, and the download speed from a kDrive was under 200KB/s. I switched to "Crater", same result. I switched to Albali Uppsala Sweden, this time the download speed stalled under 50KB/s! Also, this happens on both of my systems. A few months ago, the speed were good, sometimes very fast. I can't understand what happened.
-
-
Recommended torrent client for MacOS?
Tech Jedi Alex replied to yoyall's topic in General & Suggestions
Please open your own thread and give as much info on your setup as you can: OS, software, logs, what you tried, etc. -
AirVPN doesn't have servers in Indonesia.
-
Why do AirVPN DNS servers hate the website usps.com so much?
Oleg_NYC replied to Oleg_NYC's topic in Blocked websites warning
It looks like this problem no longer exists: after I tried to access usps.com in chromium today, the attempt was successful, and it was made specifically through AirVPN DNS. -
-
Hi. I'm new here. AIrVPN + qbtorrent on Mac OS. Port Forwarding OK but no peer / no upload.(same with Eddie or Wireguard) Is there a thread for qbtorrent configuration somewhere ? (edit : I switched from Transmission to qbtorrent beacause it did not work with Transmission either)
-
-
flat4 started following Recommended torrent client for MacOS?, Slow download speed and AirDash (Dashboard unofficial for iOS and iPadOS) ...
-
It also depends were are you located and what server you are connecting. Took me a long time figuring out why my isp speed was on par with what I paid but my vpn was 1/4 of the speed. I quickly learn that if I used a server closes to me speed was awesome but if a picked a serve in another country it was slower (shocker I know).
-
AirDash (Dashboard unofficial for iOS and iPadOS)
flat4 replied to zlimteck's topic in General & Suggestions
Pretty cool, keep at it -
going to have to try this one I used transmission for simplicity but qbit is much more powerful
-
-
What is my issue based on these logs?
spannernick1 replied to dawgwinfrey's topic in Eddie - AirVPN Client
This happen to me and it was my ISP, I am with SKY in the UK and it has a Sky Broadband Shield included and I had to disable it so Eddie worked again, so look at your ISP Settings for your Broadband, it more then likely causing it. -
-
I see the same thing as well on Fedora (and yes I did import the key): eddie-ui_2.24.6_linux_x64_fedora.rpm: Header OpenPGP V4 RSA/SHA512 signature, key ID 513efc94400d7698: NOKEY Header SHA256 digest: OK Payload SHA256 digest: OK Legacy OpenPGP V4 RSA/SHA512 signature, key ID 513efc94400d7698: NOKEY
-
I have been using https://github.com/The-animus-project/Orc-Torrent havent used anything else since switching to mac
-
As of now 2 DCO tunnels running "side-by-side" (Elgafar and Kornephoros). OpenVPN 2.7.5 client version was suppossed to fix the DNS not enforced over the tunnel(s). To get this under control add a quad9 server to the main adapter and nslookup will use that as the DNS. This will only help fix the "connectivity". Can't wait for 2.7.6 release and see if there is an actual fix applied. Comparing this with 3 Wintun vs. 2 DCO established session(s), the results did not surprise me: https://www.speedtest.net/result/19502727405 with "rcvbuf 262144 and sndbuf 262144" at default value. With 3 DCO sessions a "small overall system instability" is noted. Everything else works as expected for me. Modify or change the comodo config until you get the desired *perfection*.
-
Hello, I'm developing an app called AirDash, it's an AirVPN dashboard that uses the API. It requires at least iOS 26 and iPadOS 26, built-in Swift 6. Notes: I don't have a paid apple developer account, so my only way to offer you a try is either to build the project via Xcode or to use the .ipa of the latest release available (currently v.1.0.4) via your preferred sideloading method. See details in the project readme. Features: Network: Full server list with load, users, health, ping latency, sort (load / name / ping), continent filter, search and favorites Server comparison: Long-press any server to add it to a comparison (up to 3); tap the toolbar button to view them side by side Dashboard: Account info (current IP, VPN status, expiration, credits, sessions, member since); swipe left on a session to disconnect Server detail: WireGuard or OpenVPN profile generation, direct import into the system VPN app, share and QR code (WireGuard) in a ··· menu; recent profiles per server with one-tap reimport Profile history: Recently used server profiles shown in Dashboard and in each server detail; supports one-tap reimport by protocol Biometric lock: Face ID / Touch ID protection, toggleable in Settings App icon: 8 variants: Auto, Classic, Light, Purple, Green, Red, Minimal, Minimal Dark Settings: API key rotation, light/dark/system theme, app icon picker, changelog, credits Notifications: Subscription expiration alerts 7 days and 1 day in advance (delivered by the OS even when the app is closed) Siri Shortcuts: VPN Status, My IP Address, Open Server (navigates directly to a specific server) Widget: Current IP, VPN status and active sessions on the home screen; configurable with a favorite server picker showing load, users and latency (Small, Medium and Large sizes) Quick Actions: Long-press the app icon to jump directly to Dashboard or Network Links: Repositorie Github: https://github.com/zlimteck/AirDash Releases Github: https://github.com/zlimteck/AirDash/releases If any members try it, don't hesitate to give me feedback, and suggestions for improvement. thank you in advance. GrimZ.
-
Hello! Because it's not the latest version, which is 1.0.16, and which requires macOS 12 or higher version. https://apps.apple.com/us/app/wireguard/id1451685025?mt=12 Kind regards
-
Discontinuing subscription. Feedback
Staff replied to Janice Redfern's topic in General & Suggestions
Hello! This is an interesting smearing message that occasionally comes out, trying to exploit the forum we keep open for the community, for some hidden purpose or, we guess, just for hate. You can easily verify that every defect mentioned by the OP is either false or distorted. A community moderator provided some corrections that disprove the OP's claim, here we would like to add just three remarks on subjects we care about: interoperability with other VPN services, infrastructure stability and how good our remote port forwarding system is. We also want to quickly make you aware that the OP never opened a ticket for professional support, so he/she was probably not interested in a solution of his/her problems, but maybe only in building a case based on false or fabricated premises. 1. Eddie Android edition, AirVPN Suite and Eddie Desktop edition allow connections to any VPN supporting either OpenVPN or WireGuard through the most standardized method that can exist, the supported profile for each VPN application (much better than any API, especially when it does not exist on most VPN services). 2. Over the past 16 years AirVPN infrastructure constantly evolved toward more stability and speed, it's all in the records. In AirVPN we have had and we have users connected CONTINUOUSLY for SEVERAL MONTHS. Enough for connection stability? 😉 We could have even longer periods, if it wasn't for the necessity to reboot a server periodically for kernel upgrades. 3. Implementing remote inbound port forwarding over a VPN by having the VPN server use UPnP/NAT-PMP/PCP to dynamically open ports on behalf of clients is generally considered a poor architectural choice because: UPnP was designed for trusted, local networks No authentication in classic UPnP IGD exists Race conditions in a large infrastructure like AirVPN's one becomes an architectural problem UPnP would make "hot change" and other interesting features appreciated by AirVPN customers impossible Privilege escalation. UPnP used outside a local network facilitates various exploits including privilege escalation. The VPN server already controls firewall rules, NAT, routing and connection tracking. Using UPnP as an intermediary adds another protocol layer rather than configuring those systems directly. This depends on your design philosophy, but at the moment management does not see favorably functionality duplication. At the end of the day, such a poor choice would pose a bunch of problems for essentially nothing, as selecting a random port with the additional features is a matter of seconds. Kind regards -
It's widespread error as many sites I visit quote prices in RON (Romanian currency)
-
Geolocation error in the database you use. Its location is UK, as expected. ❯ ip-api baiduri.airservers.org { "country" : "United Kingdom", "regionName" : "England", "city" : "London", "zip" : "", "lat" : 51.5073, "lon" : -0.1277, "timezone" : "Europe/London", "isp" : "M247 Europe SRL", "org" : "AirVPN.org entry server (Baiduri)", "as" : "AS9009 M247 Europe SRL", "mobile" : false, "proxy" : true, "hosting" : true, […] } Can happen. M247's HQ is in Bucharest, maybe something got mixed up at the time of the DB update.
-
Discontinuing subscription. Feedback
Tech Jedi Alex replied to Janice Redfern's topic in General & Suggestions
It would also lead to the situation Intel found themselves in: Spearheading open source systems development (for decades), then noticing everyone's profiting off those open source projects while very little is given back to them. Actually, the state of pretty much all open source software less popular than flagships like Firefox. You can't seriously believe competitors will gladly put work in such a client, and after a nice day's work eat ribs and sing kumbaya with everyone? Markets are shady and unscrupulous, and the VPN market doubly so. Eddie can be used as a client for other OpenVPN config files, but expandig that part simply requires more manpower there, and Eddie on PC is developed by one guy. That feature has been there for years; where are the competitors expanding on that feature to include their own infrastructure? Simply not happening. During or after that feature came out, all those competitors started or had already their own clients – and even Wireguard implementations. Also, not sure whether Mullvad ever had an API as comprehensive as Air's; I found these docs which are just.. barebones, somehow. Or maybe it's just the docs, the OpenAPI specs include many more endpoints. But hey, maybe AirVPN doesn't boast a Swagger UI or similar (because the API is not REST), but even then the API is as comprehensive, maybe even more so, and follows a standard. This is not a point you can complain about. Already implemented, but not as a kill switch but as Network Lock, a set of firewall rules. And it does reconnect automatically. Unless you configured it not to do so. If you didn't, I'm sure especially the dev would've liked to know about it. All softwares have bugs. Sadly, this seems to not have happened; since this is your first post in these forums, I believe there was no request for help from your side; you went straight to complaining. Are you German, by chance? No offense. There is, but you didn't read the manual/doc and didn't seek help (the responders would've told you how to provide such a trace; I probably would've been such a responder), so you can't know there is, making your point moot. To be fair, it does make sense mentioning this requirement in the UI. It is correct that uPnP is not in use. But this has a very simple reason: uPnP can by mistake open the remote port on your router which would expose you to correlation attacks. So port forwarding is manual. But still, it's a good improvement request. And that's perfectly okay. If it doesn't work for you, please look for something else; the market is quite big.
