bookmark_borderHere is what is new, and what is coming soon.

As you may have noticed, we have done a bit of rebranding from ‘INCOG.HOST’ to ‘IncogNet’. This rebranding stems from two major factors:

  • First, the ‘.host’ TLD is cheap and a bit spammy. It’s automatically filtered as spam on some websites when shared (such as on reddit) and generally isn’t associated with legitimate business. The domain will possibly still be used internally where needed, such as for nameservers, hostnames, etc.
  • Second, we are legally operating our business under the entity of, “IncogNet LLC”, short for “Incognito Networks”. As such, changing our website URL to represent that of our business name just sort of made sense.

With this update in our name came a slight update in our branding. You may still see the old URL used in some areas of the site until we make the complete move over, things like our customer portal still reside under the old name but will soon be moved over as well.


Big improvements and upgrades are coming to our services! We’re rolling out DDoS protected, distributed anycast DNS for our ad-blocking VPN service!

This means that your VPN location will query the closest DNS server to it to serve your request. This is a BIG upgrade to our current VPN offering which is currently utilizing a single location (Luxembourg) to serve your DNS requests from. Not only will this new setup decrease the total lookup time for each request, it will also harden the entire service by removing a point of service failure. This new setup will allow for one or more DNS server to be offline (due to outage, maintenance, etc) without impacting the ability of the VPN service to still function as intended. If one server fails to respond, the request will be sent to another one until the lookup is complete.

But that’s not all! We’re obsessed with quality. We may be a small team of people here but we’ve all been in this industry a long time and have been a customer of many other providers over the years. We will only offer you services that we ourselves would use for our own projects. That’s why we’re revamping our shared hosting offerings. The new shared hosting service will include more super fast storage, on a much larger server with faster, and more CPU cores, and will utilize CloudLinuxOS to better allocate guaranteed resources to each customer while improving security and performance of your hosting. The previous features such as DDoS filtering, I2P network and Tor network hosting and encrypted webmail will certainly be included as well!


When will you start offering your Virtual Private Server or Network Node service?

We’ve had this question in our ticket queue often recently. To be honest, we can not yet quite say for sure. We’re still locating server hardware and trying to shop for good deals, which are harder to find than they were pre-COVID. Rest assured however that we still plan to launch our VPS and Network Node service on our own, owned hardware located in private rackspace in our Luxembourg location. We’re offering our current and existing services from rented resources until we’re able to transition them onto our own hardware in the future, but want to wait until we own our hardware before we jump into the VPS and Network Node market. We want to do this proper, we want to do this right. That means we need to outright own our hardware, maintain our own ASN / IP space and be in control over as much as possible. This will allow us to not only provide you a better, more cost efficient service but will allow us more freedom in operation. While we are very eager to begin offering these services, we do not want to rush into it and want to do it right.


But wait, there’s more! We’ve got something else up our sleeve that we are building and may offer as a beta-service in the coming months. Without going into much detail or naming what the service may be, imagine a way to take your Content and Deliver it over an anycast Network so that your content is delivered to the viewer from a server that is closest to them…. This is a project that is currently on the roadmap but something we have yet to break ground on, so to speak. But be on the lookout for this.

Until next time,
-IncogNet

bookmark_borderOur YouTube proxy is live. Here’s why you should consider using it.

We love privacy. So much in fact, we’re building a business around it. But did you know that we also sponsor and promote the use of many free and publicly available projects that help protect your online privacy?

It’s no secret that Google, and therefore YouTube, is privacy nightmare. But in this modern age of internet, can you even watch YouTube videos privately, and without feeding information to Google? Can you watch a YouTube video without being fed irrelevant advertisements? Can you access YouTube’s content from anonymity networks such as Tor and I2P? You absolutely can!

We operate a public Invidious Instance in our Luxembourg location. Invidious is an opensource and actively developed and updated privacy front-end for YouTube.

You can view our Invidious install using the following URLs:

The main benefits of using our Invidious instance is that, by default, all videos are proxied through our network so that your requests for YouTube content is made to us, we make the request to YouTube, YouTube feeds it to us and we pass it on to you. Nowhere in this process do you and YouTube ever make a direct connection. (Useful for accessing YouTube on networks where it’s blocked).

Additionally, you can register for a free account with no personal information required. With registration, you may then build playlists and subscribe to the channels that you know and love.

The fact is, there are many great “YouTube alternatives”, but what they all lack is the only thing that keeps YouTube relevant today: Content.

(More on this in a future posting)

Here are the main benefits to using our YouTube proxy:

  • Powered by an open source, actively developed project.
  • Proxies all requests to YouTube through our network by default.
  • No ads! No ads embedded on the site, and no ads in the videos.
  • Great site to use on mobile. You can switch apps, browsers, watch picture in picture or listen to audio with the screen turned off. You can not do that with the official YouTube app.
  • No logging, no tracking. Google/YouTube can’t track you, and neither can we. We can’t determine what you are searching for, and quite frankly, don’t care what you’re watching. We can’t see your playlists or subscriptions.
  • Quickly / easily download YouTube videos straight from your browser. Watch later, offline.

It seems to be getting some use.

Below is a network graph from the last two weeks of our Invidious instance being online. We’ve got bandwidth to spare, and hope to see that the service gains more traction and use by others. I personally use it as a full replacement to YouTube, where any link or request on my local machine gets automatically redirected to https://tube.incognet.io/ (Ex: If I click on https://www.youtube.com/watch?v=dQw4w9WgXcQ , then it automatically sends me to https://tube.incognet.io/watch?v=dQw4w9WgXcQ )

Last two weeks of traffic use. We’ve got bandwidth to spare
(Ignore the blip. A configuration error on our end left the software inaccessible for that period)

At the current rate, we should see about 10-15TB of bandwidth used for the month of April. This is for videos that visitors have requested without feeding the beast that is Google.

We have a lot of public privacy projects online or in the works, and we’ll be doing write ups on them in the future. What sort of pro-privacy public projects (say that 5X fast) would you like to see us host and sponsor? Let us know!

bookmark_borderOur public Yggdrasil Network Peer is now online.

We love supporting network projects that aim to help keep users anonymous and private. It’s why we run high performance I2P Network Routers to help route traffic and donate bandwidth to the Invisible Internet Project and have plans to implement TOR relays and exits. Like most networks, the anonymity, reliability and overall performance is directly related to how many available nodes are available to handle and pass traffic. It appears Yggdrasil is no different in that regard, and we’re happy to announce our Luxembourg based Yggdrasil Network Peer is now online and available as a resource to all.

Yggdrasil is an early-stage implementation of a fully end-to-end encrypted IPv6 network. It is lightweight, self-arranging, supported on multiple platforms and allows pretty much any IPv6-capable application to communicate securely with other Yggdrasil nodes. Yggdrasil does not require you to have IPv6 Internet connectivity – it also works over IPv4.

From https://yggdrasil-network.github.io/

Installation is a breeze, and you can find the install notes on Yggdrasil’s official website here: https://yggdrasil-network.github.io/installation-linux-deb.html


Now, before you can get started browsing the Yggdrasil network, you must first configure Yggdrasil to peer with a network node. In the configuration example below, we’re using our own node.

Modify /etc/yggdrasil.conf so that your peers section reflects below.

Peers: [
tls://107.189.4.167:42024
]

You can find more public peers here: https://publicpeers.neilalexander.dev/ (Note, we are not yet listed on the public peers page but I suspect we will be soon) . One, two or three peers that are relatively geographically close to you should suffice in your setup.

So far, the Yggdrasil Peer is not pushing much traffic. We hope that it will get more use in the future. The image shows the last 48 hours of network traffic.

  • Public IP: 107.189.4.167
  • Yggdrasil IP: [200:9208:70c1:fd67:ddce:7c2f:f85a:8e20]
  • TCP port: 42069
  • TLS port: 42024
  • Location: Luxembourg

bookmark_borderThe ad, tracker, and other “bullshit” blocking VPN beta – How it’s going so far.

Almost a month ago we opened a free, public beta of our VPN service. The purpose of this beta was to help us make sure that our blocklists only blocked ads, trackers, malware, and other “BS” but did not prohibit users from accessing the content that they wish to view.

Preliminary testing shows that: So far, so good!

We have observed that anywhere between 15-30% of all DNS requests made by users are blocked from resolving over our VPN network. These are requests that are embedded into websites and apps that do not serve any meaningful purpose to you, the end-user. Instead, these elements exist to collect information about you (trackers), sell you stuff (advertisements) or in severe cases: Steal your information (phishing and fraud sites). What you receive by using our VPN service is a safer internet and the ability to protect your web identity while using less local bandwidth by us filtering out all the junk.

This public beta was initially launched in our Luxembourg location, but we decided shortly after to make it accessible from an American location as well (Las Vegas). Although our operation exists around privacy and anonymity, we will be offering one or two US-based locations for users who wish to access country-locked content in the USA. (Likely a West Coast option for good connectivity for the Asian region and an East Coast option for good connectivity to Europe)

After some testing of a Kiev, Ukraine based service provider, we have decided that our 3rd location for VPN services will launch there. We were very impressed with the speeds on the network, the connectivity to our other locations and the overall experience and communication with the upstream provider who shares our core values as a company.

In an effort to be as open and transparent as possible, we have released our existing blocklists which are available for public review here as well as available for your own use on any network device that accepts blocklists (pfBlockerNG, pi-hole, etc). These lists were created from current, publicly available and community sourced lists. What we did was simply merge, organize, and remove duplicate entries and known false positives while adding some of our own discoveries to the lists. These lists will evolve over time and be updated frequently.


Feedback has been positive so far.

The purpose of the free beta was to collect feedback, however many who have signed up haven’t actually provided us with any feedback yet. Those who have, however, have had this to say and share:

“Got 165 Mbit through directly wiring into Starlink just now for a test location in Michigan so from Michigan Test Location > Lux > Starlink > Me still hit 165 Mbit”

Beta tester using the Luxembourg location.
Pulling over 500Mbps from their fiber connection at home over our VPN!

“It seems to be as fast as what my Wi-Fi can handle.”

Beta tester using the Luxembourg location.

“I didn’t notice any (ads) on my computer.”

Beta tester using the Las Vegas location.

And although I may be personally biased, I can say with honesty that all my devices at home as well as my phone has been connected to our VPN network for a good month or so now. In every test environment that I have setup I have not installed the normal uBlock ad-blocker plugin for Firefox as I normally would. Instead, I’ve just let the VPN do it’s thing.

There are still some minor limitations. Some ads, such as those served over YouTube, will still load. This is due to how YouTube serves advertisements, using the same URL structure as the actual content they serve so blocking ads would mean blocking YouTube videos from working. Smart move on their behalf, but luckily it does seem that in-browser plugins such as uBlock does well in detecting and stopping those. You can also access YouTube via our Invidious installation, which is a privacy focused front-end for YouTube that disconnects you from Google and serves the videos and content through our network instead. With this method, before and in-video ads are eliminated. Check it out at https://tube.incog.host/ !

With other services such as Spotify, we’ve had success in blocking most, but not all ads along their free service. In my own testing I have been prompted with the normal, “Watch this short video for 30 minutes of ad-free music” and when clicking it, it just goes straight to music and doesn’t try to load the ad. For now, we have the Spotify ad-block list running and will tweak it more as needed.

It would appear that your favorite adult sites will continue to function as normal, though do not be alarmed over the new lack of “hot singles in your area that want to meet you.” Those were ads, and now they are no more… But we’re sure hot singles still want to meet you.

We’re still testing with common and popular phone apps however nothing that we have tested so far has appeared to be broken.

What are your favorite sites or apps? We’ll test them over our VPN network and do everything we can to ensure that we’re stripping out any trackers, ads, or BS.