Vpn Service

A virtual private network (VPN) service provides a proxy server to help users bypass Internet censorship such as geoblocking and users who want to protect their communications against data profiling or MitM attacks on hostile networks.

A wide variety of entities provide "VPNs" for several purposes. But depending on the provider and the application, they do not always create a true private network. Instead, many providers simply provide an Internet proxy that uses VPN technologies such as OpenVPN or WireGuard. Commercial VPN services are often used by those wishing to disguise or obfuscate their physical location or IP address, typically as a means to evade Internet censorship or geo-blocking.

Providers often market VPN services as privacy-enhancing, citing security features, such as encryption, from the underlying VPN technology. However, users must consider that when the transmitted content is not encrypted before entering the proxy, that content is visible at the receiving endpoint (usually the VPN service provider's site) regardless of whether the VPN tunnel itself is encrypted for the inter-node transport. The only secure VPN is where the participants have oversight at both ends of the entire data path or when the content is encrypted before it enters the tunnel.

On the client side, configurations intended to use VPN services as proxies are not conventional VPN configurations. However, they do typically utilize the operating system's VPN interfaces to capture the user's data to send to the proxy. This includes virtual network adapters on computer OSes and specialized "VPN" interfaces on mobile operating systems. A less common alternative is to provide a SOCKS proxy interface.

In computer magazines, VPN services are typically judged on connection speeds; privacy protection, including privacy at signup and grade of encryption; server count and locations; interface usability; and cost. In order to determine the degree of privacy and anonymity, various computer magazines, such as PC World and PC Magazine, also take the provider's own guarantees and its reputation among news items into consideration.

Criticism and limitations

Users are commonly exposed to misinformation on the VPN services market, which makes it difficult for them to discern fact from false claims in advertisements. According to Consumer Reports, VPN service providers have poor privacy and security practices and also make hyperbolic claims. The New York Times has advised users to reconsider whether a VPN service is worth their money. VPN services are not sufficient for protection against browser fingerprinting.

Common misconceptions

  • A VPN does not make one's Internet use private. Users can still be tracked through tracking cookies and device fingerprinting, even if the user's IP address is hidden.
  • A VPN can log the user's traffic, although this depends on the VPN provider.
  • A VPN does not make the user immune to hackers.
  • A VPN is not in itself a means for good Internet privacy. The burden of trust is simply transferred from the ISP to the VPN service provider.

Legality

In March 2018, the use of unapproved VPN services was banned in China, as they can be used to circumvent the Great Firewall. Operators received prison sentences and were penalized with fines. Russia banned various VPN service providers in 2021.

Comparison of commercial virtual private network services

Privacy

PC Magazine recommends that users consider choosing a provider based in a country with no data retention laws because that makes it easier for the service to keep a promise of no logging. PC Magazine and TechRadar also suggest that users read the provider's logging policy before signing up for the service, because some providers collect information about their customers' VPN usage. PC World recommends that users avoid free services as a rule of thumb and said free services either sell their users' browsing data in aggregated form to researchers and marketers, or only offer a minimal amount of data transfer per month.

Service Based in Logging Anonymous payment and communication
Traffic DNS requests Timestamps Bandwidth IP address
Atlas VPN United States No No No No (Premium), Yes (Free) No Some
Avira Phantom VPN Germany No Unknown Yes Yes Yes No
ExpressVPN British Virgin Islands No No Yes Yes No Some
Hotspot Shield United States Yes Yes Yes Yes Yes No
IPVanish United States No No No No No No
IVPN Gibraltar No No No No No Some
Mullvad Sweden No No No No No Yes
NordVPN Panama No No No No No Some
Private Internet Access United States No No No No No Yes
PrivadoVPN Switzerland No No No No (Premium), Yes (Free) No Some
ProtonVPN Switzerland No No No No No Some
PureVPN Hong Kong No No No Yes No Some
Surfshark Netherlands No No Yes No No Some
TunnelBear Canada No No No Yes No Some
Windscribe Canada No No Yes Yes No Yes

Notes

Technical features

Service Leak Protection Protocols Obfuscation / Censorship Avoidance Network Neutrality Server
First-party DNS servers IPv6 supported / blocked Offers kill switch Offers OpenVPN Offers WireGuard Supports multihop Supports TCP port 443 Supports Obfsproxy Offers SOCKS Linux support Supports SSL tunnel Supports SSH tunnel Blocks SMTP (authent.) Blocks P2P Dedicated or virtual Diskless
Atlas VPN Yes Yes Yes No Yes Yes No No No Yes Some No Dedicated No
Avast SecureLine Yes Yes Yes Yes No No No No Some Dedicated No
Avira Phantom VPN Yes Yes Yes Yes No No Yes No No No Dedicated No
ExpressVPN Yes Yes Yes Yes No No Yes Yes No Both Yes
Hotspot Shield No No Yes No No No No
IPVanish Yes Yes Yes Yes Yes No Yes Yes Yes Yes No No No No Dedicated No
IVPN Yes No Yes Yes Beta Yes; OpenVPN Yes Yes Yes Yes No No Dedicated
Mullvad Yes Yes Yes Yes Yes Yes; WireGuard and SOCKS5 Yes No Yes Yes Yes Yes No No Dedicated Yes
NordVPN Yes No Yes Yes Yes; NordLynx based on WireGuard Yes; OpenVPN and SOCKS5 Yes Yes Yes Yes No Dedicated Yes
Private Internet Access Yes Yes Yes Yes Yes Yes Yes No Yes Yes Some No Dedicated
PrivadoVPN Yes Yes Yes Yes Yes Yes Yes No
ProtonVPN Yes No Yes Yes Beta Yes Yes No No Yes Yes Yes Some Dedicated
PureVPN Yes Yes Yes Yes No No Only through SSTP No No Yes No Some Both No
TunnelBear Yes Yes Yes Yes No No No Yes Yes Yes No Yes
Surfshark Yes No Yes Yes Yes Yes (WG, OVPN, IKEv2) Yes No No Yes Some No Both Yes
Windscribe Yes Yes Yes Yes Yes No Yes No

Notes

Encryption

Service Data encryption Handshake encryption Data authentication
Default provided Strongest provided Weakest provided Strongest provided Weakest provided Strongest provided
Atlas VPN ChaCha20-Poly1305 / AES-256 ChaCha20-Poly1305 2048-bit Diffie-Hellman ECP521 SHA-384 SHA-384
Avast SecureLine AES-256 AES-256
Avira Phantom VPN AES-256 AES-256
ExpressVPN AES-256 AES-256 CA-4096
Hotspot Shield AES-128 AES-128 TLS 1.2 ECDHE PFS TLS 1.2 ECDHE PFS HMAC HMAC
IPVanish AES-256 AES-256 RSA-2048 RSA-2048 SHA-256 SHA-256
IVPN AES-256 AES-256 RSA-4096
Mullvad AES-256 (GCM) AES-256 RSA-4096 RSA-4096 SHA-512 SHA-512
NordVPN AES-256 AES-256 (CBC) 2048-bit Diffie-Hellman 2048-bit Diffie-Hellman
Private Internet Access AES-128 (CBC) AES-256 ECC-256k1 RSA-4096 SHA-1 SHA-256
PrivadoVPN AES-256 AES-256
ProtonVPN AES-256 AES-256 RSA-4096 RSA-4096 HMAC with SHA-384 HMAC with SHA-384
PureVPN AES-256 AES-256
SaferVPN AES-256 AES-256 2048bit SSL/TLS 2048bit SSL/TLS SHA-256 SHA-256
TunnelBear AES-128 (CBC) AES-256 (CBC) 1548 bit Diffie-Hellman group 4096 bit Diffie-Hellman group SHA-1 SHA-256
Surfshark AES-256 AES-256 (CBC) 2048-bit Diffie-Hellman 2048-bit Diffie-Hellman
Windscribe AES-256 AES-256 RSA-4096 RSA-4096 SHA-512 SHA-512

Notes

Definitions

The following definitions clarify the meaning of some of the column headers in the comparison tables above.

Anonymous payment method
Whether the service offers at least one payment method that does not require personal information. Even if a service accepts a cryptocurrency like bitcoin, it might still require that the customer hands over personally identifiable information (PII) like their full name and address.
Bandwidth
Whether the users' bandwidth is logged while using the service, according to the service's privacy policy.
Diskless
Whether the service's server hardware is connected to hard drives, according to the service provider. If the servers are diskless, the service provider should be unable to log any usage data.
First-party DNS servers
Whether the service provides its own domain name system (DNS) servers.
Kill switch
Whether the service has the ability to immediately sever your connection to the Internet in the event that the VPN connection fails. This prevents a user IP address leak.
Logging
Whether the service stores information about their users' connection or activity on the network, according to the service's privacy policy or terms of service. If logging isn't mentioned in those sections but denied somewhere else on the website, the particular table cell will be marked as "No" in yellow and include an explanatory note.
Privacy Impact Score
An indicator of a website's usage of potentially privacy intrusive technologies such as third-party or permanent cookies, canvas trackers etc. The score can be in the range from 0 to 100, where 0 is minimal privacy impact (best) and 100 is the biggest privacy impact (worst) relative to other web sites. The score also has a simplified letter and colour presentation from A to F where A is "No cookies" and F is "Score above three standard deviations from the average". The metric is developed by WebCookies.org.
Obfuscation
Whether the service provides a method of obfuscating the VPN traffic so that it's not as easily detected and blocked by national governments or corporations.
Offers WireGuard
Whether the service provider offers the WireGuard tunneling protocol.
SSL rating
The service's website's overall SSL server rating according to Qualys SSL Labs' SSL Server Test tool.
Supports Obfsproxy
Whether the service has an implementation of the Tor subproject Obfsproxy.

References

This article uses material from the Wikipedia English article VPN service, which is released under the Creative Commons Attribution-ShareAlike 3.0 license ("CC BY-SA 3.0"); additional terms may apply (view authors). Content is available under CC BY-SA 4.0 unless otherwise noted. Images, videos and audio are available under their respective licenses.
®Wikipedia is a registered trademark of the Wiki Foundation, Inc. Wiki English (DUHOCTRUNGQUOC.VN) is an independent company and has no affiliation with Wiki Foundation.

Tags:

Vpn Service Criticism and limitationsVpn Service Common misconceptionsVpn Service LegalityVpn Service Comparison of commercial virtual private network servicesVpn ServiceData profilingGeo-blockingInternet censorship circumventionMitM attacksProxy server

🔥 Trending searches on Wiki English:

Arthur the KingOpinion polling for the 2024 Indian general electionThe Office (American TV series)Chris BrownSelenaWinston ChurchillOpinion polling for the next United Kingdom general electionParis HiltonStevie NicksNew York City2014 Indian general electionZendayaJaimoeJohnny Depp2023–24 UEFA Champions LeagueWrexham A.F.C.Coventry City F.C.FascismMichael JacksonTheo JamesWish (film)Shōgun (2024 miniseries)MaidaanRoyal Challengers BangaloreSelf-immolationAThe Allman Brothers BandInstagramDakota JohnsonWolverhampton Wanderers F.C.Jeff BuckleyLord ByronChaturbateBlake LivelyFleetwood MacNacho (footballer, born 1990)Kim Ji-won (actress)Google TranslateRusso-Ukrainian WarMark RiveraPoor Things (film)Family GuyAmanda BynesGeneration ZBen AffleckFC Bayern MunichElection Commission of IndiaBastian SchweinsteigerMiley CyrusBenson BooneChester BenningtonDexter (TV series)John Wilkes BoothMS DhoniKorean WarArmand DuplantisJoe Rogan2019 Indian general electionPrincess Tatiana of Greece and DenmarkJustin BieberCharlie SheenAnthony Edwards (basketball)Kobe BryantPakistan2024 ICC Men's T20 World CupJosh CharlesKylian MbappéThe Menu (2022 film)David BowieKatherine MaherNikola JokićSade (singer)Bayer 04 LeverkusenDev Patel2024Los Angeles LakersUEFA Euro 2024🡆 More