Glossary: DNS Leak
A DNS leak occurs when DNS queries bypass a VPN tunnel, potentially exposing browsing activity.
Understanding DNS Leaks
DNS leaks undermine VPN privacy by exposing your DNS queries outside the encrypted tunnel. This reveals which websites you visit to your ISP or other observers, even while using a VPN.
Common Causes
- IPv6 traffic on IPv4-only VPNs
- Incorrect DNS configuration
- ISP transparent DNS proxies
- Windows Smart Multi-Homed Name Resolution
- WebRTC revealing local IP addresses
Prevention Methods
- Use VPN-provided DNS servers
- Enable DNS leak protection in VPN settings
- Disable IPv6 if not supported by VPN
- Use DNS-over-HTTPS or DNS-over-TLS
- Regularly test for leaks