What is a VPN?
VPN is an acronym for ‘Virtual Private Network’, historically used by private organizations to link geographically diverse locations seamlessly over the internet. A VPN ‘tunnels’ traffic between two devices by transmitting it over the public internet. EarthVPN takes this one step further by giving you the option to encrypt all the data you send and receive, and additionally allows you to appear to be located many miles away or in a different country from where you really are.
Why do I need a VPN service ?
There are many good reasons to use a commercial VPN service provider. You can find the most popular ones below:
Privacy
The majority of customers use a VPN service to protect their online privacy by limiting the amount of information that their ISP and other organisations are able to monitor. Privacy minded people believe that they have the right to control who has access to their personal data and our VPN service gives them that control.
Security
If you use your laptop or mobile device at WiFi hotspots, hotels or other public networks your connection is potentially under risk by identity thieves and other hackers. Our VPN service will encrypt all traffic between your device and our VPN servers therefore giving a very strong level of protection.
Anonymity
In some countries, typically where freedom of speech is limited, it is very important to be able to protect your identity or risk being severely prosecuted. Our VPN service allows you to communicate online anonymously protecting your identity from being exposed.
Bypassing censorship
Many countries censor content and services that are accessible from within that country. Our VPN service will enable you to bypass these restrictions by connecting to our VPN server in another country. Examples of such services are Facebook, Youtube, Skype and Twitter.
Bypassing geographical restrictions
Some companies on the internet limit access to their content to a specific geographical region. Our VPN service allows you to connect to a server in the target country, therefore appearing to be within that geographical region, giving you full access to the content.
How does a VPN work?
Once you connect to our VPN server your computer is assigned a new IP address, an IP address that is owned by us, not your ISP (Internet Service Provider). All of your traffic is then encrypted and tunneled to our VPN server. Once there, it is decrypted and allowed to travel to its intended destination. Your local ISP will only see a single encrypted data stream between you and our VPN server. Your ISP can no longer monitor, log or control your Internet usage.
What is the difference between PPTP, L2TP, SSTP, OpenVPN and SSH/Socks Protocols?
PPTP
Point-to-Point Tunnelling Protocol (PPTP) is a Microsoft invention for creating VPN over dialup networks, and as such has long been the standard protocol for internal business VPN for many years. It is a VPN protocol only, and relies on various authentication methods to provide security. Available as standard on just about every VPN capable platform and device, and thus being easy to set up without the need to install additional software, it remains a popular choice both for businesses and personal usage. It also has the advantage of requiring a low computational overhead to implement.
EarthVPN implements PPTP encryption with MPPE 128bit cipher, with or without compression and MS-CHAPv2 authentication.
L2TP/IPSec
Layer 2 Tunneling Protocol (L2TP) came about through a partnership between Cisco and Microsoft with the intention of providing a more secure VPN protocol. L2TP is considered to be a more secure option than PPTP, as the IPSec protocol which holds more secure encryption algorithms, is utilized in conjunction with it. It also requires a pre-shared certificate or key.
EarthVPN implements L2TP encryption with the standardized IPSec protocol with AES encryption algorithm. A 256 bit key will be used for encryption.
SSTP
Secure Socket Tunneling Protocol (SSTP) works in situations where most VPN connections would be blocked. This includes countries which forbids the use of VPN technology, and certain companies that block VPN connections. It uses TCP Port 443, the same port used by Secure Socket Layer (SSL) transmissions. This combines with a special method to form the packets to allow SSTP transmissions to pass through most proxies and firewalls. It is considered the most secure of VPN tunneling protocols because it uses SSL, authentication certificates and 2048-bit encryptions.
The major downside to SSTP is that it was created exclusively by Microsoft and only works on Windows Vista SP 1 and Windows 7/8. Because it is proprietary, there are no known plans to make it officially available to users of Mac OS, Linux and older versions of Windows.
If you can not connect with PPTP or L2TP protocol and if you can browse https web sites most likely SSTP should work for you.
OpenVPN
OpenVPN is a fairly new open source technology that uses the OpenSSL library and SSLv3/TLSv1 protocols, along with of other technologies, to provide a strong and reliable VPN solution. One of its major strengths is that it is highly configurable, and although it runs best on a UDP port, it can be set to run on any port, including TCP port 443. This makes it traffic on it impossible to tell apart from traffic using standard HTTP over SSL , and it is therefore extremely difficult to block.
EarthVPN implements OpenVPN protocol with AES cipher and 128bit and 256bit(Optional) encryption, hash algorithm is 160bit SHA1, control channel is TLSv1/SSLv3 DHE-RSA-AES256-SHA and 2048 bit RSA.
EarthVPN provides OpenVPN / SSL VPN protocol on TCP ports 80 (http), 443 (https), 992, 1194, 8888 and UDP ports 53 (dns), 80, 992, 1194 and 8888.
If you can not connect with PPTP or L2TP protocol you can try to connect with OpenVPN with different tcp and udp ports.
SSH Tunnel/Socks Proxy
We also provide SSH Tunnel/Socks proxy on 54 Countries and 190 locations in case VPN protocols are not suitable for you.
What is SSH Tunnel/Socks Proxy aka Torrent Proxy ?
A proxy server, commonly known as a proxy, is simply a computer that acts as an intermediate between your computer and the internet. It basically fulfills the requests of clients on a different computer. For better understanding, you establish a connection with a proxy server with the intent to request for certain services, usually like opening a web page, downloading a file, etc. For instance, if you are restricted access to Facebook from your current location, you can use the proxy websites to bypass this restriction. Any traffic that goes through the proxy server will seem to arrive from its IP address and not from your computer.
SSH Tunnel is the method to create socks proxy.Therefore you can use socks proxy on your supported software such as firefox, chrome, internet explorer , opera, safari, utorrent , bittorent, vuze, deluge, bitcomet etc.
Main advantage of socks proxy over vpn protocols is you can choose which application(s) use your direct internet connection or socks proxy, relatively easier setup and speed may be better due to lower overhead.
To be able to use SSH Tunnel/Socks proxy your router or firewall must allow outbound tcp port 22.
We provide SSH Tunnel/Socks proxy on 54 Countries and 190 locations in case VPN protocols are not suitable for you.
What is the description of your add-on products ?
You may find the description of our add-ons below.Each Add-on costs $1.99 per month or $19.99 per year except unshared Dedicated IP.Please contact us for the country you need unshared Dedicated IP.
Additional VPN Connection for Mobile Devices
You can enable additional simultaneous VPN connection for your mobile devices.
Top Secret Level 256bit Encryption for AES and SSL
You can enable 256bit AES and SSL Encryption for OpenVPN and SSTP Protocols.We recommend this feature for maximum security.
Shared Static IP
Your public IP address will always be same when you connect to same location.You can use this feature for permitting access for static IP on your applications/web sites.Keep in mind that static IP add-on is using shared IP.
SSH Tunnel/Socks Proxy
You can enable SSH Tunnel/Socks proxy on 54 countries and 190 locations.You can use this feature as an alternative to VPN protocols or as a Torrent/Browser proxy or double encryption with VPN.
Dynamic Port Forwarding
You can enable 1 TCP and UDP dynamic port forwarding on 54 countries and 190 locations.Your forwarded port number is dynamic and will change every time you connect to any EarthVPN location.This feature will speed up your P2P/Torrent applications.
Unshared Dedicated IP
You can have your own unshared Dedicated static IP with all ports forwarded to your IP.You can run your own applications behind our VPN service.Please contact us for the country you need Dedicated IP.
Please refer to below FAQ for differences between shared and unshared IP address.
What is the difference between a Shared and Unshared Dedicated IP address ?
What is the difference between a Shared and Unshared Dedicated IP address ?
By default our vpn services offer shared IP address and when using dynamic or static shared IP address, you and our other customers are using the same shared public IP address for reaching internet.
In case a website blocks or one of our customer abuses this shared IP address in any form or a shared IP address is under ddos attack, all disadvantages of it affects ALL other customers assigned to this IP address as well. For example if a shared IP was blocked/banned on a website, IRC, game, country etc all other customers using the same shared IP would be blocked/banned as well.If shared IP is under ddos attack it will not be possible to access that IP address until ddos attack stops.
Using an Unshared Dedicated Static IP however, assures that only you and nobody else will be assigned to this IP address therefore it’s your own private IP, at least you can’t be affected of other customer’s misbehaviour. And also if you are using our vpn services for connecting to services which restrict access based on IP address, using unshared dedicated static IP will offer you maximum security since unlike shared IP address only you and nobody else will be assigned to your unshared dedicated static IP address. Shared and Dedicated IP address have no difference in performance, all IPs are equally configured on to the same uplink therefore speed and latency will be same.
Please contact us for the country/location you need unshared dedicated static IP.
Do you offer DOS/DDOS attacks protection with your vpn service ?
By default our VPN service offers you internet access via Network Address Translation(NAT) implemented on the firewall running on our locations.As a result your original IP address is protected from Denial of Service(DOS) attacks when connected to our vpn service.Some of our locations have also Distributed Denial of Service(DDOS) attacks protection however we do not guarantee over 1gbps DDOS protection with our current locations at this time.We are planning to offer exclusive up to 100gbps/100 million packets per second DDOS protected locations near soon.Please contact us if you want to participate in testing our exclusive DDOS protected locations.
How much does EarthVPN cost?
EarthVPN Accounts are unbeatably priced at $3.99 monthly or $39.99 annually. Our unconditional and no questions asked 7 day full money back guarantee makes it absolutely risk free for you to purchase.Each Add-on costs $1.99 per month or $19.99 per year except Dedicated IP.Please contact us for the country you need Dedicated IP.
Do you provide trial accounts?
No, we do not provide trial accounts to prevent abuse, however we offer a 7 day full money back guarantee for you to try our services.
Do you provide refund / money back guarantee?
We provide an unconditional and no questions asked 7 day 100% money back guarantee.
What forms of payment do you accept?
Currently we accept Paypal, Credit Cards, Bitcoins, Alipay, Unionpay, Webmoney, Paysafecard, Cashu, Ukash. We are planning to add other payment methods in near future. Please contact for other payment requests.
How do I cancel my account/subscription?
We are not happy to see that you want to cancel.Please contact if there is a technical reason so that we can try to resolve together.If you want to cancel your account you can cancel via client area or sending a cancellation request mail to
EarthVPN service looks too good to be true, are you a honey pot ?
We recently noticed seeing this kind of questions on message boards (not joking! you may search “earthvpn honeypot” on google). We are really proud that our VPN services, features and pricing looks too good.
We are definitely NOT a honey pot.We believe in total freedom and do not like the words PRISM, NSA, DMCA etc as like you.
Will a VPN slow down my internet connection?
The speed of your VPN connection will always vary based on a number of factors:
The most important factor is your original Internet connection speed. You also need to consider the distance between where you are and where our VPN servers are. Generally the closer you are to the VPN server of your choice, the faster your speed will be. Of course, given that we have servers in over 30 countries around the earth, you’ll always be near an EarthVPN server.
There can be also VPN protocols throttling by your internet service provider so that be sure to test your speed via all the available VPN protocols, PPTP, L2TP, OpenVPN(Both TCP and UDP mode) and SSTP.
We also provide SSH Tunnel/Socks proxy in case VPN protocols are not suitable for you.
My Internet speed is slow after connected to VPN.What should I do ?
Server speed is variable based on several different factors including: your location, your internet speed, internet connectivity between our server and your ISP, the location of the site you want to visit, the VPN protocol you choose to use, and what routes you or the server takes to the content you’ve requested.
While this isn’t always possible, in general, it is always best to connect to a server that is close to you AND close to your destination.
You can use our speedtest application below to check which locations are performing best for you while vpn is not connected.Then you can try connecting to best performing locations with different vpn protocols , pptp,l2tp,sstp and openvpn with different tcp and udp ports in order to optimize your speed.You can setup manually following our setup tutorials for different vpn protocols or use our vpn client software.
If you find your connection is not optimal on one server, first try other protocols, L2TP, SSTP, PPTP, OpenVPN(both TCP and UDP mode with different ports) to connect, as this may be a better solution for you. You can also try our second, third, fourth.. servers located in same location and also different cities and countries as this offers redundancy, as well as different routing optimization, speed and/or latency.
We also provide SSH Tunnel/Socks proxy in case VPN protocols are not suitable for you.
Do you keep ANY logs which would allow you or a 3rd party to match an IP-address and a time stamp to a user of your service?
EarthVPN does NOT log any VPN usage or user activity. Neither us nor third parties are technically possible to match an IP address to an account.
Under what jurisdictions does your company operate and under what exact circumstances will you share the information you hold with a 3rd party?
Under no circumstances we will provide any personal or private information to the third parties. We are located in the jurisdiction of Northern Cyprus where there is no log/data retention law.
In the event you receive a DMCA takedown notice or European equivalent, how are these handled?
EarthVPN has offshore servers on all continents specially optimized for P2P and Torrent traffic.On our P2P/Torrent offshore servers DMCA or any equivalent do not apply. P2P/Torrent traffic is blocked on our NON P2P/Torrent servers so it is impossible to receive DMCA or any equivalent notice for our NON P2P/Torrent servers.
Which payment systems do you operate and how are these linked to individual user accounts?
We currently accept Paypal, Credit Cards, Bitcoins, Alipay, Unionpay and Webmoney.We make sure that transactions are not linked to the users, we generate a unique key per transaction to verify payment for the account is made, and then delete that unique key. This way no one can bind a payment to one of our IPs.We suggest to pay via bitcoins for maximum anonymity.
Which VPN protocols do you offer?
We support PPTP and L2TP; industry standard VPN protocols that have built-in support for multiple operating systems and devices such as Windows, Mac OS, Linux, Iphone, Ipad, Android etc.
We support SSL/TLS based OpenVPN(Both TCP and UDP mode) protocol which is best performing and most stable VPN protocol.
We also support military grade secure VPN Protocol, SSTP which uses 2048bit certificates.
We also support SSH Tunnel/Socks proxy in case VPN protocols are not suitable for you.
What encryption do you use?
PPTP encryption uses MPPE 128bit cipher with or without compression and MS-CHAPv2 authentication.
L2TP encryption uses the standardized IPSec protocol either the 3DES or AES encryption algorithm. A 256 bit key will be used for encryption.
OpenVPN protocol uses AES cipher with 128bit and 256bit(Optional) encryption, hash algorithm is 160bit SHA1, control channel is TLSv1/SSLv3 DHE-RSA-AES256-SHA and 2048 bit RSA.
SSTP protocol uses military grade 2048 bit SSL/TLS certificates for authentication and 256 bit SSL key for encryption.
SSH Tunnel/Socks Proxy uses AES cipher with 128bit and 256bit(Optional).
Do you prevent DNS leaks ?
Yes, when connected to our VPN service, public DNS servers are automatically assigned to your computer.This ensures that you are using public DNS servers instead of your internet service provider’s DNS Servers.
It can happen that your system for some reason reverts back to your ISP’s DNS servers.One way to test this would be connecting to the VPN and then doing a DNS leak test from http://www.dnsleaktest.com/
You can prevent DNS leaks by setting one of the below public DNS servers for all available network adapters in the TCP/IP options within the properties of your network adapters.
If you are using firefox browser and ssh tunnel/socks proxy please open about:config on firefox and scroll down until you get network.proxy.socks_remote_dns and change it to true in order to prevent dns leakage on firefox with ssh tunnel/socks proxy usage.
We also suggest disabling WebRTC and IPv6 usage.
Disabling WebRTC :
http://www.earthvpn.com/faq-items/how-to-prevent-webrtc-leaks-on-chrome-and-firefox-browsers/
Disabling IPv6 usage on windows :
How to prevent WebRTC leaks on Chrome and Firefox browsers
WebRTC is a browser based technology that provides support for optimizing multi-media communications between users. Due to implementation of the protocol some flaws can expose sensitive data of the users such as the real IP address even if they are connected to VPN.You may prevent WebRTC leak on chrome and firefox browsers via below instructions.You may verify WebRTC leakage by visiting https://www.browserleaks.com/webrtc
Chrome
You may use official WebRTC Network limiter plugin released by google below in order to prevent WebRTC Leak.
On Chrome (mobile), please visit URL chrome://flags/#disable-webrtc and enable the option.
Firefox
To disable WebRTC on Firefox for both desktop and mobile version, open about:config, search for media.peerconnection.enabled and double click on it to set it to False.
We also suggest disabling IPv6 usage in order to prevent IPv6 leakage.
Can I use EarthVPN through my Cable / DSL router or firewall?
If your router/firewall supports PPTP/LT2P pass-through, you should have no troubles connecting. Many routers/firewalls handle PPTP and L2TP connections fine even though they do not explicitly advertise pass-through capability.
To be able to allow VPN protocols manually on your router/firewall you must set up to allow outbound connections on TCP port 1723 and IP protocol 47 (GRE) for PPTP, UDP port 500, 1701 and 4500 and IP protocol 50 (ESP) for L2TP.
To be able to use OpenVPN protocol your router or firewall must allow outbound tcp ports 80(http), 443(https), 992, 1194, 8888 and udp ports 53(dns), 80, 992, 1194 and 8888.
To be able to use SSTP protocol your router or firewall must allow outbound tcp port 443 (https port).This, by default, is the HTTPS port, used for accessing secure websites.
To be able to use SSH Tunnel/Socks proxy your router or firewall must allow outbound tcp port 22.
Do you support P2P/Torrent ?
EarthVPN has offshore servers on all continents specially optimized for P2P and Torrent traffic. You can enjoy downloading your favourite movies and music without worrying any legal hassles.We currently offer P2P/Torrent enabled locations on Canada, Panama, Netherlands, Germany, Sweden, Luxembourg, Romania, Singapore and Hong Kong.
How many users can connect to the VPN simultaneously?
You can use your account with up to 3 devices and connect concurrently if they are all connected via same modem/router/wifi/IP address. We do not allow same account to be used at multiple locations at the same time. If you need a VPN account for your mobile or other devices you can purchase the additional mobile account add-on on the order form or upgrade via your client area.
How can I test if EarthVPN is working?
After connecting to one of EarthVPN servers please visit http://www.iplocation.net to verify that your IP address and location information have been changed.
Will I be able to watch US and UK TV Stations using your VPN?
Yes, you will be able to watch US and UK TV Stations using our services. Just be sure to connect to one of our USA or UK VPN servers otherwise it won’t work.
Is there a speed/bandwidth limit on your VPN Service?
EarthVPN users enjoy unlimited network transfer speeds of up to 1Gbps and unlimited bandwidth on all our VPN servers worldwide.
I’m in China, Bahrain, Iran, Oman, Belarus, Burma, Cuba, Kuwait, North Korea, Qatar, Saudi Arabia, Syria, United Arab Emirates, Yemen, Vietnam, Uzbekistan, Turkmenistan and other country with censored Internet. Can EarthVPN help?
Yes, If you are living in China, Bahrain, Iran, Oman, Belarus, Burma, Cuba, Kuwait, North Korea, Qatar, Saudi Arabia, Syria, United Arab Emirates, Yemen, Vietnam, Uzbekistan, Turkmenistan and other country with censored internet, EarthVPN will enable to you bypass internet service provider/government censorship and restrictions. You can enjoy internet without restrictions and access your favorite website like Facebook , Youtube , Twitter , Skype , etc.
Please make sure you are using one of the public DNS servers below on your computer/router in order to bypass DNS restrictions on your country.
for further details.
Please contact us if you are still having issues connecting to EarthVPN locations.
Do you offer dynamic or static IP addresses?
We offer both dynamic and static shared IP addresses.Our accounts include dynamic shared IP address as default which means every time you connect to one of our servers you may get a new shared public IP address based on the number of online customers.With shared static IP your public IP will always be same when you connect to the same location.You can purchase or upgrade to static IP/dynamic port forwarding via selecting add-ons on the order form or your client area.
For dedicated(static) unshared IP addresses inquires with all tcp and udp ports forwarded please contact with how many IPs you require and in which country.
My ISP/Company/School/Government has blocked VPN protocols(PPTP and L2TP) Connections, So how can I connect to your VPN?
Please make sure you are using one of the public DNS servers below on your computer/router in order to bypass DNS restrictions on your country.
We provide OpenVPN / SSL VPN protocol on tcp ports 80 (http), 443 (https), 992, 1194, 8888 and udp ports 53 (dns), 80, 992, 1194 and 8888. If you can not connect with PPTP or L2TP protocol you can try to connect with OpenVPN with different tcp and udp ports.
We also provide SSTP VPN protocol which uses standard SSL ports(https traffic) so most likely if you can browse https web sites SSTP should work for you.Please be advised that SSTP protocol is supported only on clients with windows operating system Vista SP1, 7, 8, 2008 and newer. Unfortunately Mac OS, IOS and Android does not support Microsoft’s SSTP protocol yet.
We also provide SSH Tunnel/Socks proxy in case VPN protocols are not suitable for you.
Please contact us if you are still having issues connecting to EarthVPN locations.
Where are your VPN servers located?
Our servers are located on 54 countries and 190 locations which are strategically placed on 6 continents to allow minimum latency, offer the greatest speed and continuous connectivity wherever you are in the world.For the most current server locations please visit EarthVPN Server Locations
I have a DD-WRT / Tomato Firmware Router, Can I Configure Your VPN on it?
If your DD-WRT firmware version is v24 or above so yes it can be configured and you can connect as many PC / PS3 / PSP / XBOX / Apple TV / Smart TV you want to your router and enjoy EarthVPN on multiple platforms. We provide manual instructions for dd-wrt on our EarthVPN setup page Tomato firmware is similar to dd-wrt.
How can I find your current server IP address/location list ?
Please visit below knowledgebase in order to find our most current server IP address/location list.
Can I allow port forwarding/incoming connections?
We offer two types of port forwarding:
Dynamic Port Forwarding :
Only 1 tcp and udp port is forwarded to your computer and port number is dynamic which means it will change every time you connect to any EarthVPN location.Please contact how to learn your forwarded port number if you have purchased port forwarding add-on.
Static Port Forwarding with Dedicated IP :
Every tcp and udp ports are forwarded to your computer with your own dedicated static IP address.Please contact with how many IPs you require and in which country.
I am trying to send email with SMTP but it’s not working.
The sending of email with smtp protocol(tcp port 25) has been blocked due to spammers abusing our services. Please use authenticated/secure smtp protocol (tcp port 465,587) of your mail provider.If your mail provider does only support tcp port 25 for smtp protocol please contact to be allowed to use your own/custom smtp address.
Do you support IPv6?
Currently we do not support IPv6. We expect to be able to provide IPv6 at the end of 2016.
Does your VPN service support Mac, Linux, iPhone, iPad, Android, Nokia, Windows mobile etc.?
Our service is compatible with nearly all OS’s and smart phones to date in market.You can find manual setup tutorials here EarthVPN Setup
Can I use my Apple TV, Boxee Box, Roku, SmartTVs, Xbox, Playstation etc. with your service?
You can use dd-wrt/tomato firmware supported routers to share your VPN connection to Apple TV, Boxee Box, Roku, SmartTVs, Xbox, Playstation, Chromecast etc or use Windows/Mac OS software internet sharing to be able to share your VPN connection to the other devices.
Help, it doesn’t work. What should I do?
Don’t worry if you are unable to get EarthVPN to work. We provide you complete support. You can email us at or open a support ticket via client area. We will make sure you are up and running as quickly as possible. Don’t hesitate to contact us; we are happy to help.
Reseller: Do you provide wholesale / reseller services?
Yes, as a VPN wholesaler / reseller you can buy bulk VPN accounts from us at special discounted prices.
Reseller: Is there any setup fee? What I need to start as reseller?
There is no setup fee. You can start immediately. Just contact to start purchasing bulk VPN accounts.
Reseller: How does the discount system work?
The discount system depends on the number of VPN accounts you purchase and total number of VPN accounts you have. Just contact to start purchasing bulk VPN accounts.
Reseller: Which VPN servers can my customers use?
Access to all available VPN servers is included in the price. Your customers can use any of our VPN servers and switch between them as they wish.As of now we offer 190 locations on 54 countries.
Reseller: Which VPN protocols can my customers use?
Your customers can use any of available VPN protocols: PPTP, L2TP, OpenVPN and SSTP. All protocols are included in the price.We also offer ssh tunnel/socks proxy as an add-on.
Reseller: Do you provide white label VPN Service ?
Yes, We can provide you shared white label infrastructure or dedicated %100 white label infrastructure. Your customers will see your brand, logo and you can also create your DNS records for your VPN server IPs. It is very difficult for regular customers to recognize that you are a white label reseller.We can also provide you an API to integrate your own billing system to create accounts with or without add-ons, change vpn password, suspend and unsuspend and terminate vpn accounts. We can also provide you EarthVPN whitelabel reseller module for WHMCS billing automation software.Please contact to discuss technical and financial requirements.
Reseller: Do you create a website for white label resellers?
No, we do not create website for white label resellers.We do not collect any personal and billing details of your customers. You act as a service provider for your customers. Your customers pay directly to you and you provide support to them. We take care about VPN servers infrastructure and provide you with VPN accounts with reseller discounts. EarthVPN is hidden and your customers will see you as a provider. We will provide support to you.
Reseller: Can I use my own brand and logo with the VPN client software?
Yes, we can offer custom VPN Client software for Windows OS and Mac OS, incorporating your logo and branding, similar to our vpn client software.
Reseller: Do you provide API and WHMCS module for whitelabel services ?
Yes, we will provide an API to integrate your own billing system to create accounts with or without add-ons,change vpn password,suspend, unsuspend and terminate vpn accounts.We can also provide you EarthVPN whitelabel reseller module for WHMCS billing automation software.
VPN Error Code: 800
Error Description: The remote connection was not made because the attempted VPN tunnels failed. The VPN server might be unreachable. If this connection is attempting to use an L2TP/IPsec tunnel, the security parameters required for IPsec negotiation might not be configured properly.
Possible Cause: This error comes when the VPN tunnel type is ‘Automatic’ and the connection establishment fails for all the VPN tunnels.
Possible Solutions:
a> If you know which tunnel should actually be used for your deployment, try to set the ‘Type of VPN’ to that particular tunnel type on the VPN client side. This can be set by clicking the ‘Network Connections’ icon on the bottom right of the task bar, selecting your connection and right clicking the -> Properties -> Securities Tab -> under ‘Type of VPN’ select the relevant VPN tunnel type.
By creating a VPN connection with a particular tunnel type, your connection will still fail but it will give a more tunnel specific error (for example: GRE blocked for PPTP, pre-shared key error for L2TP).
b> This error usually occurs when the VPN server is not reachable or the tunnel establishment fails.
i. Make sure the VPN server is reachable (try to ping the server).
ii. If interested in PPTP, make sure PPTP port (TCP 1723) or GRE Port (47) is not blocked by your firewalls.
iii. If using L2TP, make sure
1. Correct pre-shared keys are present in the client.
2. L2TP port (UDP 1701) is not blocked by your firewall.
iv. If interested in IKEv2 based VPN tunnel, make sure
IKE port (UDP port 500, UDP port 4500) is not blocked.
v. If interested in SSTP based VPN Tunnel, make sure
SSTP protocol port ( tcp 443 ) is not blocked.
VPN Error Code: 609, 633
Error Description:
609: A device type was specified that does not exist.
633: The modem (or other connecting device) is already in use or is not configured properly.
Possible Cause: This error usually occurs when the connecting VPN device (AKA miniport) is not configured properly.
To confirm the issue: from the elevated command prompt, type the following command to confirm the presence of the miniport: -
netcfg.exe –q <miniport name>
The following is the miniport device name for different tunnels:
PPTP Tunnel: MS_PPTP
L2TP Tunnel: MS_L2TP
Possible Solution:
1. In Windows 7, a built-in diagnostic with repair is provided for the ‘miniport missing’ issue for locally created VPN connections. A ‘Diagnostic’ button is shown on the error page of the VPN connection. By clicking this button, it will give a ‘repair’ option if it finds the issue to be ‘miniport missing’, which if clicked will automatically try to fix the issue.
2. On Vista or below OS, if the miniport device is missing, you can run the following command from an ‘elevated’ command prompt:
a> netcfg.exe -e -c p -i <miniport name>
Details of the <miniport name> is given above.
b> Stop and Start ‘rasman’ (‘Remote Access Connection Manager’) service.
VPN Error Code: 732, 734, 812
Error Description:
732: Your computer and the remote computer could not agree on PPP control protocols.
734: The PPP link control protocol was terminated.
812: The connection was prevented because of a policy configured on your RAS/VPN server. Specifically, the authentication method used by the server to verify your username and password may not match the authentication method configured in your connection profile. Please contact the Administrator of the RAS server and notify them of this error.
Possible causes: One of the prime causes for the above error is: when the *only* allowed authentication protocol configured on VPN server (or Radius server) is MS-CHAP and the VPN client is Vista or above OS platform (like Windows 7). Note: for security reasons, MS-CHAP was removed from Vista and above OS platform and hence the connection fails.
Error 812 occurs when Authentication protocol is set via NPS (Network Policy and Access Services) otherwise Error 732/734.
Event log 20276 is logged to the event viewer when RRAS based VPN server authentication protocol setting mismatches which that of the VPN client machine.
Possible solution: Configure a more secure authentication protocol like MS-CHAPv2 or EAP based authentication on the server – which matches the settings on the client side.
VPN Error Code: 806
Error Description: 806: The VPN connection between your computer and the VPN server could not be completed. The most common cause for this failure is that at least one Internet device (for example, a firewall or a router) between your computer and the VPN server is not configured to allow Generic Routing Encapsulation (GRE) protocol packets. If the problem persists, contact your network administrator or Internet Service Provider.
Possible Cause: PPTP uses GRE (Generic Route Encapsulation) protocol to encapsulate the VPN payload in a secure manner. This error generally occurs when some firewall on the path between client and server blocks GRE Protocol (i.e. IP protocol number 47).
Possible Solution: Allow both outgoing and incoming Protocol 47 (GRE) on any in between firewalls. If that is not possible, deploy OPENVPN based VPN tunnel on the VPN client – that allows VPN connection across firewalls, web proxies and NAT.
VPN Error Code: 691
Error Description: 691: The remote connection was denied because the user name and password combination you provided is not recognized, or the selected authentication protocol is not permitted on the remote access server.
Possible Cause: This error is given when the authentication phase erred out because of wrong credentials being passed.
Possible Solution:
a> Make sure correct username and password are entered.
b> Make sure ‘Caps Lock’ is off whilst typing credentials.
c> Make sure the authentication protocol as selected on the client is permitted on the server.
VPN Error Code: 789, 835
Error Description:
789: The L2TP connection attempt failed because the security layer encountered a processing error during initial negotiations with the remote computer.
835: The L2TP connection attempt failed because the security layer could not authenticate the remote computer. This could be because one or more fields of the certificate presented by the remote server could not be validated as belonging to the target destination.
Possible Causes: This is a generic error which is thrown when the IPSec negotiation fails for L2TP/IPSec connections.
Possible causes for this issue could be:
a> L2TP based VPN client (or VPN server) is behind NAT.
b> Wrong certificate or pre-shared key is set on the VPN server or client
Possible Solution: Make sure Pre Shared Key (PSK) is used and correct PSK is configured on the client.
VPN Error Code: 809
Error Description: 809: The network connection between your computer and the VPN server could not be established because the remote server is not responding. This could be because one of the network devices (e.g, firewalls, NAT, routers, etc) between your computer and the remote server is not configured to allow VPN connections. Please contact your Administrator or your service provider to determine which device may be causing the problem.
Possible Cause: This error usually comes when a firewall between the client and server is blocking the ports used by VPN tunnel
a> PPTP port (TCP port 1723) is blocked by a firewall/router. [Applicable to tunnel type = PPTP]
b> L2TP or IKEv2 port (UDP port 500, UDP port 4500) is blocked by a firewall/router. [Applicable to tunnel type = L2TP or IKEv2]
Possible Solution: Enable the port (as mentioned above) on firewall/router. If that is not possible, deploy SSTP or OpenVPN based VPN tunnel on client – that allows VPN connection across firewalls, web proxies and NAT.
VPN Error Code: 0x800704C9
Error Description:
Possible Cause: This issue may occur if no SSTP ports are available on the server.
Possible Solution: To troubleshoot this issue, verify that the RAS server has sufficient ports configured for remote access. To do this, follow these steps:
Start the Routing and Remote Access MMC snap-in.
Expand the server, right-click Ports, and then click Properties.
In the Name list, click WAN Miniport (SSTP), and then click Configure.
Modify the number that appears in the Maximum ports list, as appropriate for your requirements, and then click OK.
Note By default, 128 ports are available for this device.
In the Port Properties dialog box, click OK
VPN Error Code: 0x800B010F
Error Description: 0x800B010F: The certificate’s CN name does not match the passed value.
Possible Cause: This issue may occur if the host name of the server that is specified in the VPN connection does not match the subject name that is specified on the SSL certificate that the server submits to the client computer.
Possible Solution: Verify that the SSTP VPN server address is typed in hostname for ex sstp.earthvpn.com, not an IP address.
VPN Error Code: 0x800B0109
Error Description: 0x800B0109: A certificate chain processed, but terminated in a root certificate which is not trusted by the trust provider.
Possible Cause: This issue may occur if the appropriate trusted root certification authority (CA) certificate is not installed in the Trusted Root Certification Authorities store on the client computer.
Note: Generally the VPN client machine is joined to the active directory based domain and if you use domain credentials to log on to the VPN server, the certificate is automatically installed in the Trusted Root Certification Authorities store. However, if the computer is not joined to the domain or if you use an alternative certificate chain, you may experience this issue.
Possible Solution: Make sure root certificate is installed on the client machine in the Trusted Root Certification Authorities store.