- Home >
- Features Page >
- DNS Leak Protection
DNS Leak Protection – Keep DNS Queries in the Tunnel
- All DNS queries are routed through the encrypted tunnel.
- Prevents your ISP from seeing the sites you visit.
- Works alongside WireGuard and the kill switch.
What Is a DNS Leak?
A DNS leak happens when your device sends domain requests to your ISP's DNS servers instead of routing them through the VPN's encrypted tunnel.
That means your ISP can see every website you visit – even while you're connected to a VPN. DNS leak protection forces all DNS queries through the secure tunnel, closing the gap. It's one part of the full set of Mysterium VPN features.
How Mysterium VPN's DNS Leak Protection Works
Encrypted routing
All DNS queries go through Mysterium VPN's secure servers instead of your local network or your ISP's DNS.
Privacy guard
Your ISP can't see which websites you visit. DNS requests stay inside the encrypted tunnel.
Protocol support
It works alongside our no-logs policy, WireGuard protocol, and the kill switch for a complete privacy stack.
Why DNS Leaks Happen
Manual VPN Setup
Incorrect network or VPN configurations can bypass the secure tunnel, sending DNS requests unprotected.
IPv6 Traffic
Operating systems may send IPv6 requests outside standard VPN routes when IPv6 isn't handled by the VPN.
OS Fallbacks
Systems like Windows query several network interfaces at once, which can open the door to a DNS leak.
How to Test If Your DNS Is Leaking
Step 1: Connect to Mysterium VPN.
Step 2: Go to an independent DNS leak test tool, such as dnsleaktest.com.
Step 3: Run the test. The results should show Mysterium VPN's DNS servers, not your ISP.
Step 4: If your ISP appears, check that DNS leak protection is enabled in the app’s settings.
