OpenVPN, WireGuard, or a fully private VPN server
A VPN server that belongs to you. We build it on your VPS or provision one for you, configure the protocol that fits how you actually use the internet, then hand over the keys. No shared infrastructure, no account sitting in someone else's database, one server that answers to a single user: you.
Not sure which protocol you need? That's the most common starting point, and it's exactly what the first conversation is for.
Pick the protocol that matches your situation
Three ways to run your own VPN. The right one depends on your devices, your network conditions, and how much control you want at the end.
WireGuard
Around 4,000 lines of code where older protocols carry hundreds of thousands. That small footprint is why it connects in under a second and holds the tunnel when you walk out of Wi-Fi range and onto mobile data.
- ChaCha20-Poly1305 encryption
- Part of the Linux kernel since version 5.6
- Reconnects on network changes without dropping the session
- Light enough to run well on a small, cheap VPS
OpenVPN
Two decades in production and audited more times than any VPN protocol alive. Slower to connect than WireGuard, but it gets through networks that block everything else, which is sometimes the whole job.
- AES-256-GCM over TLS
- Runs over TCP port 443, where UDP traffic is blocked
- Supported by routers, NAS boxes, and older systems WireGuard can't reach
- The safer pick behind strict corporate or hotel firewalls
Fully private server
A dedicated server in the country you choose, running WireGuard and OpenVPN side by side, on an IP address that has never been shared with another VPN user. The closest thing to owning your own piece of the internet.
- Dedicated IP in your chosen country
- Both protocols installed, switch whenever a network demands it
- Pairs with our Dedicated IP and National IP services
- Root access handed to you at delivery
What every setup includes, no matter the protocol
Your keys, your server
At handover you receive root credentials and change the password yourself, while we watch our own access disappear. We keep no copies of keys, configs, or logins. What runs on that server afterward is entirely your business.
Leak protection done right
A kill switch that actually cuts traffic when the tunnel drops, DNS routed through the tunnel instead of your ISP, and IPv6 handled rather than ignored. Most leaks we fix come from setups that skipped exactly these three things.
Configs for every device
Ready-made profiles for Windows, macOS, Linux, Android, and iPhone, plus router configs on request so the whole household rides the tunnel. You test each one with us before we call the job finished.
OpenVPN vs WireGuard: the honest version
Both protocols are secure when configured correctly. The differences that matter in daily use are speed, battery, and what happens on hostile networks. Here is how they actually compare.
| What matters | WireGuardOur default | OpenVPN |
|---|---|---|
| Raw speed | Usually sits close to your unencrypted line speed | Noticeably slower on the same hardware, the overhead is real |
| Connection time | Under a second | Several seconds, sometimes longer on TCP |
| Battery on mobile | Light. Built for phones that hop between networks | Heavier, the daemon works harder to hold the session |
| Blocked networks | Easy for firewalls to spot and drop, since it's UDP-only | Can dress itself as regular HTTPS on TCP 443 and walk through |
| Codebase | Roughly 4,000 lines, small enough to audit in a weekend | Large and mature, audited repeatedly over 20 years |
| Best for | Daily driving, streaming, phones, travel | Corporate firewalls, hotel networks, older hardware |
Our default recommendation is WireGuard, with one exception. If the networks you connect from are the kind that block things on purpose, offices, hotels, certain countries, OpenVPN over TCP 443 earns its slower speed by simply working. That's why the fully private server option runs both: WireGuard for every ordinary day, OpenVPN for the days a network fights back.
The situations that bring people to a private VPN
Working remotely from another country
A stable IP in your home country keeps banking apps, payroll systems, and company logins from treating every session like a break-in attempt.
Public Wi-Fi you have no reason to trust
Airport, cafe, hotel. The tunnel encrypts everything before it touches the local network, so whoever runs that router sees noise and nothing else.
Reaching your home server from anywhere
Your media library, files, or home automation, reachable over the tunnel without exposing a single port to the open internet.
Services that lock you out by region
A dedicated IP in the right country keeps the services you already pay for treating you like you never left.
A small team that needs one trusted exit IP
Whitelist a single address on your tools once, and everyone connects through it. Far simpler than managing five consumer VPN accounts.
Leaving a subscription VPN you stopped trusting
When the provider is you, the no-logs policy isn't a marketing page. It's a server you hold root on, doing only what you told it to do.
From first message to handover, in four steps
Tell us how you use the internet
Which devices, which countries, which networks give you trouble. If you already know the protocol you want, say so. If not, we recommend one and explain why.
We build the server
On a VPS you already rent, or on one we provision in your chosen country. Hardened, updated, firewall rules in place, protocol installed and tested from our side.
You test on every device
We send config profiles for each of your devices and stay on the line while you connect, check for leaks, and confirm speeds look right on your actual connection, not ours.
Keys change hands
You take root access, change the password, and from that point the server is yours alone. Documentation for common maintenance is included so you're not calling us to reboot it.
Questions people actually ask
The five things almost everyone wants settled before they order a setup.
Something we didn't cover?
Ask us directlyOne server. One user. Your rules.
Tell us your devices, your country, and the networks that give you trouble. You'll get a protocol recommendation and a plan before anything gets built.