
WireGuard is the newest and fastest tunneling protocol the entire VPN industry is talking about. WireGuard ( NordLynx) (Recommended by NordVPN and used by default in most of our apps)

The protocol provides the user with peace-of-mind security, stability, and speed.ģ. IPsec then secures the tunnel between the client and server, using the strong AES-256. The ciphers used to generate Phase1 keys are AES-256-GCM for encryption, coupled with SHA2-384 to ensure integrity, and combined with PFS (Perfect Forward Secrecy) using 3072-bit Diffie-Hellman keys. NordVPN uses NGE (Next Generation Encryption) in IKEv2/IPsec. IKEv2/IPsec significantly increases the security and privacy of users by employing strong cryptographic algorithms and keys. We recommend it for the most security-conscious users. OpenVPN supports a great number of strong encryption algorithms and ciphers: to ensure the protection of your data, we use AES-256-GCM with a 4096-bit DH key. It is a versatile protocol that can be used on both TCP and UDP ports. OpenVPN is a mature and robust piece of open-source software that enables us to provide a reliable and secure VPN service. While we want you to be able to choose freely, we also feel it’s our duty to advise you on what might suit you best. We encourage you to take a closer look at the strengths and weaknesses of each protocol. The security levels and purposes of these protocols are different, but so are our customers’ needs.


NordVPN supports a number of security encryption protocols to provide a VPN service. This article is available in German, Italian, Japanese, Korean, Polish, Portuguese-Brazilian, Danish, Norwegian, Traditional Chinese, French, Dutch, Swedish, and Spanish.
