Pango Platform
HomeConsole
  • What is Pango Developer Platform
  • Getting started
    • Sign up on the Management Console
    • Create a new project
    • Switch projects
    • Change console settings
    • Edit your profile
    • Try out the demo app
    • Keep exploring
    • Deprecation and Sunset
  • Console details
    • Dashboard
      • General
      • Location loading
    • Users
      • User page
    • Active sessions
    • Network
      • Countries
      • Locations
      • Pools
        • Optimal location
        • Location rules
    • Settings
      • General
        • Project config description (JSON format)
          • Server selector (JSON format)
          • Request selector (JSON format)
      • Authentication methods
        • Auth Plugin requirements
      • VPN
        • General
        • VPN Bypass list
        • Client Networks
      • Member
    • Export Data
    • Log
  • SDK
    • Unified VPN SDK
      • Features
        • Personal Bridge
      • Tunnel Vision and Tunnel Crack Prevention
      • Unified VPN SDK Feature Comparison By Platform
    • Unified VPN SDK for Android
      • Setup
        • Application Setup
        • Proguard Rules, Notification, and Analytics Configurations
        • Backend URL Configuration
      • Usage
        • Initialization
        • VPN Interface
        • Backend interface
      • Features
        • Hydra Protocol
          • Location profile (Hydra only)
        • Custom sdk dependencies
        • Deferred VPN Service Initialization
        • Authentication
        • Client Network List (CNL)
        • OpenVPN transport
        • Wireguard Transport
        • Reconnection strategy
        • Single Protocol SDK
        • Killswitch
        • Domain route via VPN
        • Process route via VPN
        • Process Bypass
        • Domain Bypass
        • Traffic rules
        • VPN Node DNS Configuration
        • Multihop
          • Optimal Location
      • Exceptions
      • Version migration
      • Changelog
    • Unified VPN SDK for Apple
      • Setup
        • Application Setup
        • Network Extension Setup
          • Network Extension Setup for tvOS
        • Backend URL Configuration
      • Usage
        • Single Protocol SDK
        • Unified SDK
        • Logging
        • Decoding Encoded VPN SDK Logs
        • Analytics Configuration
      • Features
        • Deferred VPN Service Initialization
        • Authentication
        • Wireguard Transport
        • Reconnection strategy
        • Killswitch
        • Domain Bypass
        • Multihop
          • Optimal Location
        • Client Network List (CNL)
        • Domain route via VPN
      • Changelog
      • API Reference
    • IPSEC VPN SDK for Apple
    • Unified VPN SDK for Windows
      • Setup
        • Backend URL Configuration
        • Service command line arguments
        • ARM Platform Support
      • Usage
        • CoreAPI
        • Events
        • Generating a Unique Device Identifier
        • Error processing
        • Pipe Messaging
      • Features
        • Traffic protection
          • Killswitch
          • Prevent IP Leaks
          • Block Local Networks
        • Other
          • Firewall
            • DNS Monitor
            • Process Bypass
            • Domain Bypass
            • Process route via VPN
            • Domain route via VPN
          • Throttling
          • Optimal Location
          • Common issues
        • Hydra Protocol
          • CustomDNS, UserDNS, MultiHop, VpnProfiles
        • OpenVPN Protocol
        • Wireguard Protocol
        • IPSec Protocol
      • Collecting Debug Logs
      • Changelog
    • Unified VPN SDK for Routers
      • SDK. Shared library.
      • Configuration Interface (CI)
        • Unix Domain Sockets CI
        • REST API CI
  • REST API
    • Partner API
  • Sample applications
    • Unified VPN SDK demo for Windows
    • Hydra VPN SDK demo for iOS
    • IPSEC VPN SDK demo for iOS
    • Unified VPN SDK demo for Android
    • Hydra VPN SDK demo for OpenWRT
    • OpenVPN configuration file
  • Resources
    • Use cases
      • Public VPN
      • Business VPN
        • Creating a Business VPN Project
        • Wi-Fi Security for Business
      • Application anti-blocking
    • How-to
      • Create a Firebase project for User Authentication
      • AWS CloudFront Distribution of the Platform URL
      • How can I get Shared Secret key from iTunes Connect for In-App Purchase
  • FAQ
    • General
      • VPN Platform Flow
      • What data is collected by the Platform?
      • What analytic data is collected by your SDK?
      • How the Platform restricts access to our data?
      • Why DNS Leak tests often indicate positive result?
      • Do we need to perform endpoint health checks?
      • How is the VPN exit node found?
      • How are streams re-marked if VPN is enabled/disabled on an active flow?
      • Is there a maximum number of supported devices?
      • Are both IPv4 and IPv6 supported?
      • What is the MTU of the tunnel?
      • Are any redundancy measures in terms of reliability provided?
      • Is there any load balancing?
      • Do you block broadcast and multicast to/from the VPN?
    • List of Open Source libs
Powered by GitBook
On this page
  • Overview
  • Important Notice
  • General Approach
  • Setup Resources
  • Client Implementation Examples
  • Android
  • Apple
  • Windows

Was this helpful?

  1. SDK
  2. Unified VPN SDK
  3. Features

Personal Bridge

PreviousFeaturesNextTunnel Vision and Tunnel Crack Prevention

Last updated 1 month ago

Was this helpful?

Overview

Personal Bridge is a multi-hop VPN technology that provides enhanced privacy and security by routing your traffic through multiple intermediary servers before reaching the internet.

Important Notice

Personal Bridge servers must be installed, configured, and maintained by clients themselves. Pango does not provide any Personal Bridge nodes or infrastructure. Clients are responsible for:

  • Setting up their own Personal Bridge server instances

  • Maintaining these instances and ensuring compatibility

  • Resolving any incompatibilities between current/future SDK versions and different versions of Personal Bridge

The Personal Bridge technology is provided "as is" without any guarantees of compatibility with future SDK releases.

General Approach

The server intended to be used as intermediate Wireguard server for multihop connections:

A chain of servers can be of any length, even allowing circular routing:

Setup Resources

Client Implementation Examples

Android

To configure Android SDK to connect using Personal Bridge nodes:

val builder = SessionConfig.Builder()
               .withTransport(WireguardTransport.TRANSPORT_ID)
               .withPersonalBridgeNodes(listOf("node url"))

Apple

In order to use Personal Bridge feature, user needs to pass list of node urls to ComposedConfiguration that is passed in SDK initializer.

var composedConfig = ComposedConfiguration(availableTypes:
                            [
                                .hydra(extensionBundleID: ProvidersID.hydra.rawValue),
                                .ipsec,
                                .wireguard(extensionBundleID: ProvidersID.wireguard.rawValue)
                            ],
                        carrierID: carrierID,
                        groupData: Self.groupData,
                        trafficCountersFetchInterval: 3.0,
                        fireshieldConfig: makeFireshieldConfig(),
                        personalBridgeNodes: personalBridgeNodes)

Parameters

  • personalBridgeNodes: An optional parameter that takes either:

    • nil (default): Uses standard node selection logic

    • [String]: An array of URL strings pointing to custom nodes

Windows

One new property should be filled: List<string> PersonalBridgeNodes

When option is null or empty list, then Personal Bridge feature is disabled.

var startVpnRequest = new StartVpnRequest
{
    Credentials = getCredentialsResponse.Credentials,
    DeviceId = DEVICEID,
    EnableKillSwitch = false,
    EnableTunnelLogging = false,
    VpnNode = getNodesResponse.VpnCountries.FirstOrDefault(),
    WaitConnected = true,    
	PersonalBridgeNodes = ["https://vpnlite-test-1.pango-internal.com"],
};

var startVpnResponse = await sdk.StartVpnAsync(startVpnRequest).ConfigureAwait(false);
if (startVpnResponse.Result == ResponseResult.Ok)
{
    Console.WriteLine(startVpnResponse.Message);
}

All necessary binaries and instructions to set up a personal bridge (server side) can be found in our . The repository contains everything you need to configure and deploy your own Wireguard intermediate server.

Github repository