Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

VPS on Hetzner + OpenVPN with HMAC firewall.

I think if you are using generic webhosting instead of pure VPN, then your traffic is less likely to be monitored/recorded in association to your credit card number.



I would second this recommendation, if you have the technical chops for it. Whilst it may seem like more work initially - your vpn will perform far better.

Many paid vpn providers limit you to ~1Mbps down, which may be impractical for some forms of browsing. By contrast, as your personal vpn's only client - you can reasonably expect to see speeds comparable to your own connection and (if you are in europe) only a minor drop in ping.

Furthermore, if you need to use the VPN on a network which blocks ports, running the vpn yourself allows you to edit the port upon which it accepts connections.

Lastly - Hetzner is provider without direct ties to the US/UK, which should afford you some security from drag-net surveillance etc... the Germans seem pretty upset about the whole US signals intel overreach debacle. A win from this perspective.


I run a vpn server on a $5 digital ocean vps. My isp throttle ftp connection, so it's very useful when I need to transfer files via ftp. I'd rather use sftp, but some of my clients use rackspace cloud sites (only support ftp and sshfs).

Also, I notice that if I use vpn when using 3g connection, I don't experienced many dropped connections anymore. Without vpn, if I open too many tcp connection, some connections would start to drop. Could it be that when using vpn, the mobile network sees my internet traffics as one socket connection to the vps? I probably need to learn how vpn works under the hood and not just take them for granted.

Another benefit is I can install mosh on the vps, and if I need to login via ssh to a remote server (that don't have mosh installed), I would login to my vps with mosh, and then proceed to login to the remote server via ssh. This (mostly) eliminates the annoying typing delay on ssh terminal.


>> Hetzner is provider without direct ties to the US/UK

Which also makes them a bad choice if you're trying to watch US TV channels or something while you're visiting abroad.


True - I was making the assumption that the OP's desire for privacy was in light of all the recent security related press.

However if your suggestion is in line with their intent then the recommendation still stands, just use a provider like digital ocean and choose a datacenter location appropriate to your needs.




Consider applying for YC's Summer 2026 batch! Applications are open till May 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: