Jump to content
Not connected, Your IP: 216.73.216.103

Staff

Staff
  • Content Count

    11527
  • Joined

    ...
  • Last visited

    ...
  • Days Won

    2036

Everything posted by Staff

  1. Hello, Absolutely not, we have tested and re-tested it on a dozen of different Android 4.2 and 4.3 tablets. If you experience this, there's something wrong in your device or something we're missing. openvpn-connect will not allow any packet out until the VPN connection is established. You can easily verify that with a packet sniffer. "Seamless tunnel" is exactly what you want. Five seconds is a perfectly normal time for an OpenVPN connection to be established. The "trick" to make openvpn-connect behave exactly how you wish is to never shut it down (just like you do with any other VPN application installed by default) and tick "Reconnect on reboot". Adding a trusted & secure VPN (i.e. encrypted tunnel), even if you connect to web sites over SSL/TLS, makes actually a lot of sense, for a series of important reasons: you avoid encrypted cookies exploits, you make BEAST etc. attacks impotent, you don't let your hot-spot administrators know what you are doing and which addresses you contact over the Internet, you prevent hi-jacks and other malicious attacks, you avoid DNS poisoning and you bypass protocol and destination IP censorship performed by the hot-spot (if any). We run only OpenVPN because it's the most secure VPN solution and because it provides some flexibility and options (needed in certain countries) that are not easily implementable with any other tunneling protocol. Under a security point of view, the paramount advantages of OpenVPN over IPsec are that the first runs in the user space, while the second in the kernel space, and that IPsec has been allegedly declared to be an NSA target for easy breaking, maybe through backdoors (according to these allegations, IPsec has been polluted by NSA since years ago). Kind regards
  2. Hello, can you please make sure that you're using the VPN DNS server (10.4.0.1)? If you use DNS outside the USA, some services might not work, because some of them do not check only the country IP address, but perform a wide range of additional checks. So you acted just fine to delete cookies and cache, but please also check that HTML5 geo-location in your browser is disabled as well. Kind regards
  3. Hello! You're not missing anything: if your Android device is configured to send out unencrypted login and password as soon as it connects to any WiFi network, it will do so. However, we miss how it is possible, as far as we know all the services you cite allow secure authentication (over SSL/TLS). In any case, you already have cited the solution. In openvpn-connect "Settings", make sure that the option: "Seamless tunnel - Block Internet while VPN is paused or reconnecting" is ticked and do not turn on WiFi if openvpn-connect is not running (i.e. first you run openvpn-connect, THEN you turn on the WiFi). You might also like to tick "Reconnect on reboot". Kind regards
  4. Hello, it's a "feature", Tunnelblick accepts only ONE .ovpn file per folder. Also, we're glad to inform you that the DNS problem with OpenDNS has been solved. Kind regards
  5. Hello! Make sure to delete supercookies (aka Flash cookies) and disable HTML5 geo-location in your browser. Please note that if you connect to USA, Canada or UK VPN servers, it's correct that YouTube provides pages in English language. Also, YouTube and other Google services may have a feature that auto-selects the language set in your browser. Kind regards
  6. Hello! It would be the same with L2TP or any other protocol. You can establish a VPN connection only AFTER you are connected to a network, obviously. This is true for any system, not only Android. If your device is correctly set up you don't compromise anything. Anyway, we're sorry, we have no plans to offer PPTP/L2TP/SSTP or IPsec Kind regards
  7. Hello! Thank you, we're glad to know that you managed to solve the problem. For the readers: OpenVPN versions with installer older that I003 will NOT install properly on Windows 7 and Windows 8.x after 21-Aug-2013 due to a TUN/TAP driver certificate signature error. Windows 7/8 users must install OpenVPN 2.3.2 (or later) with installer I003 (or later). This version is the current latest OpenVPN available version, both on the official OpenVPN site and our package for Windows. Kind regards
  8. Hello, we have been forced to bring down Bootis and Cassiopeia. Both servers have some line problem which limits bandwidth severely. Having them down causes them not to appear anymore as "Best" servers. This is a very particular case in which the system formula to determine the best server fails. We have asked for datacenter support. Kind regards
  9. Hello! The Air client is an OpenVPN wrapper so there should be no differences for applications. Actually we can't reproduce the issue, can you give us more information? Kind regards
  10. Hello! There are several ways to fix the Windows problem. For example please see here: https://airvpn.org/topic/9787-the-pros-and-the-cons/?p=11501 In our "How-To" section you can also find different methods based on firewalls (Windows Firewall, Comodo Firewall). Kind regards
  11. Hello! The system already takes into consideration latency times to discard servers. There's something wrong at the moment, we are investigating. Kind regards
  12. Hello! It's perfectly possible to pay via credit card without having a PayPal account from the Netherlands, as usual. Just re-checked to be sure a few seconds ago. Kind regards
  13. Hello, assuming that your ISP throttles SSL and SSH in the same way, SSH implementation is generally more efficient. Yes, you need to authorize communications with all the entry-IP addresses of the VPN servers you wish to connect to, as usual. Kind regards
  14. Hello, the CPU processing power of the router can handle approximately a maximum of 8-9 Mbit/s AES-256 throughput with on-the-fly encryption and decryption. Our OpenVPN Data Channel cipher is AES-256-CBC. Kind regards
  15. Hello, you can pay via PayPal with a credit card (no need of a PayPal account). Not all credit cards are accepted, though. We are anyway working to offer a new credit cards payment processor. Kind regards
  16. Hello, the basic concept is that you need to change the DNS servers IP addresses of your physical network card. Kind regards
  17. Hello! Just like any previous version Windows 7 lacks the concept of global DNS. In order to prevent DNS leaks please see here: https://airvpn.org/topic/9787-the-pros-and-the-cons/?p=11501 In order to prevent any leak please see here: https://airvpn.org/topic/9797-blocking-non-vpn-traffic-without-firewall-using-routing-router Kind regards
  18. Hello! Please see here: https://airvpn.org/topic/1713-win-mac-bsd-block-traffic-when-vpn-disconnects/page-8?do=findComment&comment=11544 Kind regards
  19. Hello, openvpn-connect is currently not compatible with iPhone 5s. OpenVPN Technologies is working on the issue and announced that a working version will be available on December 2013. Kind regards
  20. Hello! We're very glad to inform you that four new 1 Gbit/s servers located in the Netherlands are available: Dorsum, Erakis, Grafias, Keid. The AirVPN client will show automatically the new servers, while if you use the OpenVPN client you can generate all the files to access them through our configuration/certificates/key generator (menu "Client Area"->"Config generator"). The servers accept connections on ports 53, 80, 443, 2018 UDP and TCP. Just like every other Air server, Dorsum, Erakis, Grafias and Keid support OpenVPN over SSL and OpenVPN over SSH. As usual no traffic limits, no logs, no discrimination on protocols and hardened security against various attacks with separate entry and exit-IP addresses. Do not hesitate to contact us for any information or issue. Kind regards and datalove AirVPN Team
  21. openoffice is free right? http://thepiratebay.sx/torrent/5688510/Open_Office_3.2.1_-_[Latest][2010]_-_[GuruFuel] Hello! Correct (technically it is open source, not free, and freely redistributable). It is not developed anymore, if you're looking for a free and open source office suite you might like LibreOffice. We'll perform the tests from Librae and Andromedae and update the thread accordingly. Kind regards
  22. @vpn78 Please note that we are not going to test torrents or magnet links pointing to non-freely sharable contents. Please provide a magnet link or a link to a torrent file pointing to freely sharable content. Kind regards
  23. Hello! We're very glad to know that the problem is solved. 1) That's useful when you wish to connect OpenVPN over a proxy. For example, in case you are behind a corporate proxy, or if you wish to connect OpenVPN over some proxy such as a TOR proxy. Leave it to "None" for direct OpenVPN connections. 2) No purpose, it is a remnant of older client versions. 3) Yes, it's ok. That option is useful if the Air client fails to detect OpenVPN presence in "non-standard" installations, you can tell it where it can find OpenVPN. The answers to the FAQ may be important to start learning and using all the AirVPN features: https://airvpn.org/forum/24-frequently-asked-questions You might also like to have a look at the "How-To" section of the forums. Also, do not hesitate to search the forum, there's a search function and a powerful advanced search function (look at the upper right corner of the web site). Kind regards
  24. Hello, unfortunately the article is technically so unclear and inaccurate that nothing specific can be said. The definition of Perfect Forward Secrecy implies that a session key can't be derived by any previous key. In AirVPN this is achieved through DHE or ECDHE keying in the web site (TLS up to 1.2, if the browser supports it) and through DHE in OpenVPN (TLS). Kind regards
  25. Hello, can you please publish a magnet link or a link to a torrent file pointing to freely sharable content, so that we can try to reproduce the issue? Kind regards
×
×
  • Create New...