thezed0ne 0 Posted ... Hello I am using openvpn for android and when I went to check for dns leakage on ipleak.net it was showing my isp's address.how can i prevent my connection from dns leakage? thanks Quote Share this post Link to post
OpenSourcerer 1442 Posted ... We'd need your logs. From line 1, into spoilers (how-to in signature). Quote Hide OpenSourcerer's signature Hide all signatures NOT AN AIRVPN TEAM MEMBER. USE TICKETS FOR PROFESSIONAL SUPPORT. LZ1's New User Guide to AirVPN « Plenty of stuff for advanced users, too! Want to contact me directly? All relevant methods are on my About me page. Share this post Link to post
thezed0ne 0 Posted ... We'd need your logs. From line 1, into spoilers (how-to in signature).here you go ICS OpenVPN log file - 2016-11-25 12:57:11 official build 0.6.60 running on lge LG-H918 (msm8996), Android 7.0 (NRD90M) API 24, ABI arm64-v8a, (lge/elsa_tmo_us/elsa:7.0/NRD90M/1625821141c30:user/release-keys)2016-11-25 12:57:11 Building configuration…2016-11-25 12:57:11 started Socket Thread2016-11-25 12:57:11 P:Initializing Google Breakpad!2016-11-25 12:57:11 Current Parameter Settings:2016-11-25 12:57:11 config = '/data/user/0/de.blinkt.openvpn/cache/android.conf'2016-11-25 12:57:11 mode = 02016-11-25 12:57:11 show_ciphers = DISABLED2016-11-25 12:57:11 show_digests = DISABLED2016-11-25 12:57:11 show_engines = DISABLED2016-11-25 12:57:11 genkey = DISABLED2016-11-25 12:57:11 key_pass_file = '[uNDEF]'2016-11-25 12:57:11 show_tls_ciphers = DISABLED2016-11-25 12:57:11 connect_retry_max = 02016-11-25 12:57:11 Connection profiles [0]:2016-11-25 12:57:11 proto = udp2016-11-25 12:57:11 local = '[uNDEF]'2016-11-25 12:57:11 local_port = '[uNDEF]'2016-11-25 12:57:11 remote = '199.241.147.34'2016-11-25 12:57:11 remote_port = '443'2016-11-25 12:57:11 remote_float = DISABLED2016-11-25 12:57:11 bind_defined = DISABLED2016-11-25 12:57:11 bind_local = DISABLED2016-11-25 12:57:11 bind_ipv6_only = DISABLED2016-11-25 12:57:11 connect_retry_seconds = 22016-11-25 12:57:11 connect_timeout = 1202016-11-25 12:57:11 socks_proxy_server = '[uNDEF]'2016-11-25 12:57:11 socks_proxy_port = '[uNDEF]'2016-11-25 12:57:11 tun_mtu = 15002016-11-25 12:57:11 tun_mtu_defined = ENABLED2016-11-25 12:57:11 link_mtu = 15002016-11-25 12:57:11 link_mtu_defined = DISABLED2016-11-25 12:57:11 tun_mtu_extra = 02016-11-25 12:57:11 tun_mtu_extra_defined = DISABLED2016-11-25 12:57:11 mtu_discover_type = -12016-11-25 12:57:11 fragment = 02016-11-25 12:57:11 mssfix = 14502016-11-25 12:57:11 explicit_exit_notification = 52016-11-25 12:57:11 Connection profiles END2016-11-25 12:57:11 remote_random = DISABLED2016-11-25 12:57:11 ipchange = '[uNDEF]'2016-11-25 12:57:11 dev = 'tun'2016-11-25 12:57:11 dev_type = '[uNDEF]'2016-11-25 12:57:11 dev_node = '[uNDEF]'2016-11-25 12:57:11 lladdr = '[uNDEF]'2016-11-25 12:57:11 topology = 12016-11-25 12:57:11 ifconfig_local = '[uNDEF]'2016-11-25 12:57:11 ifconfig_remote_netmask = '[uNDEF]'2016-11-25 12:57:11 ifconfig_noexec = DISABLED2016-11-25 12:57:11 ifconfig_nowarn = ENABLED2016-11-25 12:57:11 ifconfig_ipv6_local = '[uNDEF]'2016-11-25 12:57:11 ifconfig_ipv6_netbits = 02016-11-25 12:57:11 ifconfig_ipv6_remote = '[uNDEF]'2016-11-25 12:57:11 shaper = 02016-11-25 12:57:11 mtu_test = 02016-11-25 12:57:11 mlock = DISABLED2016-11-25 12:57:11 keepalive_ping = 02016-11-25 12:57:11 keepalive_timeout = 02016-11-25 12:57:11 inactivity_timeout = 02016-11-25 12:57:11 ping_send_timeout = 02016-11-25 12:57:11 ping_rec_timeout = 02016-11-25 12:57:11 ping_rec_timeout_action = 02016-11-25 12:57:11 ping_timer_remote = DISABLED2016-11-25 12:57:11 remap_sigusr1 = 02016-11-25 12:57:11 persist_tun = ENABLED2016-11-25 12:57:11 persist_local_ip = DISABLED2016-11-25 12:57:11 persist_remote_ip = DISABLED2016-11-25 12:57:11 persist_key = DISABLED2016-11-25 12:57:11 passtos = DISABLED2016-11-25 12:57:11 resolve_retry_seconds = 10000000002016-11-25 12:57:11 resolve_in_advance = ENABLED2016-11-25 12:57:11 username = '[uNDEF]'2016-11-25 12:57:11 groupname = '[uNDEF]'2016-11-25 12:57:11 chroot_dir = '[uNDEF]'2016-11-25 12:57:11 cd_dir = '[uNDEF]'2016-11-25 12:57:11 writepid = '[uNDEF]'2016-11-25 12:57:11 up_script = '[uNDEF]'2016-11-25 12:57:11 down_script = '[uNDEF]'2016-11-25 12:57:11 down_pre = DISABLED2016-11-25 12:57:11 up_restart = DISABLED2016-11-25 12:57:11 up_delay = DISABLED2016-11-25 12:57:11 daemon = DISABLED2016-11-25 12:57:11 inetd = 02016-11-25 12:57:11 log = DISABLED2016-11-25 12:57:11 suppress_timestamps = DISABLED2016-11-25 12:57:11 machine_readable_output = ENABLED2016-11-25 12:57:11 nice = 02016-11-25 12:57:11 verbosity = 42016-11-25 12:57:11 mute = 02016-11-25 12:57:11 gremlin = 02016-11-25 12:57:11 status_file = '[uNDEF]'2016-11-25 12:57:11 status_file_version = 12016-11-25 12:57:11 status_file_update_freq = 602016-11-25 12:57:11 occ = ENABLED2016-11-25 12:57:11 rcvbuf = 02016-11-25 12:57:11 sndbuf = 02016-11-25 12:57:11 sockflags = 02016-11-25 12:57:11 fast_io = DISABLED2016-11-25 12:57:11 comp.alg = 22016-11-25 12:57:11 comp.flags = 12016-11-25 12:57:11 route_script = '[uNDEF]'2016-11-25 12:57:11 route_default_gateway = '[uNDEF]'2016-11-25 12:57:11 route_default_metric = 02016-11-25 12:57:11 route_noexec = DISABLED2016-11-25 12:57:11 route_delay = 02016-11-25 12:57:11 route_delay_window = 302016-11-25 12:57:11 route_delay_defined = DISABLED2016-11-25 12:57:11 route_nopull = DISABLED2016-11-25 12:57:11 route_gateway_via_dhcp = DISABLED2016-11-25 12:57:11 allow_pull_fqdn = DISABLED2016-11-25 12:57:11 management_addr = '/data/user/0/de.blinkt.openvpn/cache/mgmtsocket'2016-11-25 12:57:11 management_port = 'unix'2016-11-25 12:57:11 management_user_pass = '[uNDEF]'2016-11-25 12:57:11 management_log_history_cache = 2502016-11-25 12:57:11 management_echo_buffer_size = 1002016-11-25 12:57:11 management_write_peer_info_file = '[uNDEF]'2016-11-25 12:57:11 management_client_user = '[uNDEF]'2016-11-25 12:57:11 management_client_group = '[uNDEF]'2016-11-25 12:57:11 management_flags = 43902016-11-25 12:57:11 shared_secret_file = '[uNDEF]'2016-11-25 12:57:11 key_direction = 22016-11-25 12:57:11 ciphername = 'AES-256-CBC'2016-11-25 12:57:11 authname = 'SHA1'2016-11-25 12:57:11 prng_hash = 'SHA1'2016-11-25 12:57:11 prng_nonce_secret_len = 162016-11-25 12:57:11 keysize = 02016-11-25 12:57:11 engine = DISABLED2016-11-25 12:57:11 replay = ENABLED2016-11-25 12:57:11 mute_replay_warnings = DISABLED2016-11-25 12:57:11 replay_window = 642016-11-25 12:57:11 replay_time = 152016-11-25 12:57:11 packet_id_file = '[uNDEF]'2016-11-25 12:57:11 use_iv = ENABLED2016-11-25 12:57:11 test_crypto = DISABLED2016-11-25 12:57:11 tls_server = DISABLED2016-11-25 12:57:11 tls_client = ENABLED2016-11-25 12:57:11 key_method = 22016-11-25 12:57:11 ca_file = '[[iNLINE]]'2016-11-25 12:57:11 ca_path = '[uNDEF]'2016-11-25 12:57:11 dh_file = '[uNDEF]'2016-11-25 12:57:11 cert_file = '[[iNLINE]]'2016-11-25 12:57:11 extra_certs_file = '[uNDEF]'2016-11-25 12:57:11 priv_key_file = '[[iNLINE]]'2016-11-25 12:57:11 pkcs12_file = '[uNDEF]'2016-11-25 12:57:11 cipher_list = '[uNDEF]'2016-11-25 12:57:11 tls_verify = '[uNDEF]'2016-11-25 12:57:11 tls_export_cert = '[uNDEF]'2016-11-25 12:57:11 verify_x509_type = 02016-11-25 12:57:11 verify_x509_name = '[uNDEF]'2016-11-25 12:57:11 crl_file = '[uNDEF]'2016-11-25 12:57:11 ns_cert_type = 02016-11-25 12:57:11 remote_cert_ku = 1602016-11-25 12:57:11 remote_cert_ku = 1362016-11-25 12:57:11 remote_cert_ku = 02016-11-25 12:57:11 remote_cert_ku = 02016-11-25 12:57:11 remote_cert_ku = 02016-11-25 12:57:11 remote_cert_ku = 02016-11-25 12:57:11 remote_cert_ku = 02016-11-25 12:57:11 remote_cert_ku = 02016-11-25 12:57:11 remote_cert_ku = 02016-11-25 12:57:11 remote_cert_ku = 02016-11-25 12:57:11 remote_cert_ku = 02016-11-25 12:57:11 remote_cert_ku = 02016-11-25 12:57:11 remote_cert_ku = 02016-11-25 12:57:11 Network Status: CONNECTED to WIFI "IT HURTS WHEN IP"2016-11-25 12:57:11 remote_cert_ku = 02016-11-25 12:57:11 remote_cert_ku = 02016-11-25 12:57:11 remote_cert_ku = 02016-11-25 12:57:11 remote_cert_eku = 'TLS Web Server Authentication'2016-11-25 12:57:11 ssl_flags = 02016-11-25 12:57:11 tls_timeout = 22016-11-25 12:57:11 renegotiate_bytes = 02016-11-25 12:57:11 renegotiate_packets = 02016-11-25 12:57:11 renegotiate_seconds = 36002016-11-25 12:57:11 handshake_window = 602016-11-25 12:57:11 transition_window = 36002016-11-25 12:57:11 single_session = DISABLED2016-11-25 12:57:11 push_peer_info = DISABLED2016-11-25 12:57:11 tls_exit = DISABLED2016-11-25 12:57:11 tls_auth_file = '[[iNLINE]]'2016-11-25 12:57:11 client = ENABLED2016-11-25 12:57:11 pull = ENABLED2016-11-25 12:57:11 auth_user_pass_file = '[uNDEF]'2016-11-25 12:57:11 OpenVPN 2.4-icsopenvpn [git:HEAD-9d8801b6185d7453] android-21-arm64-v8a [sSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [MH/PKTINFO] [iPv6] built on Oct 9 20162016-11-25 12:57:11 library versions: OpenSSL 1.0.2j 26 Sep 2016, LZO 2.092016-11-25 12:57:11 MANAGEMENT: Connected to management server at /data/user/0/de.blinkt.openvpn/cache/mgmtsocket2016-11-25 12:57:11 MANAGEMENT: CMD 'hold release'2016-11-25 12:57:11 MANAGEMENT: CMD 'bytecount 2'2016-11-25 12:57:11 MANAGEMENT: CMD 'state on'2016-11-25 12:57:11 MANAGEMENT: CMD 'proxy NONE'2016-11-25 12:57:12 Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication2016-11-25 12:57:12 Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication2016-11-25 12:57:12 LZO compression initializing2016-11-25 12:57:12 Control Channel MTU parms [ L:1622 D:1184 EF:66 EB:0 ET:0 EL:3 ]2016-11-25 12:57:12 Data Channel MTU parms [ L:1622 D:1450 EF:122 EB:406 ET:0 EL:3 ]2016-11-25 12:57:12 Local Options String (VER=V4): 'V4,dev-type tun,link-mtu 1558,tun-mtu 1500,proto UDPv4,comp-lzo,keydir 1,cipher AES-256-CBC,auth SHA1,keysize 256,tls-auth,key-method 2,tls-client'2016-11-25 12:57:12 Expected Remote Options String (VER=V4): 'V4,dev-type tun,link-mtu 1558,tun-mtu 1500,proto UDPv4,comp-lzo,keydir 0,cipher AES-256-CBC,auth SHA1,keysize 256,tls-auth,key-method 2,tls-server'2016-11-25 12:57:12 TCP/UDP: Preserving recently used remote address: [AF_INET]199.241.147.34:4432016-11-25 12:57:12 Socket Buffers: R=[229376->229376] S=[229376->229376]2016-11-25 12:57:12 MANAGEMENT: CMD 'needok 'PROTECTFD' ok'2016-11-25 12:57:12 UDP link local: (not bound)2016-11-25 12:57:12 UDP link remote: [AF_INET]199.241.147.34:4432016-11-25 12:57:12 MANAGEMENT: >STATE:1480107432,WAIT,,,,,,2016-11-25 12:57:12 MANAGEMENT: >STATE:1480107432,AUTH,,,,,,2016-11-25 12:57:12 TLS: Initial packet from [AF_INET]199.241.147.34:443, sid=867b4c04 b4a654a02016-11-25 12:57:12 VERIFY OK: depth=1, C=IT, ST=IT, L=Perugia, O=airvpn.org, CN=airvpn.org CA, emailAddress=info@airvpn.org2016-11-25 12:57:12 Validating certificate key usage2016-11-25 12:57:12 ++ Certificate has key usage 00a0, expects 00a02016-11-25 12:57:12 VERIFY KU OK2016-11-25 12:57:13 Validating certificate extended key usage2016-11-25 12:57:13 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication2016-11-25 12:57:13 VERIFY EKU OK2016-11-25 12:57:13 VERIFY OK: depth=0, C=IT, ST=IT, L=Perugia, O=airvpn.org, CN=server, emailAddress=info@airvpn.org2016-11-25 12:57:13 Control Channel: TLSv1.2, cipher TLSv1/SSLv3 DHE-RSA-AES256-GCM-SHA384, 4096 bit RSA2016-11-25 12:57:13 [server] Peer Connection Initiated with [AF_INET]199.241.147.34:4432016-11-25 12:57:14 MANAGEMENT: >STATE:1480107434,GET_CONFIG,,,,,,2016-11-25 12:57:14 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)2016-11-25 12:57:14 Key [AF_INET]199.241.147.34:443 [0] not initialized (yet), dropping packet.2016-11-25 12:57:14 PUSH: Received control message: 'PUSH_REPLY,redirect-gateway def1 bypass-dhcp,dhcp-option DNS 10.4.0.1,comp-lzo no,route-gateway 10.4.0.1,topology subnet,ping 10,ping-restart 60,ifconfig 10.4.49.120 255.255.0.0'2016-11-25 12:57:14 OPTIONS IMPORT: timers and/or timeouts modified2016-11-25 12:57:14 OPTIONS IMPORT: compression parms modified2016-11-25 12:57:14 OPTIONS IMPORT: --ifconfig/up options modified2016-11-25 12:57:14 OPTIONS IMPORT: route options modified2016-11-25 12:57:14 OPTIONS IMPORT: route-related options modified2016-11-25 12:57:14 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified2016-11-25 12:57:14 Data Channel MTU parms [ L:1558 D:1450 EF:58 EB:406 ET:0 EL:3 ]2016-11-25 12:57:14 Data Channel Encrypt: Cipher 'AES-256-CBC' initialized with 256 bit key2016-11-25 12:57:14 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication2016-11-25 12:57:14 Data Channel Decrypt: Cipher 'AES-256-CBC' initialized with 256 bit key2016-11-25 12:57:14 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication2016-11-25 12:57:14 ROUTE_GATEWAY 127.100.103.119/255.0.0.0 IFACE=lo HWADDR=00:00:00:00:00:002016-11-25 12:57:14 do_ifconfig, tt->did_ifconfig_ipv6_setup=02016-11-25 12:57:14 MANAGEMENT: >STATE:1480107434,ASSIGN_IP,,10.4.49.120,,,,2016-11-25 12:57:14 MANAGEMENT: CMD 'needok 'IFCONFIG' ok'2016-11-25 12:57:14 MANAGEMENT: CMD 'needok 'ROUTE' ok'2016-11-25 12:57:14 MANAGEMENT: CMD 'needok 'DNSSERVER' ok'2016-11-25 12:57:14 Opening tun interface:2016-11-25 12:57:14 MANAGEMENT: CMD 'needok 'PERSIST_TUN_ACTION' OPEN_BEFORE_CLOSE'2016-11-25 12:57:14 Ignoring multicast route: 224.0.0.0/32016-11-25 12:57:14 Local IPv4: 10.4.49.120/16 IPv6: null MTU: 15002016-11-25 12:57:14 DNS Server: 10.4.0.1, Domain: null2016-11-25 12:57:14 Routes: 0.0.0.0/0, 10.4.0.0/16 2016-11-25 12:57:14 Routes excluded: 192.168.29.213/24 2016-11-25 12:57:14 VpnService routes installed: 0.0.0.0/1, 128.0.0.0/2, 192.0.0.0/9, 192.128.0.0/11, 192.160.0.0/13, 192.168.0.0/20, 192.168.16.0/21, 192.168.24.0/22, 192.168.28.0/24, 192.168.30.0/23, 192.168.32.0/19, 192.168.64.0/18, 192.168.128.0/17, 192.169.0.0/16, 192.170.0.0/15, 192.172.0.0/14, 192.176.0.0/12, 192.192.0.0/10, 193.0.0.0/8, 194.0.0.0/7, 196.0.0.0/6, 200.0.0.0/5, 208.0.0.0/4, 224.0.0.0/3 2016-11-25 12:57:14 Disallowed VPN apps: 2016-11-25 12:57:14 MANAGEMENT: CMD 'needok 'OPENTUN' ok'2016-11-25 12:57:14 Initialization Sequence Completed2016-11-25 12:57:14 MANAGEMENT: >STATE:1480107434,CONNECTED,SUCCESS,10.4.49.120,199.241.147.34,443,,are you using OpenVPN or OpenVPN Connect? i am using openvpn for android Quote Share this post Link to post
OpenSourcerer 1442 Posted ... There's a tab called "IP and DNS" in the settings on a connection profile... did you go through it and tried setting some custom DNS servers? Quote Hide OpenSourcerer's signature Hide all signatures NOT AN AIRVPN TEAM MEMBER. USE TICKETS FOR PROFESSIONAL SUPPORT. LZ1's New User Guide to AirVPN « Plenty of stuff for advanced users, too! Want to contact me directly? All relevant methods are on my About me page. Share this post Link to post