this post was submitted on 22 Aug 2026
78 points (100.0% liked)

Privacy

50637 readers
435 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

much thanks to @gary_host_laptop for the logo design :)

founded 6 years ago
MODERATORS
 

Bit of an uphill fight with captchas everywhere. Do people here conduct all online activity over VPN whenever possible? Only for the sensitive stuff? Or perhaps the inverse because the bank already knows you? Maybe when travelling or getting around region blocking? Something else?

The one provided by my work aside, I realized that I don't have any consistent rules around using VPN. Except sometimes, you know, when downloading ISO's for my favorite distos.

top 50 comments
sorted by: hot top controversial new old
[–] Zoma@sh.itjust.works 2 points 4 days ago

Allways use your vpn and just spit tunnel things that don't work with them eg freetube. If you're getting captchas lots you could look into getting a residential socks5 proxy, I use mullvad's socks5 they wont be as good as a residential one though.

[–] webghost0101@sopuli.xyz 16 points 6 days ago (6 children)
load more comments (6 replies)
[–] gwl@lemmy.blahaj.zone 7 points 5 days ago

UK porn ban, always-on VPN

[–] geneva_convenience@lemmy.ml 10 points 6 days ago
[–] ohshit604@lemmy.halstead.host 11 points 6 days ago* (last edited 6 days ago) (1 children)

Phone > WireGuard Tunnel to my House = Reap the benefits of my PiHole and other hosted services > WireGuard Tunnel to ProtonVPN endpoint = Reap the benefits of appearing outside my country

Essentially created my own multi-hop VPN, which I use 24/7 outside of my home-network.

[–] LlilL@lemmy.zip 4 points 6 days ago* (last edited 6 days ago) (2 children)

May I ask how you have that setup? I’ve been trying to do exactly that using my Ubiquiti gear in the middle, but I don’t think I Ubiquiti’s UnifFi is capable.

[–] ohshit604@lemmy.halstead.host 7 points 6 days ago* (last edited 5 days ago) (1 children)

Picked myself up an Asus WRT router (AX86U) flashed it with Merlin firmware - the custom firmware includes a feature called “VPN Director” which lets me connect up to 5 different WireGuard clients and route my devices through whichever one I choose, given that the Asus WRT router is also capable of hosting its own WireGuard server I created a VPN director rule that routes that server through one of these clients.

The VPN director has a priority ruleset, so if for example WireGuard client 5 dies it will either kill all outbound connections and wait until it’s back online or fallback to WireGuard client 4, WireGuard client 1 being the highest priority right before WAN.

I like this setup because it’s my router doing the routing, not a secondary server hosting WireGuard like Tailscale.

Edit; It also works with oVPN if you prefer that protocol over WireGuard.

[–] Squizzy@lemmy.world 3 points 5 days ago (1 children)

Must look into Merlin, I want to stay away from closed source or US companies so Unifi was out.

Could you have a residential static VPN as one of the wireguard profiles and have it be somewhat local to you so you could use banking apps etc on specific devices? Trying to get this to pass the wife test but if streaming or banking is affected I will have to roll back to no vpn.

load more comments (1 replies)
[–] MasterBlaster@lemmy.world 2 points 5 days ago

I should probably try what the O.P. did as I also have an ASUS router with Merlin. However, in my case, I have a Synology NAS and I set up VPN on that and use that server as my VPN. I have a certificate-based sign-in through a single port on the router.

I use a Public VPN service when I'm out and about and then connect to my VPN when I need to do stuff on my network, Like syncing my Joplin notes.

Permanently on. Anything I can't access without it I generally find an alternate with very few exceptions. I have a quarantine virtual machine I use for the couple of websites that are worth making an exception for.

[–] communism@lemmy.ml 5 points 5 days ago

On at all times at the router level. Because it'd be annoying to selectively disable it. My VPN isn't really an anonymity feature anyway; I have a dedicated browser profile for things like banking where I intend the fingerprint to be associated with my government identity.

[–] mildseason@sopuli.xyz 3 points 5 days ago

All the time, baby!

Unless it's absolutely necessary, vpn and kill switch stay on.

[–] alexquiniou@lemmy.zip 3 points 5 days ago

Always. Wireguard is easy to setup and work like a charm.

Truenas + wireguard for pc, server and phone. Always everywhere.

[–] Ravenheart@lemmy.zip 8 points 6 days ago

Basically all the time.

[–] non_burglar@lemmy.world 3 points 5 days ago

100% of the time.

My VPN turns on automatically when I leave my home lan. I don't use split-tunneling, so all my traffic goes back to home before going to internet.

[–] Alpinefolk@slrpnk.net 10 points 6 days ago

Always. The captcha drive me crazy though.

[–] Newhere@lemmy.ml 4 points 5 days ago

Alll the time with kill switch ON.

[–] NauticalNoodle@lemmy.ml 10 points 6 days ago

98% of the time. I hate having to turn it off to look at my local grocery store's website but I have done it before.

[–] swelter_spark@reddthat.com 6 points 6 days ago (1 children)
[–] AfricanExpansionist@lemmy.ml 6 points 6 days ago (5 children)
[–] swelter_spark@reddthat.com 1 points 4 days ago (1 children)

The internet is fast where I live, so there's no noticeable speed difference.

[–] AfricanExpansionist@lemmy.ml 1 points 2 hours ago

Illive in a country with the world's fastest internet speeds and I notice performance differences

Maybe you're not using a bridge?

[–] hirihit640@sh.itjust.works 1 points 5 days ago (1 children)

If you use Tor Browser in the "safest" security setting, websites will actually load pretty fast since javascript will be disabled. Well, at least for the websites that load at all

[–] swelter_spark@reddthat.com 1 points 4 days ago

I don't use the browser, but I also don't use javascript, and you're right about that. 😂

load more comments (3 replies)

All the time basically

[–] Crackhappy@lemmy.world 2 points 5 days ago
[–] somegeek@programming.dev 5 points 6 days ago

Constantly.

[–] Brutticus@midwest.social 3 points 5 days ago

maybe like 75 percent of the time. the Invidious APIs for Freetube.

My job requires secure outlook and access to our database. I do occasionally have to interface with banking sites.

[–] technocrit@lemmy.dbzer0.com 4 points 6 days ago

Almost always. I turn off for certain websites that are blocked otherwise, but I hate to leave it off.

[–] Nighed@feddit.uk 4 points 6 days ago

My phone almost always has a Vpn on to my home network (gets me pi-hole goodness)

Other than that, very occasionally use the Firefox built in one + the one for my "Linux iso" torrenting container, that's not on most of the time though.

[–] willington@lemmy.dbzer0.com 2 points 5 days ago

Always, unless by mistake it is off.

[–] chicken@lemmy.dbzer0.com 5 points 6 days ago (20 children)

Mostly just for torrents, one machine on my local network is always using a VPN to connect to the external internet. I would use it for more things like private web browsing, but without substantial additional setup I think my web browsing is guaranteed to be fingerprinted regardless of whether I conceal my IP so until I bother to set that up it doesn't seem like there is much point.

load more comments (20 replies)
[–] random_character_a@lemmy.world 4 points 6 days ago (2 children)

In a way always.

Whole family is connected to home network and home network has filters and blockers in the outgoing router.

Additionally home security system doesn't have to keep connections open outside or have ports forwarded.

Outgoing router however does not have VPN set, so home network IP is visible. This is to keep everything operational and CAPTHCA from annoying users.

load more comments (2 replies)
load more comments
view more: next ›