-
Content Count
11530 -
Joined
... -
Last visited
... -
Days Won
2038
Everything posted by Staff
-
router ANSWERED Using AirVPN on a Firewalla Gold Plus - anyone else?
Staff replied to SPKRFRQR's topic in Troubleshooting and Problems
Hello! A possible solution may come by relying on the areas (country or continent) domain names offered by AirVPN. By using the general area name that resolve into the specific entry IP addresses of all the servers in that area you randomize and rotate the connections for each name. If the mentioned names are not flexible enough consider your own fully qualified domain names, five for example, each one resolving into a pool of VPN server entry-IP addresses according to your needs and preferences. Kind regards -
@colorman Hello! Please test AirVPN Suite 2.0.0 beta 2 and let's move to the following thread if you experience the same (or any other) issue: https://airvpn.org/forums/topic/56704-linux-airvpn-suite-200-beta-available/ Kind regards
-
Please re-read the previous message because in the meantime we have found out that Netcup enforces traffic shaping against UDP, so you will never be fine with Netcup, and we have edited the message accordingly. Switch to WireGuard safely, the privacy problems with WireGuard are irrelevant for p2p, anyway they are mitigated by our system and you can also re-generate your key anytime to change VPN IP address. Kind regards
-
Hello! Netcup does enforce traffic shaping, and exactly against UDP, so you had better drop this service. Liteserver.nl does not mention officially traffic shaping against UDP, but on the forums you can find many issues with it reported by customers (only UDP). Assuming that traffic shaping is not enforced by liteserver.nl, a common reason for this error on virtual servers is the MTU size of the VPN Interface. Please try a smaller one through MTU option in WireGuard (you should test WireGuard before anything else). On the WireGuard's configuration file [Interface] section our Configuration Generator already adds MTU = 1320 which is good for most networks. If that's not enough please try also 1280 bytes. You can edit the profile with any text editor. Of course test only from liteserver.nl as Netcup is not suitable. In Eddie 2.24.x beta you can modify WireGuard interface MTU in "Preferences" > "WireGuard" window. Kind regards
-
Hello! Microsoft has confirmed that the April 2024 security updates (KB5036893 in particular) for Windows 11, Windows 10 and Windows Server have introduced bugs that cause various problems related to VPN (all protocols, including the pre-installed IPsec). A reported problem is that multiple VPN interfaces appear on affected systems as they accumulate at each session. The bugs should have been fixed with the latest updates: can you please make sure that your Windows system is up to date, just in case the problem is caused by the mentioned update? Kind regards
-
Hello! The performance you get is good, especially if you consider that you have packet errors when you connect over UDP. The fact that you get much better throughput on a specific port with the same protocols hints to traffic shaping by the ISP. The setup is safe provided that you add some measure against traffic leaks, please make sure that you enable Network Lock if you run AirVPN software. On top of that, you may also consider to bind the torrent software (if a bind option is available in your torrent program settings) to the VPN interface you mentioned. Kind regards
-
@Bokika Hello! A preliminary checklist: please make sure that the listening program is really running and listening to the correct port, and that it is started only after the VPN connection has been established if a bind option is available in the listening program settings please make sure that the program binds to the VPN interface and not to the physical network interface please make sure that no firewall rule blocks incoming packets to the listening program. You need to check while the system is connected to the VPN as some firewall tools change rule set according to the network type the system is connected to Kind regards
-
Hello! The most common reasons for what we see on the log, when UDP is not blocked by the ISP, are: Windows Defender blocking Eddie and/or OpenVPN traffic a traffic management / firewall tool on the router blocking UDP Please check and also consider to switch to WireGuard (you can do it in Eddie's "Preferences" > "Protocols" window). In case you ascertain or suspect that your ISP blocks UDP, you can switch to OpenVPN over TCP (again in "Preferences" > "Protocols" window). Kind regards
-
Hello! It's a suggestion to take into serious consideration and yes, we will move the topic into Eddie specific forum. In the AirVPN Suite for Linux the network lock design is different and was already optimized during the initial design, exactly in the way you suggest. Another bonus is a lighter firewall that needs to examine less rules. Kind regards
-
ANSWERED Cannot load inlinecertificate file
Staff replied to Pengxiao's topic in Troubleshooting and Problems
Hello! It is possible that, on the Configuration Generator page, your browser downloaded the whole web page in place of the actual configuration file. Can you please try to re-download with a different browser (we would suggest Firefox)? Kind regards -
ANSWERED Eddie reconnects to wrong server when starting
Staff replied to cccthats3cs's topic in Troubleshooting and Problems
Hello! Can you please test Eddie's latest beta version and check whether the problem is resolved or not? Please see here to download Eddie's latest beta version: https://airvpn.org/forums/topic/57401-eddie-desktop-224-beta-released/ Kind regards -
Hello! We can ensure you that no throttling is enforced or has ever been enforced. You can cross-check the expected speed achievable from the reports by our customers throughout the years and from the top user speed user table available in the servers status page. Several factors affect the performance you get with a VPN server, for example peering, routing, sub-optimal local configuration and traffic shaping enforced by your ISP. Since you experience the same problem on different datacenters served by different transit providers, peering and routing problems are less likely. Please consult the traffic shaping policy of your ISP (also known as "fair use" or "traffic management" or even "assured quality of service"), usually written in the contract and in the information papers/web pages, and troubleshoot locally through the assistance of our support team (just open a ticket at your convenience). The most relevant settings to be checked or modified are the connection mode, the MTU of the VPN interface. A general check on any self inflicted shaping on your local network (system, router) through traffic shaping tools is also advised. If you want additional support from the community attending this forum you should at least mention the Operating System name and version of the device connecting to the VPN, the program you run to connect to AirVPN servers, the connection mode. You should also publish the log of that program when you establish a connection. Without such information it is not possible to provide an actual and specific support. In the past you had multiple problems, especially with performance, and invariably they were solved as they were problems on your side (and also Verizon's traffic shaping may have played its nefarious role, are you still with Verizon?). Kind regards
-
ANSWERED Wireguard config wrong server issue
Staff replied to Shone's topic in Troubleshooting and Problems
@Shone Hello! GlueTun is integrated with AirVPN and offers an XML file from which it takes AirVPN servers data. If GlueTun is configured to work with AirVPN, and not with a generic provider, the compose file, through the proper options, will tell GlueTun which AirVPN server or area it must connect to, no matter which endpoint is specified in the WireGuard profile. Similar directives for remote inbound port forwarding are available and it is strictly necessary to set them properly in order to receive unsolicited packets inside the container. Please read the documentation and if you still experience problems feel free to come back here with more details, and/or open a ticket. Specific manual for AirVPN: https://github.com/qdm12/gluetun-wiki/blob/main/setup/providers/airvpn.md Overview manual: https://github.com/qdm12/gluetun/blob/master/README.md Wiki: https://github.com/qdm12/gluetun-wiki Kind regards -
[UPDATE] Remote port forwarding system expansion
Staff replied to Staff's topic in News and Announcement
Hello! It's too early to claim anything, given the excellent growth rate of the user base and the rising costs of IPv4 subnets... Stay tuned! Kind regards -
[UPDATE] Remote port forwarding system expansion
Staff replied to Staff's topic in News and Announcement
Hello and thank you very much! Not really substantiated arguments, only the generic fear that the support team could be overwhelmed by tickets. In reality, we are already working to migrate toward an easier and even more scalable solution with pools supporting all the protocols and not requiring anymore specific choices by the users. Exactly. The system we're working on aims at getting rid of this relevant problem by dividing users into unique pools and exit-IP addresses, so they will not have to face multiple pools (where pool 1 is "superior" to the other pools) and multiple exit-IP addresses. We see this future new system as a better solution because it will not force choices on pools and IP addresses, and it will be scalable for real: when a pool is close to exhaustion we can just add a new pool and reserve it to future new users. Stay tuned. Kind regards -
Hello! In the early stages, the names were taken from the constellations. A little later, from constellations and stars, and finally only from stars. We have exceptions in Tokyo: two servers are named after imaginary planets from Space Battleship Yamato and UFO Robot Grendizer. Kind regards
-
ANSWERED System revokes Eddie's VPN connection
Staff replied to ixochina's topic in Eddie - AirVPN Client
Hello! @Stalinium is right. You should be able to find the culprit by going into your Android settings and checking which app is enabled for Always on VPN. Kind regards -
Hello! Can you please test the new beta 2? The problem you reported has been addressed through a different approach. The "sleep 5" solution is aleatory and relatively unsafe in our opinion so we decided for another solution. Feel free to keep us posted! Kind regards
-
Hello! Please test the new beta 2. This somehow devised workaround should be no more necessary, not even on Wayland based environments, not even for browser. Only exception is Konqueror, that defies all the work by airsu and cuckoo. When Konqueror is launched, it always asks the KIO manager for a fork of the initial instance. Just in case you want to run Konqueror as a browser whose traffic must be outside the VPN tunnel, please take care to kill any previous instance before starting Konqueror through cuckoo. As an alternative for a Qt framework based browser that doesn't pose this issue, Falkon can be considered, as it does not depend on KIO. Kind regards
-
Hello! We're very glad to announce a special promotion on our long terms Premium plans. You can get prices as low as 2.20 €/month with a three years plan, which is a 68% discount when compared to monthly plan price of 7 €. You can also send an AirVPN plan as a gift: you have the option to print or send a colorful, dedicated picture with the code to activate the plan. You can do it in your account Client Area -> Your membership: Purchase and credit -> Print X-Mas after you have bought a coupon. If you're already our customer and you wish to stay aboard for a longer period, any additional subscription will be added on top of already existing subscriptions and you will not lose any day. Please check plans special prices on https://airvpn.org and https://airvpn.org/buy --- Promotion will end on January the 8th, 2024 (UTC). AirVPN does not inspect and/or log client traffic and offers: five simultaneous connections per account (additional connection slots available if needed) inbound remote port forwarding with multiple pools active daemons load balancing for unmatched high performance - current 'all time high' on client side is 730 Mbit/s with OpenVPN and 2100 Mbit/s with WireGuard flexible and customizable opt-in block lists protecting you from adware, trackers, spam and other malicious sources. You can customize answers or exceptions globally, at account level or even at single device level. powerful API IPv6 full support comfortable management of your client certificates and keys AES-GCM and ChaCha20 OpenVPN ciphers on all servers Perfect Forward Secrecy with unique per-server 4096 bit Diffie-Hellman keys internal DNS. Each server runs its own DNS server. DNS over HTTPS and DNS over TLS are also supported. free and open source software client side software support to traffic splitting on an application basis on Android and Linux and on a destination basis on Windows and macOS GPS spoofing on Android application AirVPN is the only VPN provider which is actively developing OpenVPN 3 library with a fork that's currently 245 commits ahead of OpenVPN master and adds key features and bug fixes for a much more comfortable and reliable experience: https://github.com/AirVPN/openvpn3-airvpn AirVPN, in accordance with its mission, develops only free and open source software for many platforms, including Android, Linux (both x86 and ARM based systems), macOS and Windows. Promotion due to end on 2025-02-08 (UTC). Kind regards & datalove AirVPN Staff
-
ANSWERED Connection completely blocked
Staff replied to Pi77Bull's topic in Troubleshooting and Problems
Hello! It is (or was in 2022) a major systemd problem. The network detection was greatly improved in the subsequent AirVPN Suite versions to circumvent this systemd problem/bug. Now in late 2024 it is also possible that the systemd bug was fixed. Kind regards -
New 1 Gbit/s server available. New country: TW
Staff replied to Staff's topic in News and Announcement
Hello! It could. The current decision is that next [EDIT: now current 2.24.6] Eddie Desktop edition version will print "Taiwan, Republic of China", by breaking ISO compliance and at the same time not leaving any doubt to PRC propaganda brainwashed people. This definition should be strong enough to satisfy everyone except mainland China and supporters of standards, of course. Kind regards -
@MichelAIR too. Hello! It's the ISO 3166 string extracted by Eddie as usual for any country. You can ask ISO to include ROC on ISO 3166 as a sovereign country, but it will not happen. ISO builds the list according to those countries that are either UN members, parties of the statute of the ICJ or members of a UN agency, but Republic of China can't enter the UN because of the PRC veto. To make things worse, almost all the countries in the world, including the USA and the EU Member States, with the exception of 12 countries with lesser power in the UN such as Belize and Haiti, do not recognize the Republic of China as an independent country because, we guess, they fear too much the economic sanctions PRC will enforce against those countries that would do so. Our solution to list Taiwan as it was in ISO 3166 as a stand alone, recognized and independent country, with its own flag, its own place as a country in the servers list, its own country fully qualified domain name in the infrastructure, far from being funny should have told you everything. Building our own codes and strings by breaking ISO standard may become a bigger problem but we'll evaluate it (after all we already got out of ICANN for specific ICE-related "enforcement" more than a decade ago). The matter was already on the table as already announced in the "News" forum: https://airvpn.org/forums/topic/63201-new-1-gbits-server-available-new-country-tw/?do=findComment&comment=238819 and Eddie's next version will print "Taiwan, Republic of China". On one hand, by abiding to the ISO 3166 but moving ROC to an autonomous country as it has been in practice since decades we can keep using ISO standards (no technical complications, no exception handling and worse) but at the same time we show a clear political position and challenge PRC propaganda & mantra "there's only one China". The obvious strength of this position is the provocation to leave the ISO string and keeping ROC as an autonomous country, therefore claiming there there is NOT one China only and de-structuring the meaning of "Province of China". On the other hand, breaking ISO standards and UN decisions may be very questionable but somehow stronger. Also, to avoid losing the strength of the aforementioned provocation we can find alternative strings such as "Republic of China" directly (claiming Taipei in "Republic of China" can cause again adverse reactions by ignorant people). This is the picked modification for the next Eddie version, at the moment. No problems. The fight of elderly AirVPN members against PRC censorship, propaganda and more is a quarter of century old, so being accused to align with PRC against ROC is obscenely provocative, but the replies are (self or not) moderated. As far as it pertains to the initial reaction, it means that at least the provocation worked, although it was not fully understood in this case, and if it serves the purpose to push people to realize that it's the ISO (and the UN, secondarily) the one putting the string "Province of China" on the ISO 3166 doc, it's a good thing. Not to mention that it can also serve the purpose to make people question how come, how it's possible that one could become victim of PRC propaganda "there's only one China" when one is against PRC propaganda! Kind regards
-
Hello! Yes, the server with that problem was not Polis, we apologize. On Polis we still can't find this problem, if we could catch it exactly when it happens we could do more, probably. Kind regards
