Installing and Configuring Protocols
About the Protocols
AmneziaVPN is a multi-protocol self-hosted VPN client. It supports configuring and installing modern open-source VPN protocols: AmneziaWG, XRay VLESS Reality, OpenVPN, and WireGuard.
A more detailed description of the protocols can be found in this article. Below is how to install and configure VPN protocols in AmneziaVPN.
Opening Protocol Settings
- Open AmneziaVPN and click the server name at the bottom of the screen.
- Click the gear icon next to the server connection.
- Open the Protocols tab and select a protocol.

XRay VLESS Reality Settings
In the XRay VLESS Reality server settings, you can change only Server Name (SNI) and, if necessary, the port. Changing any other settings will make the connection stop working.
We do not recommend changing the default port 443. Change it only if port 443 is already used by another application.
- On the Protocols tab, select XRay.
- Open XRay server settings.
- In XRay VLESS settings, open Security.
- Change Server Name (SNI).
- Click Save, then Continue.

OpenVPN Settings
OpenVPN is highly configurable. You can:
- Change the subnet address.
- Choose the network protocol.
- Change the port.
- Choose the cipher and hashing algorithm.
- Enable TLS-auth — it adds an additional HMAC signature to SSL/TLS handshake packets and checks packet integrity. Packets without a signature are not processed. This improves SSL/TLS security and helps protect against some types of attacks.
- Enable Block DNS requests outside VPN — prevents DNS leaks.

AmneziaWG Settings
In the AmneziaWG settings, you can change the Magic headers and Junk packet sizes.
