Live data from Hacker News

Latest Mozilla VPN features

blog.mozilla.org

61–70 of 184 posts

Re: Latest Mozilla VPN features

#61

Earlier quoted context omitted.

- Routing traffic over untrusted home/office ISP - Censorship circumvention

> Censorship circumvention In some countries, censorship circumvention usually require sophistication that not all VPNs provide. A few like getoutline.com, getlantern.io, and psiphon.ca specialize in that. In most countries, VPNs aren't even needed to circumvent censorship. Apps like getintra.org, GreenTunnel employ simpler techniques to bypass firewalls. > Routing traffic over untrusted home/office ISP With TLS v1.3…

> With TLS v1.3 and DoH / DoT, I think VPNs may no longer be required if "hiding traffic" is the only need.

You, as a user, have little control over whether the servers you connect to support TLS 1.3 and eSNI / ECH.

Re: Latest Mozilla VPN features

#62
post #21

I feel like most of those VPN services are using very borderline marketing and like to keep a lot of information blurry. As far as I know, in a lot of country (like France) it is a legal obligation to keep logs and be able to identify one of your customer if the police demands it. Therefore, if you have server in France or any country with similar rules, you can't operate a "0 log" service. And since those kinds of s…

You're correct that scummy, overselling advertisements make the whole VPN industry look bad, but Mozilla's VPN is provided by Mullvad, who doesn't engage in those sorts of advertisements.

FWIW, I've looked into Mullvad and even had beers with some of their programmers (all of whom appeared to be Scandinavian anarchist/anti-authoritarian types) and I think Mozilla made an good choice with that partnership. (Of course, don't take my word for it; do your own research, or just host your own VPN.)

Re: Latest Mozilla VPN features

#63
The rise of VPNs signals to me that we as an industry have given up on end to end encryption. Instead VPNs try to encrypt the "first hop" with the assumption or hope that the networks further down the line are "secure"

Being on an "unsecured" local network shouldnt be an issue for security.

Re: Latest Mozilla VPN features

#64
post #10
post #4

I don't understand what can be so hard about "supporting" more countries? It's the internet. Anyone can access your servers. International credit card charging was invent decades ago. Take my money.

Probably that fraud detection doesn't work well enough in some countries to make more money than you spend. AVS, for example, is only available in the US, UK, and Canada. It sucks, but for some types of services, there's an army of people trying to use stolen CC numbers.

The only three countries that have sufficient fraud protection for AVS are anglophone? I don't think that is the (only) reason here.

Re: Latest Mozilla VPN features

#65

Earlier quoted context omitted.

I agree. A VPN should only ever be used for the following: - Shifting traffic over a VPN when using untrusted/sketchy wifi hotspots - Spoofing your geo-location to use geo-specific content And that's it. If privacy is your goal, Tor is much more suitable since it's not a single-hop proxy like a VPN and compartments all your traffic. (But of course Tor is not a silver bullet and there are caveats).

Depends on the VPN. ExpressVPN is HK/CCP owned, so I wouldn't worry too much about my privacy being violated for petty copyright infringements (BitTorrent).

VPNPro doesn't list ExpressVPN as having Chinese ownership. Wikipedia[1] claims it operates in the British Virgin Islands, and Quora claims the same. That written, a comment on Quora claims that it's owned by the CIA. Ha ha!

[1] https://en.wikipedia.org/wiki/ExpressVPN [2] https://www.quora.com/Who-owns-Express-VPN

Re: Latest Mozilla VPN features

#67
post #23

It's really disappointing to me that Mozilla VPN didn't support Linux from the get-go, and even now, from their FAQ [1], apparently only supports Ubuntu. The code for the client is open source, and can be built on other distributions, but the more pressing question to me is why their own client is necessary at all. Mullvad (which this VPN is based on) allows you to just download WireGuard/OpenVPN config files, which…

Like it's absolutely wild that their VPN implementation requires their client to work. Basically every other VPN provider will expose endpoints for IPSec, OpenVPN, WireGuard, etc. etc. for instant compatibility with clients that can't run your pretty app. Sad that PIA tanked their rep because their Linux support was top notch. They even had a script that would set up NetworkManager profiles for you.

What "tanked their reputation"? I've been using them for years.

Re: Latest Mozilla VPN features

#68
post #19

It's really disappointing to me that Mozilla VPN didn't support Linux from the get-go, and even now, from their FAQ [1], apparently only supports Ubuntu. The code for the client is open source, and can be built on other distributions, but the more pressing question to me is why their own client is necessary at all. Mullvad (which this VPN is based on) allows you to just download WireGuard/OpenVPN config files, which…

Hi! I'm one of Mullvad's founders. I can't speak for Mozilla, but we have our own desktop and mobile apps because it enables us to do more privacy-preserving things with a higher assurance. Consider for instance DNS leaks, Teredo leaks, IPv6 leaks, esoteric DHCP directives that can hack your routing tables, and so on. And these are just a few of the things we were early in mitigating correctly. Consider also the tigh…

I absolutely love your service and will definitely renew it considering my one-year license is close to expiry.

Any reason why you don't use a PPA or something to auto-release updates? I've postponed an update quite a few times because the friction of going to your website, downloading it, and then upgrading the package is just a bit too much in certain situations.

Other than that my only gripe with the app is that I can't close it from the app indicator, but have to re-open it, click on the settings, and then choose "quit app".

Re: Latest Mozilla VPN features

#69
post #10

Earlier quoted context omitted.

Probably that fraud detection doesn't work well enough in some countries to make more money than you spend. AVS, for example, is only available in the US, UK, and Canada. It sucks, but for some types of services, there's an army of people trying to use stolen CC numbers.

The only three countries that have sufficient fraud protection for AVS are anglophone? I don't think that is the (only) reason here.

Not speculating on why, but yes, those are the only countries that do AVS. Though AVS is just part of it. They support Singapore, which doesn't do AVS. So apparently whatever fraud protection is available there suffices.

Also, it's available in New Zealand, but not Australia, which is a fairly large anglophone population.

Re: Latest Mozilla VPN features

#70
post #67
post #23

Earlier quoted context omitted.

Like it's absolutely wild that their VPN implementation requires their client to work. Basically every other VPN provider will expose endpoints for IPSec, OpenVPN, WireGuard, etc. etc. for instant compatibility with clients that can't run your pretty app. Sad that PIA tanked their rep because their Linux support was top notch. They even had a script that would set up NetworkManager profiles for you.

What "tanked their reputation"? I've been using them for years.

https://news.ycombinator.com/item?id=21612488
Post reply on HN