Astrill Application:OpenVPN Features: Difference between revisions
No edit summary |
|||
| (16 intermediate revisions by 2 users not shown) | |||
| Line 1: | Line 1: | ||
== Site Filter == | == Site Filter == | ||
'''Site Filter''' is one of the OpenVPN features that will give you options for which sites you want to go through VPN. | |||
[[File: | |||
[[File:OpenVPN-Site-Filter-1.png|border|800px|]] | |||
| Line 11: | Line 12: | ||
# '''Site Filter''' feature is under the '''Settings''' Menu. | # '''Site Filter''' feature is under the '''Settings''' Menu. | ||
# Once you click on the '''Site Filter''' feature, you will see it is set to '''"Tunnel all sites"''' mode as default. | # Once you click on the '''Site Filter''' feature, you will see it is set to '''"Tunnel all sites"''' mode as default. | ||
# '''Site Filter modes''', click on the drop down arrow button to show the Site Filter modes. | # '''Site Filter modes''', click on the drop-down arrow button to show the Site Filter modes. | ||
| Line 17: | Line 18: | ||
=== Tunnel all sites === | === Tunnel all sites === | ||
This mode will allow all sites to go through VPN and is best for your privacy protection. This mode is more secure than other options since all sites are encrypted and protected. | |||
[[File:OpenVPN-Site-Filter-TunnelAllSites.png|border|500px|]] | |||
# To choose '''Tunnel all sites''' mode, go to '''SETTINGS''' menu then choose '''Site Filter'''. | |||
# To choose '''Tunnel all sites''' mode, go to the '''SETTINGS''' menu, then choose '''Site Filter'''. | |||
# By default it is set to '''Tunnel all sites mode'''. | # By default it is set to '''Tunnel all sites mode'''. | ||
# Click '''OK''', now all sites will go through VPN even the local sites. | # Click '''OK''', now all sites will go through VPN, even the local sites. | ||
=== Tunnel only these sites === | === Tunnel only these sites === | ||
This mode will allow you to specify the only sites that you wish to tunnel through VPN. You will have to specify a list of IP addresses (one per line). You can use IP blocks in CIDR format as well, e.g., 12.13.14.0/24. | |||
[[File:OpenVPN-Site-Filter-OnlyTheseSites.png|border|500px|]] | |||
# To choose '''Tunnel only these sites''' mode, go to '''SETTINGS''' menu then choose '''Site Filter'''. | |||
# Click the drop down arrow to show the other '''Site filter modes'''. | # To choose '''Tunnel only these sites''' mode, go to the '''SETTINGS''' menu, then choose '''Site Filter'''. | ||
# Click the drop-down arrow to show the other '''Site filter modes'''. | |||
# Choose '''Tunnel only these sites'''. | # Choose '''Tunnel only these sites'''. | ||
# Specify the list of '''IP addresses''' that you wish to tunnel through VPN ( | # Specify the list of '''IP addresses''' that you wish to tunnel through VPN (the shown IP from the image is just an example). | ||
# Click '''OK''' to save. | # Click '''OK''' to save. | ||
# A message box will appear that you need to disconnect from the server | # A message box will appear that you need to disconnect from the server; click '''OK'''. This message is shown if you're currently connected to a server; otherwise, no such message will show. | ||
=== Exclude these sites === | === Exclude these sites === | ||
This mode will allow you to specify the sites that you do not want to tunnel through VPN. You will have to specify a list of IP addresses(one per line as well). You can use IP blocks in CIDR format as well, e.g. 12.13.14.0/24. | |||
This mode will allow you to specify the sites that you do not want to tunnel through VPN. You will have to specify a list of IP addresses (one per line as well). You can use IP blocks in CIDR format as well, e.g., 12.13.14.0/24. | |||
[[File: | [[File:OpenVPN-Site-Filter-ExcludeTheseSites.png|border|500px|]] | ||
# To choose '''Exclude these sites''' mode, go to '''SETTINGS''' menu then choose '''Site Filter'''. | # To choose the '''Exclude these sites''' mode, go to the '''SETTINGS''' menu and then choose '''Site Filter'''. | ||
# Click the drop down arrow to show the other '''Site filter modes'''. | # Click the drop-down arrow to show the other '''Site filter modes'''. | ||
# Choose '''Exclude these sites'''. | # Choose '''Exclude these sites'''. | ||
# Specify the list of '''IP addresses''' that you wish to exclude through VPN ( | # Specify the list of '''IP addresses''' that you wish to exclude through VPN (the shown IP from the image is just an example). | ||
# Click '''OK''' to save. | # Click '''OK''' to save. | ||
# A message box will appear that you need to disconnect from the server | # A message box will appear that you need to disconnect from the server; click '''OK'''. This message is shown if you're currently connected to a server; otherwise, no such message will show. | ||
=== Only International Sites === | |||
This mode will allow you to unlock geo-locked contents, for example, streaming TV, and all local sites will load directly thus their speed will not be affected. | |||
# To choose '''Only international sites mode''', go to '''SETTINGS''' menu then choose '''Site Filter'''. | |||
# Click the drop down arrow to show the other '''Site filter modes'''. | [[File:OpenVPN-Site-Filter-OnlyInternationalSites.png|border|500px|]] | ||
# To choose '''Only international sites mode''', go to the '''SETTINGS''' menu, then choose '''Site Filter'''. | |||
# Click the drop-down arrow to show the other '''Site filter modes'''. | |||
# Choose '''Only international sites'''. | # Choose '''Only international sites'''. | ||
# Click '''OK''' to save. | # Click '''OK''' to save. | ||
# A message box will appear that you need to disconnect from the server | # A message box will appear that you need to disconnect from the server; click '''OK'''. This message is shown if you're currently connected to a server; otherwise, no such message will show. | ||
=== Unblock sites === | === Unblock sites === | ||
If you are located in China, use this mode to tunnel only blocked sites through VPN. All other sites will go directly. | If you are located in China, use this mode to tunnel only blocked sites through VPN. All other sites will go directly. | ||
[[File: | [[File:OpenVPN-Site-Filter-UnblockSites.png|border|500px|]] | ||
# To choose '''Tunnel only these sites''' mode, go to '''SETTINGS''' menu then choose '''Site Filter'''. | # To choose '''Tunnel only these sites''' mode, go to the '''SETTINGS''' menu, then choose '''Site Filter'''. | ||
# Click the drop down arrow to show the other '''Site filter modes'''. | # Click the drop-down arrow to show the other '''Site filter modes'''. | ||
# Choose '''Unblock sites'''. | # Choose '''Unblock sites'''. | ||
# Specify the list of '''IP addresses''' that you wish to tunnel through VPN ( | # Specify the list of '''IP addresses''' that you wish to tunnel through VPN (the shown IP from the image is just an example). | ||
# Click '''OK''' to save. | # Click '''OK''' to save. | ||
# A message box will appear that you need to disconnect from the server | # A message box will appear that you need to disconnect from the server; click '''OK'''. This message is shown if you're currently connected to a server; otherwise, no such message will show. | ||
== Application Filter == | == Application Filter == | ||
'''Application Filter''' is one of the '''OpenVPN features''' that will give you options which applications you want to go through VPN. | |||
'''Application Filter''' is one of the '''OpenVPN features''' that will give you options for which applications you want to go through VPN. | |||
[[File: | [[File:OpenVPN-App-Filter-1.png|border|800px|]] | ||
| Line 101: | Line 118: | ||
# '''Application Filter''' feature is under the '''Settings''' Menu. | # '''Application Filter''' feature is under the '''Settings''' Menu. | ||
# Once you click on the '''Application Filter''' feature, you will see it is set to '''"Tunnel all apps"''' mode as default. | # Once you click on the '''Application Filter''' feature, you will see it is set to '''"Tunnel all apps"''' mode as default. | ||
# '''Application Filter''' modes, click on the drop down arrow button to show the Application Filter modes. | # '''Application Filter''' modes, click on the drop-down arrow button to show the Application Filter modes. | ||
| Line 107: | Line 124: | ||
=== Tunnel all apps === | === Tunnel all apps === | ||
This mode will allow all applications to go through VPN and is best for your privacy protection. This mode is more secure among other options since all applications are protected. | This mode will allow all applications to go through VPN and is best for your privacy protection. This mode is more secure among other options since all applications are protected. | ||
| Line 112: | Line 130: | ||
[[File: | [[File:OpenVPN-App-Filter-TunnelAllApps.png|border|500px|]] | ||
# To choose '''Tunnel all apps mode''', go to '''SETTINGS''' menu then choose '''Application Filter'''. | # To choose '''Tunnel all apps mode''', go to the '''SETTINGS''' menu, then choose '''Application Filter'''. | ||
# By default it is set to '''Tunnel all apps''' mode. | # By default it is set to '''Tunnel all apps''' mode. | ||
# Click '''OK''', now all applications will go through VPN. | # Click '''OK''', now all applications will go through VPN. | ||
=== Tunnel only these apps === | === Tunnel only these apps === | ||
This mode will allow you to specify the only application | This mode will allow you to specify the only application(s) you wish to go through VPN. | ||
[[File: | [[File:OpenVPN-App-Filter-OnlyTheseApps.png|border|500px|]] | ||
# To choose '''Tunnel only these apps''' mode, go to '''SETTINGS''' menu then choose '''Application Filter'''. | # To choose '''Tunnel only these apps''' mode, go to the '''SETTINGS''' menu, then choose '''Application Filter'''. | ||
# Click the drop down arrow to show the other '''Application filter modes''' and then choose '''Tunnel only these apps'''. | # Click the drop-down arrow to show the other '''Application filter modes''', and then choose '''Tunnel only these apps'''. | ||
# Click the '''Add''' or '''+''' button and select a program that you want to tunnel (Example: Skype). | # Click the '''Add''' or '''+''' button and select a program that you want to tunnel (Example: Skype). | ||
# To remove from the list, highlight the app or choose the app and click the "<b>x</b>" button. | # To remove from the list, highlight the app or choose the app and click the "<b>x</b>" button. | ||
# Click '''OK''' to save. | # Click '''OK''' to save. | ||
# A message box will appear that you need to disconnect from the server | # A message box will appear that you need to disconnect from the server; click '''OK'''. This message is shown if you're currently connected to a server; otherwise, no such message will show. | ||
=== Exclude these apps === | === Exclude these apps === | ||
'''Exclude these apps''', this mode will allow you to exclude selected application(s) to go through VPN. | |||
[[File: | [[File:OpenVPN-App-Filter-ExcludeTheseApps.png|border|500px|]] | ||
# To choose '''Exclude these apps''' mode, go to '''SETTINGS''' menu then choose '''Application Filter'''. | # To choose the '''Exclude these apps''' mode, go to the '''SETTINGS''' menu, then choose '''Application Filter'''. | ||
# Click the drop down arrow to show the other '''Application filter modes''' and choose '''Exclude these apps'''. | # Click the drop-down arrow to show the other '''Application filter modes''', and choose '''Exclude these apps'''. | ||
# Click the '''Add''' or '''+''' button and select a program that you want to exclude ( | # Click the '''Add''' or '''+''' button and select a program that you want to exclude (example: Skype). | ||
# To remove from the list, highlight the app or choose the app and click the "<b>x</b>" button. | # To remove from the list, highlight the app or choose the app and click the "<b>x</b>" button. | ||
# Click '''OK''' to save. | # Click '''OK''' to save. | ||
# A message box will appear that you need to disconnect from the server | # A message box will appear that you need to disconnect from the server; click '''OK'''. This message is shown if you're currently connected to a server; otherwise, no such message will show. | ||
---- | ---- | ||
== Port Forward == | == Port Forward == | ||
This function forwards a port from VPN IP(external IP) to your computer. This is useful for | |||
This function forwards a port from the VPN IP (external IP) to your computer. This is useful for Bittorrent download programs. | |||
[[File: | [[File:OpenVPN-Port-Forwarding-1.png|border|800px|]] | ||
# Click on '''SETTINGS''' menu then choose '''Port Forward'''. | # Click on the '''SETTINGS''' menu, then choose '''Port Forward'''. | ||
# By default, '''Port Forward''' is not enabled. | # By default, '''Port Forward''' is not enabled. | ||
# Tick the '''Enable Port Forwarding''' box to enable this feature. | # Tick the '''Enable Port Forwarding''' box to enable this feature. | ||
| Line 177: | Line 199: | ||
---- | ---- | ||
'''Note :''' | '''Note:''' | ||
'''''Only starred servers from the servers list support port forwarding and P2P applications.''''' | |||
== DNS Options == | == DNS Options == | ||
'''DNS Options''' is one of the OpenVPN features that will give you options for which DNS servers you want to use when connected to VPN. We always recommend using Astrill DNS for best performance and privacy protection. | |||
[[File:OpenVPN-DNS-Options-1.png|border|800px|]] | |||
# Click on '''SETTINGS''' menu then choose '''DNS Options...'''. | |||
# Click on the '''SETTINGS''' menu, then choose '''DNS Options...'''. | |||
# By default, it is set to '''Astrill DNS''' as recommended. | # By default, it is set to '''Astrill DNS''' as recommended. | ||
# Click the drop down arrow to show the other DNS servers available. | # Click the drop-down arrow to show the other DNS servers available. | ||
# You can try using '''Google DNS''' for example. | # You can try using '''Google DNS''' for example. | ||
# Once '''Google DNS''' is selected, it will automatically set '''DNS 1''' and '''DNS 2''' to | # Once '''Google DNS''' is selected, it will automatically set '''DNS 1''' and '''DNS 2''' to Google DNS. | ||
# Click '''OK''' to save. | # Click '''OK''' to save. | ||
| Line 203: | Line 228: | ||
== App Guard == | == App Guard == | ||
'''App Guard''' is a new feature of OpenVPN (also available in StealthVPN). This feature will allow you to block application(s) when VPN is not connected. No need to mess up with the Windows firewall (if you're using Windows). | |||
[[File:OpenVPN-App-Guard-1.png|border|800px|]] | |||
# Click on '''SETTINGS''' menu then choose '''App Guard...'''. | # Click on the '''SETTINGS''' menu, then choose '''App Guard...'''. | ||
# Click the '''Add''' or '''+''' button and select a program that you want to block if | # Click the '''Add''' or '''+''' button and select a program that you want to block if the VPN is off. | ||
# To remove from the list, highlight the app or choose the app and click the "<b>x</b>" button. | # To remove from the list, highlight the app or choose the app and click the "<b>x</b>" button. | ||
# For example, Utorrent is added from the list. If VPN is off, | # For example, Utorrent is added from the list. If VPN is off, uTorrent is blocked. | ||
# Click '''OK''' to save after adding/removing app from the list. | # Click '''OK''' to save after adding/removing the app from the list. | ||
---- | |||
== OpenVPN Options == | == OpenVPN Options == | ||
'''OpenVPN Options''' feature will allow you to choose OpenVPN mode whether UDP or TCP mode and connection port for better speed and stability. | '''OpenVPN Options''' feature will allow you to choose OpenVPN mode, whether UDP or TCP mode, and connection port for better speed and stability. | ||
[[File: | [[File:OpenVPN-OpenVPN-Options-1.png|border|500px|]] | ||
# Click on '''SETTINGS''' menu then choose '''OpenVPN Options'''. | # Click on the '''SETTINGS''' menu, then choose '''OpenVPN Options'''. | ||
# By default, OpenVPN mode is set to '''Fast (UDP)'''. Fast UDP is preferred and the fastest. However, if you are unable to connect or connection is slow or unstable, you can select '''Reliable (TCP)''' mode. | # By default, OpenVPN mode is set to '''Fast (UDP)'''. Fast UDP is preferred and the fastest. However, if you are unable to connect or the connection is slow or unstable, you can select '''Reliable (TCP)''' mode. | ||
# By default, '''Port''' is set to ''' | # By default, '''Port''' is set to '''8292''' in Fast (UDP) mode. | ||
# By default, '''MTU''' value is set to '''1446''' | # By default, the '''MTU''' value is set to '''1446'''. | ||
# '''Encryption''' is to '''Default'''. | # '''Encryption''' is to '''Default'''. The default value is optimized for security and speed. Other options are Blowfish, AES, CAST and CAMELLIA. None of these algorithms is cracked up to date; you can use the one you trust most. | ||
# Click on the drop down arrow on Mode to show other OpenVPN modes. You can try selecting '''Reliable (TCP)''' mode. | # Click on the drop-down arrow on Mode to show other OpenVPN modes. You can try selecting '''Reliable (TCP)''' mode. | ||
# By default, '''Port''' is set to ''' | # By default, '''Port''' is set to '''443''' in Reliable (TCP) mode. You can choose another port by clicking on the drop-down arrow. | ||
# A message box will appear that you need to disconnect and reconnect from the server for changes to take effect; click '''OK'''. This message is shown if you're currently connected to a server; otherwise, no such message will show. | |||
# A message box will appear that you need to disconnect and reconnect from the server for changes to take effect | |||
== Privacy Settings == | == Privacy Settings == | ||
Astrill protects your privacy and prevents your ISP from monitoring and controlling your online communications and browsing activity. You can use the additional features below for additional privacy and protection. | Astrill protects your privacy and prevents your ISP from monitoring and controlling your online communications and browsing activity. You can use the additional features below for additional privacy and protection. | ||
| Line 246: | Line 276: | ||
[[File: | [[File:OpenVPN-Privacy-Features-1.png|border|500px|]] | ||
# Click on '''SETTINGS''' menu then choose '''Privacy...'''. | # Click on the '''SETTINGS''' menu, then choose '''Privacy...'''. | ||
# '''Internet Kill Switch''' - Normally Astrill OPenVPN/StealthVPN will reconnect if connection | # '''Internet Kill Switch''' - Normally Astrill OPenVPN/StealthVPN will reconnect if the connection drops. In case it doesn't, and if this option is enabled, internet connection will be blocked. You will be prompted to restore the internet connection. | ||
# '''Clear Flash Cookies''' - This | # '''Clear Flash Cookies''' - This clears flash cookies whenever you connect to a VPN. '''Flash cookies''' can track your real location, and they cannot be deleted by the user easily. Astrill can do it for you. | ||
can track your real location and they cannot be deleted by user easily. Astrill can do it for you. | # '''Clear Cookies''' - Clear browser cookies (Firefox, Internet Explorer, Safari) whenever you connect to VPN. Cookies are used to remember website settings and can track you across websites, so for privacy it's good to clear them frequently. Clearing cookies will log you off from all web sites. | ||
# '''Clear Cookies''' - Clear browser cookies (Firefox, Internet Explorer, Safari) whenever you connect to VPN. Cookies are used to remember | # '''Fix DNS leak''' - This prevents Windows from leaking DNS requests over unencrypted connections. If this option is not enabled, your ISP or anyone monitoring your internet connection can view and poison DNS. | ||
# '''Fix DNS leak''' - This prevents Windows | # '''Fix IPv6 leak''' - If your ISP provides IPv6, your IPv6 address will be leaked as Astrill VPN tunnels only IPv4. In the future, we will support IPv6 as well. In the meantime, you can enable here IPv6 to prevent IP leaks. | ||
# '''Fix IPv6 leak''' - If your ISP provides IPv6, your IPv6 address will be leaked as Astrill VPN tunnels only IPv4. In the future, we will support IPv6 as well. In the meantime, you can enable here IPv6 to prevent IP | # '''Fix WebRTC IP leak''' - Even when you connect to OpenVPN, your real IP may be leaked through the WebRTC API, which is implemented in Firefox and Chrome. Enable this fix to prevent IP leaks. | ||
# '''Fix WebRTC IP leak''' - Even when you connect to OpenVPN, your real IP may be leaked through WebRTC API which is implemented in | # Click '''OK''' to save changes. | ||
Latest revision as of 13:41, 16 August 2026
Site Filter
Site Filter is one of the OpenVPN features that will give you options for which sites you want to go through VPN.
- Site Filter feature is under the Settings Menu.
- Once you click on the Site Filter feature, you will see it is set to "Tunnel all sites" mode as default.
- Site Filter modes, click on the drop-down arrow button to show the Site Filter modes.
Tunnel all sites
This mode will allow all sites to go through VPN and is best for your privacy protection. This mode is more secure than other options since all sites are encrypted and protected.
- To choose Tunnel all sites mode, go to the SETTINGS menu, then choose Site Filter.
- By default it is set to Tunnel all sites mode.
- Click OK, now all sites will go through VPN, even the local sites.
Tunnel only these sites
This mode will allow you to specify the only sites that you wish to tunnel through VPN. You will have to specify a list of IP addresses (one per line). You can use IP blocks in CIDR format as well, e.g., 12.13.14.0/24.
- To choose Tunnel only these sites mode, go to the SETTINGS menu, then choose Site Filter.
- Click the drop-down arrow to show the other Site filter modes.
- Choose Tunnel only these sites.
- Specify the list of IP addresses that you wish to tunnel through VPN (the shown IP from the image is just an example).
- Click OK to save.
- A message box will appear that you need to disconnect from the server; click OK. This message is shown if you're currently connected to a server; otherwise, no such message will show.
Exclude these sites
This mode will allow you to specify the sites that you do not want to tunnel through VPN. You will have to specify a list of IP addresses (one per line as well). You can use IP blocks in CIDR format as well, e.g., 12.13.14.0/24.
- To choose the Exclude these sites mode, go to the SETTINGS menu and then choose Site Filter.
- Click the drop-down arrow to show the other Site filter modes.
- Choose Exclude these sites.
- Specify the list of IP addresses that you wish to exclude through VPN (the shown IP from the image is just an example).
- Click OK to save.
- A message box will appear that you need to disconnect from the server; click OK. This message is shown if you're currently connected to a server; otherwise, no such message will show.
Only International Sites
This mode will allow you to unlock geo-locked contents, for example, streaming TV, and all local sites will load directly thus their speed will not be affected.
- To choose Only international sites mode, go to the SETTINGS menu, then choose Site Filter.
- Click the drop-down arrow to show the other Site filter modes.
- Choose Only international sites.
- Click OK to save.
- A message box will appear that you need to disconnect from the server; click OK. This message is shown if you're currently connected to a server; otherwise, no such message will show.
Unblock sites
If you are located in China, use this mode to tunnel only blocked sites through VPN. All other sites will go directly.
- To choose Tunnel only these sites mode, go to the SETTINGS menu, then choose Site Filter.
- Click the drop-down arrow to show the other Site filter modes.
- Choose Unblock sites.
- Specify the list of IP addresses that you wish to tunnel through VPN (the shown IP from the image is just an example).
- Click OK to save.
- A message box will appear that you need to disconnect from the server; click OK. This message is shown if you're currently connected to a server; otherwise, no such message will show.
Application Filter
Application Filter is one of the OpenVPN features that will give you options for which applications you want to go through VPN.
- Application Filter feature is under the Settings Menu.
- Once you click on the Application Filter feature, you will see it is set to "Tunnel all apps" mode as default.
- Application Filter modes, click on the drop-down arrow button to show the Application Filter modes.
Tunnel all apps
This mode will allow all applications to go through VPN and is best for your privacy protection. This mode is more secure among other options since all applications are protected.
- To choose Tunnel all apps mode, go to the SETTINGS menu, then choose Application Filter.
- By default it is set to Tunnel all apps mode.
- Click OK, now all applications will go through VPN.
Tunnel only these apps
This mode will allow you to specify the only application(s) you wish to go through VPN.
- To choose Tunnel only these apps mode, go to the SETTINGS menu, then choose Application Filter.
- Click the drop-down arrow to show the other Application filter modes, and then choose Tunnel only these apps.
- Click the Add or + button and select a program that you want to tunnel (Example: Skype).
- To remove from the list, highlight the app or choose the app and click the "x" button.
- Click OK to save.
- A message box will appear that you need to disconnect from the server; click OK. This message is shown if you're currently connected to a server; otherwise, no such message will show.
Exclude these apps
Exclude these apps, this mode will allow you to exclude selected application(s) to go through VPN.
- To choose the Exclude these apps mode, go to the SETTINGS menu, then choose Application Filter.
- Click the drop-down arrow to show the other Application filter modes, and choose Exclude these apps.
- Click the Add or + button and select a program that you want to exclude (example: Skype).
- To remove from the list, highlight the app or choose the app and click the "x" button.
- Click OK to save.
- A message box will appear that you need to disconnect from the server; click OK. This message is shown if you're currently connected to a server; otherwise, no such message will show.
Port Forward
This function forwards a port from the VPN IP (external IP) to your computer. This is useful for Bittorrent download programs.
- Click on the SETTINGS menu, then choose Port Forward.
- By default, Port Forward is not enabled.
- Tick the Enable Port Forwarding box to enable this feature.
- A specific port will be assigned to you automatically once enabled.
- Click OK to save changes.
Note:
Only starred servers from the servers list support port forwarding and P2P applications.
DNS Options
DNS Options is one of the OpenVPN features that will give you options for which DNS servers you want to use when connected to VPN. We always recommend using Astrill DNS for best performance and privacy protection.
- Click on the SETTINGS menu, then choose DNS Options....
- By default, it is set to Astrill DNS as recommended.
- Click the drop-down arrow to show the other DNS servers available.
- You can try using Google DNS for example.
- Once Google DNS is selected, it will automatically set DNS 1 and DNS 2 to Google DNS.
- Click OK to save.
App Guard
App Guard is a new feature of OpenVPN (also available in StealthVPN). This feature will allow you to block application(s) when VPN is not connected. No need to mess up with the Windows firewall (if you're using Windows).
- Click on the SETTINGS menu, then choose App Guard....
- Click the Add or + button and select a program that you want to block if the VPN is off.
- To remove from the list, highlight the app or choose the app and click the "x" button.
- For example, Utorrent is added from the list. If VPN is off, uTorrent is blocked.
- Click OK to save after adding/removing the app from the list.
OpenVPN Options
OpenVPN Options feature will allow you to choose OpenVPN mode, whether UDP or TCP mode, and connection port for better speed and stability.
- Click on the SETTINGS menu, then choose OpenVPN Options.
- By default, OpenVPN mode is set to Fast (UDP). Fast UDP is preferred and the fastest. However, if you are unable to connect or the connection is slow or unstable, you can select Reliable (TCP) mode.
- By default, Port is set to 8292 in Fast (UDP) mode.
- By default, the MTU value is set to 1446.
- Encryption is to Default. The default value is optimized for security and speed. Other options are Blowfish, AES, CAST and CAMELLIA. None of these algorithms is cracked up to date; you can use the one you trust most.
- Click on the drop-down arrow on Mode to show other OpenVPN modes. You can try selecting Reliable (TCP) mode.
- By default, Port is set to 443 in Reliable (TCP) mode. You can choose another port by clicking on the drop-down arrow.
- A message box will appear that you need to disconnect and reconnect from the server for changes to take effect; click OK. This message is shown if you're currently connected to a server; otherwise, no such message will show.
Privacy Settings
Astrill protects your privacy and prevents your ISP from monitoring and controlling your online communications and browsing activity. You can use the additional features below for additional privacy and protection.
- Click on the SETTINGS menu, then choose Privacy....
- Internet Kill Switch - Normally Astrill OPenVPN/StealthVPN will reconnect if the connection drops. In case it doesn't, and if this option is enabled, internet connection will be blocked. You will be prompted to restore the internet connection.
- Clear Flash Cookies - This clears flash cookies whenever you connect to a VPN. Flash cookies can track your real location, and they cannot be deleted by the user easily. Astrill can do it for you.
- Clear Cookies - Clear browser cookies (Firefox, Internet Explorer, Safari) whenever you connect to VPN. Cookies are used to remember website settings and can track you across websites, so for privacy it's good to clear them frequently. Clearing cookies will log you off from all web sites.
- Fix DNS leak - This prevents Windows from leaking DNS requests over unencrypted connections. If this option is not enabled, your ISP or anyone monitoring your internet connection can view and poison DNS.
- Fix IPv6 leak - If your ISP provides IPv6, your IPv6 address will be leaked as Astrill VPN tunnels only IPv4. In the future, we will support IPv6 as well. In the meantime, you can enable here IPv6 to prevent IP leaks.
- Fix WebRTC IP leak - Even when you connect to OpenVPN, your real IP may be leaked through the WebRTC API, which is implemented in Firefox and Chrome. Enable this fix to prevent IP leaks.
- Click OK to save changes.














