  3. Whenever I'm connected to Kitel (which seems a very common choice from UK Servers) browsing to https://forum.cyclinguk.org just does nothing - browser just displays nothing with progress bar frozen showing minimal progress. Happens on some websites some more frequently, others occasionally (e.g. youtube.com). Other sites work fine. Domain resolved fine (cached). Switch to a different AirVPN server and it works fine (normally). Every time it happens, I check the AirVPN server and Kitel. It's becoming a real nuisance (making me reasses my use of AirVPN) as things that should not cause problems are taking needless extra time (switching servers).
  4. Hi, I'm still struggling to get this working, should I just wait until AirVPN fix the issue? Thanks, I'll let you know how I get on!
  5. Thank you for clarifying this! @Staff In the meantime I also found out that if you are only using IPv4 the issues are present, adding IPv6 to the config file seems to fix them.
  6. Yeah… tell me about it. Still, splendid results! Even more impressive considering that you chose to skim almost 200 posts and summarize them. MVP.
  7. A key management API was requested in the past, though I think without answers from the devs yet.
  8. HTML5 geolocation. WebRTC. HTML5: Menu > Settings > Websites > Location: set to Do not allow any site to track my physical location. WebRTC: See IPLeak.net. .
  9. @OpenSourcerer You'll be happy to hear that I've taken time to fix the formatting, it was broken by the forum's software but the text editing process is still awful... I've also updated some of the entries. Added links about ProtonMail and Tutanota disclosure/surveillance.
  10. Interesting. Either the file is updated but overridden right away or not updated at all. In any case, if you still want to manage DNS automagically, you need a different script (as the wiki article outlines). Follow the steps on the Arch wiki, but leave out the PolicyKit rule. Someone should probably notify the maintainer of the Ubuntu openvpn package that a script is blindly copied from Debian.
  11. @Pwbkkee Hello! Thanks for the detailed report and the suggested solution. Unfortunately we could not reproduce the issue. Can you please tell us your exact distribution name, version and (if any) customization, to let us start from a common testing ground? Kind regards
  12. @organicchocolate Hello! Thank you very much for the good feedback, we're glad to hear it. About Network Lock, the status is reported by the padlock on the main window. If it's closed, Network Lock is enabled. A connection must be possible even with Network Lock disable, so the green token you mention is appropriate. Maybe you'd prefer to have Network Lock on by default. You can configure Eddie to enable Network Lock when the app starts. AirVPN Suite enables Network Lock by default. Kind regards
  13. Is it possible to generate a new API key with an API call? The reason is that I'd like to randomize my IP using WireGuard, but the only way to do that is to generate a new key (not currently possible via API?), and then generate a new config (definitely possible via API). Is this possible?
  14. I use eddie on Ubuntu 20.04. I tried Opera Developer, it told me my right location even with Eddie pointed at another country. Comments please?
  15. Hi, thanks for the reply. # This file is managed by man:systemd-resolved(8). Do not edit. # # This is a dynamic resolv.conf file for connecting local clients to the # internal DNS stub resolver of systemd-resolved. This file lists all # configured search domains. # # Run "resolvectl status" to see details about the uplink DNS servers # currently in use. # # Third party programs must not access this file directly, but only through the # symlink at /etc/resolv.conf. To manage man:resolv.conf(5) in a different way, # replace this symlink by a static file or a different symlink. # # See man:systemd-resolved.service(8) for details about the supported modes of # operation for /etc/resolv.conf. nameserver options edns0 trust-ad
  17. Interesting line, that script seems like something Debian packages into the openvpn package while at least Arch Linux doesn't. I've found mentions of this script in the Arch Linux wiki, though: It's supposed to update /etc/resolv.conf with network options pushed by the server. If one believes the line, the detected DNS server is – but that is not a DNS server address, it's the local tun0 address. Maybe that's all there is to it. To check on that, connect, then look into the contents of /etc/resolv.conf; maybe paste here, if you want. If there's a nameserver line, that is indeed the problem. If the address is correctly, the problem lies somewhere else.
  18. I've generated my openvpn certs and SSH into my Ubuntu server and run the following command. sudo openvpn AirVPN_Netherlands_UDP-443.ovpn Sun Jan 23 21:59:00 2022 OpenVPN 2.4.7 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4 ] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on Jul 19 2021 Sun Jan 23 21:59:00 2022 library versions: OpenSSL 1.1.1f 31 Mar 2020, LZO 2.10 Sun Jan 23 21:59:00 2022 NOTE: the current --script-security setting may allow this c onfiguration to call user-defined scripts Sun Jan 23 21:59:00 2022 Outgoing Control Channel Authentication: Using 160 bit messa ge hash 'SHA1' for HMAC authentication Sun Jan 23 21:59:00 2022 Incoming Control Channel Authentication: Using 160 bit messa ge hash 'SHA1' for HMAC authentication Sun Jan 23 21:59:00 2022 TCP/UDP: Preserving recently used remote address: [AF_INET]2 Sun Jan 23 21:59:00 2022 Socket Buffers: R=[212992->212992] S=[212992->212992] Sun Jan 23 21:59:00 2022 UDP link local: (not bound) Sun Jan 23 21:59:00 2022 UDP link remote: [AF_INET] Sun Jan 23 21:59:00 2022 TLS: Initial packet from [AF_INET], sid=ef6 cec32 6366977e Sun Jan 23 21:59:00 2022 VERIFY OK: depth=1, C=IT, ST=IT, L=Perugia, O=airvpn.org, CN =airvpn.org CA, emailAddress=info@airvpn.org Sun Jan 23 21:59:00 2022 VERIFY KU OK Sun Jan 23 21:59:00 2022 Validating certificate extended key usage Sun Jan 23 21:59:00 2022 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication Sun Jan 23 21:59:00 2022 VERIFY EKU OK Sun Jan 23 21:59:00 2022 VERIFY OK: depth=0, C=IT, ST=IT, L=Perugia, O=airvpn.org, CN =Alshat, emailAddress=info@airvpn.org Sun Jan 23 21:59:00 2022 Control Channel: TLSv1.3, cipher TLSv1.3 TLS_CHACHA20_POLY13 05_SHA256, 4096 bit RSA Sun Jan 23 21:59:00 2022 [Alshat] Peer Connection Initiated with [AF_INET]213.152.161 .4:443 Sun Jan 23 21:59:01 2022 SENT CONTROL [Alshat]: 'PUSH_REQUEST' (status=1) Sun Jan 23 21:59:01 2022 PUSH: Received control message: 'PUSH_REPLY,comp-lzo no,redi rect-gateway def1 bypass-dhcp,dhcp-option DNS,route-gateway,to pology subnet,ping 10,ping-restart 60,ifconfig,peer-id 10,c ipher AES-256-GCM' Sun Jan 23 21:59:01 2022 OPTIONS IMPORT: timers and/or timeouts modified Sun Jan 23 21:59:01 2022 OPTIONS IMPORT: compression parms modified Sun Jan 23 21:59:01 2022 OPTIONS IMPORT: --ifconfig/up options modified Sun Jan 23 21:59:01 2022 OPTIONS IMPORT: route options modified Sun Jan 23 21:59:01 2022 OPTIONS IMPORT: route-related options modified Sun Jan 23 21:59:01 2022 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modi fied Sun Jan 23 21:59:01 2022 OPTIONS IMPORT: peer-id set Sun Jan 23 21:59:01 2022 OPTIONS IMPORT: adjusting link_mtu to 1625 Sun Jan 23 21:59:01 2022 OPTIONS IMPORT: data channel crypto options modified Sun Jan 23 21:59:01 2022 Data Channel: using negotiated cipher 'AES-256-GCM' Sun Jan 23 21:59:01 2022 Outgoing Data Channel: Cipher 'AES-256-GCM' initialized with 256 bit key Sun Jan 23 21:59:01 2022 Incoming Data Channel: Cipher 'AES-256-GCM' initialized with 256 bit key Sun Jan 23 21:59:01 2022 ROUTE_GATEWAY IFACE=enp5s0 HWADDR= 38:d5:47:b5:d1:ca Sun Jan 23 21:59:01 2022 TUN/TAP device tun0 opened Sun Jan 23 21:59:01 2022 TUN/TAP TX queue length set to 100 Sun Jan 23 21:59:01 2022 /sbin/ip link set dev tun0 up mtu 1500 Sun Jan 23 21:59:01 2022 /sbin/ip addr add dev tun0 broadcast 10.7.232 .255 Sun Jan 23 21:59:01 2022 /etc/openvpn/update-resolv-conf tun0 1500 1553 2 init Sun Jan 23 21:59:06 2022 /sbin/ip route add via Sun Jan 23 21:59:06 2022 /sbin/ip route add via Sun Jan 23 21:59:06 2022 /sbin/ip route add via Sun Jan 23 21:59:06 2022 Initialization Sequence Completed However, the DNS does not work and the machine cannot connect to the Internet. Resolving ifconfig.co (ifconfig.co)... failed: Temporary failure in name resolution What do I have to do to fix it?
  19. https://www.kasteelamerongen.nl/ is unreachable from Phaet, but reachable from Merga.
  20. reporting back on eddie 2.21.3 1. left transmission 3 running while sleeping, mini/monterey 12.1 ran low of internal ssd space and shut down tranmission 3 from processing, it was still displaying its normal GUI just no data transfers. monterey showed i had 1G space on SSD. i deleted some files to get 6G free. transmission wouldn't resume and i couldn't browse the internet. eddie 2.21.3 was frozen, i'm guessing the low space because 2.21.3 has not crashed once since installed for 30 days now. 2.21.3 would not quit i had to force quit. (my desktop background was changed too so monterey had changed at least one setting). 2. today i noticed 2.21.3 i can click "Connect to a recommended server" without clicking "Activate Network Lock" but i get the same green icon top right of screen. i'm not sure if 2.20.0 is like that? for a novice user like me i would like a different color than green so i'd note i forgot to "Activate Network Lock". 3. 2.21.3 while connecting has gotten stuck at IPv4 and hangs up, once in 30 days, 2.21.3 is an extreme improvement from a novices front end use.
  21. If you mean maintaining readability of the forums… no, I like doing that, especially if I get attacked for doing so. Chrome, Firefox and Edge may probably open PDFs in their common configuration, but what about people who disabled the PDF viewer for security reasons? What about people viewing it with a phone, say, with Tapatalk? What about those who don't trust the PDF format at all? Did you scan the PDF with OCR so people can copy & paste text out of it? Did you check if the formatting is consistent at least, so people don't spend too much time in the PDF looking for the same info the routes page yields? A link doesn't have any of these problems, seamlessly embeds into all applications and when people click on it they get the same, even up-to-date information, the presentation tailored to their application. Fancy that. In any case, thank you for your warm welcome into your persona non grata club. A bit cold here, but we're an adaptable species.
  22. Really nothing better to do? Chrome, Firefox and Edge all open pdf's. Please go harras someone else. Welcome to my ignore list.
  23. That is actually what I did - just forgot to mention it here I would (and did) do the same. I know - I don't know how many requests for help I read without the poster ever posting the resolution, sometimes despite the promise to follow up. Thank you! That would be great. Not sure how the software handles querying the servers, but the standard could be a try for both and then just take whatever works or sth. similar. Thanks again!
  24. Hello! You are definitely right. Historically, this is a consequence of the fact the our bootstrap servers were not given by the respective datacenters IPv6 support and we did not insist on that. We will ask our providers to add IPv6 support to the bootstrap servers if possible, and then adapt our software accordingly when IPv6 layer is preferred over IPv4. Kind regards P.S. You applied a smart workaround!
  25. With Eddie on PC or the AirVPN Suite: Enable Network Lock. With OpenVPN, depends on your OS. With Eddie for Android, enable Always-On VPN in system settings, also depends on your OS version. If I take the words at face value: It's impossible to "disconnect the internet". What you can do is block all outbound traffic, which is done with Network Lock for example. Before you ask about any of the three things above in the manner of "okay, cool, and how to do that?", I'd like to invite you to research it yourself using the FAQ, the forums search and other resources. This is to make sure you understand what you're doing and can undo the changes if you run into an issue you cannot solve yourself (frankly, if you "disconnect the internet", the internet won't be there anymore to help you, so you hopefully see the dilemma). If there are still questions arising from those resources, the community is here to help you, of course. Just point us to what you've tried, where you've read what you've tried and where you're stuck.
  26. Actually, it's close to a solution. Only change I would've made was to avoid Google DNS. Thank you for posting your resolution. People sometimes still need to be asked nicely to do so.
  27. Hey! Tell me how to configure the Internet to turn off when the VPN is turned off. Thanks a lot!
