What is VPN split tunneling, and how does it work? (2024)

Secure your data traffic while letting some apps bypass encryption for easy access. Make your VPN protection work for you with split tunneling.

Get NordVPN

What is VPN split tunneling, and how does it work? (1)

What is VPN split tunneling?

Virtual private network (VPN) split tunneling lets you route some of your data traffic through an encrypted VPN while other apps keep direct internet access. This advanced VPN feature allows you to tailor your digital protection to your needs. By splitting your connection, you can secure your online traffic while letting some apps access the internet directly. Split tunneling is available on Windows, Android, and Android TV NordVPN apps.

What is VPN split tunneling, and how does it work? (2)

How does VPN split tunneling work?

VPN split tunneling divides your network traffic into two separate connections. Part of your online traffic goes through a VPN server’s encrypted tunnel, keeping it protected. The rest of your traffic can access the internet directly without going through the VPN tunnel. You choose which trusted apps can bypass VPN protection in your VPN app’s settings.

Different types of VPN split tunneling

What is VPN split tunneling, and how does it work? (3)

Policy-based split

With policy-based split tunneling, routing is based on predefined policies that you or the network admin set up.

What is VPN split tunneling, and how does it work? (4)

Route-based split

In route-based split tunneling, the traffic is divided based on predefined network routes (which can be dynamic).

What is VPN split tunneling, and how does it work? (5)

App-based split

App-based split tunneling means you choose which apps don’t need VPN protection. The rest of your internet traffic is encrypted.

What is VPN split tunneling, and how does it work? (6)

URL-based split

URL-based VPN split tunneling lets you specify which URLs you want to exclude from the secure connection. This feature is available on NordVPN’s browser extensions.

Why use VPN split tunneling

What is VPN split tunneling, and how does it work? (7)
What is VPN split tunneling, and how does it work? (8)
What is VPN split tunneling, and how does it work? (9)
  • Tailor your content access

    With split tunneling, you can access both home and local services when traveling. For example, you may access work files on VPN-protected Google Chrome while reading the local news on Firefox at the same time.

  • Enjoy faster speeds

    Though NordVPN is the fastest VPN on the market, encryption still takes time. While the slowdown is barely noticeable, activities like gaming require blazing internet speeds. With split tunneling, you can protect sensitive data without giving up a high-speed connection.

  • Connect to other LAN devices

    VPN encryption may sometimes stop your device from connecting to other devices on your local home network (LAN). Split tunneling lets you access printers, smart home appliances, and other LAN devices without giving up your VPN protection.

How to enable split tunneling on NordVPN

Split tunneling is available with NordVPN on Android, Android TV, and Windows devices. If you have any connectivity issues, check out our tutorial on NordVPN split tunneling.

01

Go to “Settings”

From “Profile,” tap on the settings icon in the top left.

02

Select “Split tunneling”

Scroll down to the “VPN connection” section and tap “Split tunneling.”

03

Choose apps

Select which apps you want to exclude from your secure VPN connection.

01

Go to “Settings”

Click the cogwheel icon in the bottom-left corner.

02

Select “Split tunneling”

Scroll down and tap “Split tunneling” in the menu.

03

Select type

Choose your split tunneling type based on your preferences.

04

Add apps

Choose which apps you want to be covered by split tunneling.

01

Go to “Settings”

In the main NordVPN menu, scroll down to “Settings.”

02

Select “Trusted apps”

In the screen that opens, select “Trusted apps.”

03

Add apps

Choose which apps you want to exclude from your secure VPN connection.

NordVPN: Premium security, top speed

Get NordVPNSee All Features

Frequently asked questions

What is VPN split tunneling, and how does it work? (2024)

FAQs

What is VPN split tunneling, and how does it work? ›

Split tunneling is a VPN feature that divides your internet traffic and sends some of it through an encrypted virtual private network (VPN) tunnel, but routes the rest through a separate tunnel on the open network. Typically, split tunneling will let you choose which apps to secure and which can connect normally.

How does VPN split tunneling work? ›

How does VPN split tunneling work? The split tunnel VPN works by dividing your internet connection between two connections. The public network/open server and the private network. By doing so, split-tunnel enables you to leverage VPN to encrypt confidential data while still having direct access to the internet.

Should I enable split tunneling? ›

The default setting of a VPN is to route 100% of internet traffic through the VPN, but if you want to access local devices or obtain higher speeds while encrypting specific data, consider using split tunneling.

What is the difference between a full tunnel VPN and a split tunnel VPN? ›

Main differences between split tunnel and full tunnel VPNs

full tunnel VPN is that a full tunnel VPN shields all your online traffic with VPN encryption, while a split tunnel VPN allows you to divide your traffic, routing a portion of it through a VPN server while the rest of it travels the internet directly.

How to prevent split tunneling? ›

Protections to mitigate the risk of split tunneling should include first and foremost a valid BAA, which requires the third parties to verify the remote workstations are protected. For internal employees and contractors, the Acceptable Use Policy (AUP) should be signed and must outline the acceptable use of equipment.

How to tell if a VPN is split tunnel? ›

A good way to test your VPN split tunneling is to try out some of the URLs or apps you selected to see if they pass through the VPN. You can do this by checking to see if you can still access region-restricted content or looking up your IP address.

What are the benefits of VPN tunneling? ›

VPN Pros: Advantages of using a VPN
  • Secure your network. The benefits of using a VPN are vast. ...
  • Hide your private information. ...
  • Prevent data throttling. ...
  • Avoid bandwidth throttling. ...
  • Get access to geo-blocked services. ...
  • Network scalability. ...
  • Reduce support costs.

Which VPN has the best split tunneling? ›

Surfshark – The best value split tunneling VPN service

Like NordVPN, Surfshark offers the WireGuard VPN protocol in all their VPN apps, including the new Linux VPN GUI app. In our speed tests, Surfshark was only bested by NordVPN, as you can see in the Surfshark vs NordVPN comparison.

How do I get rid of split tunneling VPN? ›

Go to VPN -> SSL-VPN Portal -> Create New.

Map the User groups to correct the SSL VPN Portal according to the needs. In this case, the 'SSL-VPN_User_Ena' group has been mapped to 'full-access' to enable the split tunnel then mapped the 'SSL-VPN_User_Dis' group to 'full-access_Split_Disable' to disable the split tunnel.

Is the VPN tunnel app safe? ›

Are VPN tunnels safe? VPN tunnels are generally safe for businesses as they use encryption protocols to protect data transfer, reducing the risk of data breaches and cyberthreats.

What is the easiest VPN tunnel? ›

If you're doing a manual installation, IKEv2, L2TP, and PPTP are the easiest to set up, because they are built into most computers. You can use those three protocols without third-party software when setting up a VPN manually on Android, for example.

Can you have multiple VPN tunnels? ›

A double VPN uses multiple VPNs in a chain arrangement by routing through more than one VPN server. This strategy provides greater security for a VPN connection because of the double encryption. This arrangement is also referred to as a double VPN, doublehop VPN or multihop VPN.

Does private VPN have split tunneling? ›

No split tunneling: Private VPN lacks a split tunneling feature, which means you'll need to switch the VPN on and off if you're using apps that are not VPN-friendly. WireGuard manual setup: If you want to use WireGuard as your VPN protocol, you'll need to set it up manually since it's not supported natively on the app.

Why is split tunneling bad? ›

A full tunnel VPN deployment encrypts everything, while split tunneling encrypts only a portion. This means there's always a risk, however small, that some traffic that should have been encrypted will remain unsecured.

What is an example of split tunneling? ›

Here, split tunneling is determined based on destination IP addresses or IP ranges. For example, if you're working remotely, you might route traffic going to your company's IP range through the VPN but let other traffic go directly to the internet.

How do you test for split tunneling? ›

How do you test split tunneling?
  1. Disconnect from a VPN (if you're connected);
  2. Open two IP-checking sites on two tabs on your browser. ...
  3. You should see your real IP address on both;
  4. Now, setup Bypasser on the Surfshark app to bypass one of the websites;
  5. Connect to a VPN server;
  6. Refresh the IP checker website tabs;

How does tunneling work on a VPN? ›

A VPN tunnel not only protects you from data being intercepted, but it also hides your IP address, which can otherwise be used to identify you when you are browsing the web. Instead of your real location, the sites you visit will only see the location of the VPN server you are connected to.

Does a VPN tunnel work both ways? ›

Yes. VPNs don't really have a direction, they are just tunnels between distant networks. In terms of IP routing and access, there is no difference between a VPN a physical connection – and it's just as common to see a fully symmetric site-to-site VPN as it is with client-server ones.

How does split tunnel DNS work? ›

Split DNS is typically deployed in ways that let you obscure the DNS responses for internal services. Sometimes it is deployed to ensure that all DNS responses for internal services go over a secure tunnel like Tailscale. Sometimes it is deployed in an effort to reduce the risk of DNS cache poisoning.

Top Articles
Latest Posts
Article information

Author: Manual Maggio

Last Updated:

Views: 5882

Rating: 4.9 / 5 (69 voted)

Reviews: 84% of readers found this page helpful

Author information

Name: Manual Maggio

Birthday: 1998-01-20

Address: 359 Kelvin Stream, Lake Eldonview, MT 33517-1242

Phone: +577037762465

Job: Product Hospitality Supervisor

Hobby: Gardening, Web surfing, Video gaming, Amateur radio, Flag Football, Reading, Table tennis

Introduction: My name is Manual Maggio, I am a thankful, tender, adventurous, delightful, fantastic, proud, graceful person who loves writing and wants to share my knowledge and understanding with you.