Astrill Application:StealthVPN Features
Site Filter
Site Filter is one of the StealthVPN features that will give you options which sites you want to go through VPN.
- Site Filter feature is under the Settings Menu.
- Once you click on the Site Filter feature, you will see it is set to "Tunnel all sites" mode as default.
- Site Filter modes, click on the drop down arrow button to show the Site Filter modes.
Tunnel all sites
This mode will allow all sites to go through VPN and is best for your privacy protection. This mode is more secure among other options since all sites are encrypted and protected.
- To choose Tunnel all sites mode, go to SETTINGS menu then choose Site Filter.
- By default it is set to Tunnel all sites mode.
- Click OK, now all sites will go through VPN even the local sites.
Tunnel only those sites
This mode will allow you to specify the only sites that you wish to tunnel through VPN. You will have to specify a list of IP addresses(one per line). You can use IP blocks in CIDR format as well, e.g. 12.13.14.0/24.
- To choose Tunnel only these sites mode, go to SETTINGS menu then choose Site Filter.
- Click the drop down arrow to show the other Site filter modes.
- Choose Tunnel only these sites.
- Specify the list of IP addresses that you wish to tunnel through VPN (Shown IP from the image is just an example).
- Click OK to save.
- A message box will appear that you need to disconnect from the server, click OK. This message is shown if you're currently connected to a server, otherwise no such message will show.
Exclude these sites
This mode will allow you to specify the sites that you do not want to tunnel through VPN. You will have to specify a list of IP addresses(one per line as well). You can use IP blocks in CIDR format as well, e.g. 12.13.14.0/24.
- To choose Exclude these sites mode, go to SETTINGS menu then choose Site Filter.
- Click the drop down arrow to show the other Site filter modes.
- Choose Exclude these sites.
- Specify the list of IP addresses that you wish to exclude through VPN (Shown IP from the image is just an example).
- Click OK to save.
- A message box will appear that you need to disconnect from the server, click OK. This message is shown if you're currently connected to a server, otherwise no such message will show.
Only International sites
This mode will allow you to unlock geo-locked contents, for example streaming TV, and all local sites will load directly thus their speed will not be affected.
- To choose Only international sites mode, go to SETTINGS menu then choose Site Filter.
- Click the drop down arrow to show the other Site filter modes.
- Choose Only international sites.
- Click OK to save.
- A message box will appear that you need to disconnect from the server, click OK. This message is shown if you're currently connected to a server, otherwise no such message will show.
Unblock sites
If you are located in China, use this mode to tunnel only blocked sites through VPN. All other sites will go directly.
- To choose Tunnel only these sites mode, go to SETTINGS menu then choose Site Filter.
- Click the drop down arrow to show the other Site filter modes.
- Choose Unblock sites.
- Specify the list of IP addresses that you wish to tunnel through VPN (Shown IP from the image is just an example).
- Click OK to save.
- A message box will appear that you need to disconnect from the server, click OK. This message is shown if you're currently connected to a server, otherwise no such message will show.
Application Filter
Application Filter is one of the StealthVPN features that will give you options which applications you want to go through VPN.
- Application Filter feature is under the Settings Menu.
- Once you click on the Application Filter feature, you will see it is set to "Tunnel all apps" mode as default.
- Application Filter modes, click on the drop down arrow button to show the Application Filter modes.
Tunnel all apps
This mode will allow all applications to go through VPN and is best for your privacy protection. This mode is more secure among other options since all applications are protected.
- To choose Tunnel all apps mode, go to SETTINGS menu then choose Application Filter.
- By default it is set to Tunnel all apps mode.
- Click OK, now all applications will go through VPN.
Tunnel only these apps
This mode will allow you to specify the only application/s you wish to go through VPN.
- To choose Tunnel only these apps mode, go to SETTINGS menu then choose Application Filter.
- Click the drop down arrow to show the other Application filter modes and then choose Tunnel only these apps.
- Click the Add or + button and select a program that you want to tunnel (Example: Skype).
- To remove from the list, highlight the app or choose the app and click the "x" button.
- Click OK to save.
- A message box will appear that you need to disconnect from the server, click OK. This message is shown if you're currently connected to a server, otherwise no such message will show.
Exclude these apps
Exclude these apps, this mode will allow you to exclude selected application/s to go through VPN.
- To choose Exclude these apps mode, go to SETTINGS menu then choose Application Filter.
- Click the drop down arrow to show the other Application filter modes and choose Exclude these apps.
- Click the Add or + button and select a program that you want to exclude (Example: Skype).
- To remove from the list, highlight the app or choose the app and click the "x" button.
- Click OK to save.
- A message box will appear that you need to disconnect from the server, click OK. This message is shown if you're currently connected to a server, otherwise no such message will show.
Port Forward
This function forwards a port from VPN IP(external IP) to your computer. This is useful for Bittorent download programs.
- Click on SETTINGS menu then choose Port Forward.
- By default, Port Forward is not enabled.
- Tick the Enable Port Forwarding box to enable this feature.
- A specific port will be assigned to you automatically once enabled.
- Click OK to save changes.
Note :
Only starred servers from the servers list supports port forwarding and P2P applications.
DNS Options
DNS Options is one of the OpenVPN features that will give you options which DNS servers you want to use when connected to VPN. We always recommend using Astrill DNS for best performance and privacy protection.
- Click on SETTINGS menu then choose DNS Options....
- By default, it is set to Astrill DNS as recommended.
- Click the drop down arrow to show the other DNS servers available.
- You can try using Google DNS for example.
- Once Google DNS is selected, it will automatically set DNS 1 and DNS 2 to google dns.
- Click OK to save.
App Guard
App Guard is a new feature of the StealthVPN (also available in OpenVPN). This feature that will allow you to block application/s when VPN is not connected. No need to mess up with windows firewall (if you're using Windows).
- Click on SETTINGS menu then choose App Guard....
- Click the Add or + button and select a program that you want to block if vpn is off.
- To remove from the list, highlight the app or choose the app and click the "x" button.
- For example, Utorrent is added from the list. If VPN is off, utorrent is blocked.
- Click OK to save after adding/removing app from the list.
StealthVPN Options
This Stealth features will allow you to choose StealthVPN mode whether UDP or TCP mode and connection port for better speed and stability.
- StealthVPN Options is under the Settings menu.
- By default, StealthVPN mode is set to Fast (UDP).
- By default, the Connection Port is set to 8292.
- By default, the MSS size value is set to 1400. MSS Size is only enabled in Fast (UDP) mode. If you have problem with connection speed, you can lower it's value to 1300 or 1200.
- By default, the Keep connection alive check box is unchecked. You can check this box if you want to keep the connection with VPN server alive. You can use this option only if you experience frequent disconnection.
- Click on the drop down arrow on Mode to show other StealthVPN modes. It has Fast (UDP) and Reliable (TCP).
- For reliability, you can choose Reliable (TCP) mode.
- Set the Connection Port to 443.
- You will notice that the MSS Size box will be disabled if you choose (Reliable) TCP mode.
- Click OK.
- Click OK.
Privacy Settings
Astrill protects your privacy and prevents your ISP from monitoring and controlling your online communications and browsing activity. You can use the additional features below for additional privacy and protection.
- Click on SETTINGS menu then choose Privacy....
- Internet Kill Switch - Normally Astrill OPenVPN/StealthVPN will reconnect if connection dropped. In case if it doesn't and if this option is enabled, internet conenction will be blocked. You will be prompted to restore internet connection.
- Clear Flash Cookies - This clear flash cookies whenever you connect to VPN. Flash cookies can track your real location and they cannot be deleted by user easily. Astrill can do it for you.
- Clear Cookies - Clear browser cookies (Firefox, Internet Explorer, Safari) whenever you connect to VPN. Cookies are used to remember web site settings and can track you across web sites, so for privacy it's good to clear them frequently. Clearing cookies will log you off from all web sites.
- Fix DNS leak - This prevents Windows to leak DNS requests over unencrypted connection. If this option is not enabled, your ISP or anyone monitoring your internet connection can view and poison DNS.
- Fix IPv6 leak - If your ISP provides IPv6, your IPv6 address will be leaked as Astrill VPN tunnels only IPv4. In the future, we will support IPv6 as well. In the meantime, you can enable here IPv6 to prevent IP leak.
- Fix WebRTC IP leak - Even when you connect to OpenVPN, your real IP may be leaked through WebRTC API which is implemented in firefox and chrome. Enable this fix to prevent IP leak.
- Click OK to save changes.