VPN & networking glossary

Short, plain-language definitions for the terms that come up when you're comparing VPN setups — no marketing spin, no assumed background.

VPN
A Virtual Private Network encrypts a device's traffic and routes it through another point on the internet, so the sites and services it reaches see that point's address instead of the device's own.
Hardware VPN
A physical device, usually a router, that tunnels traffic for every device on its network automatically, instead of requiring VPN software installed on each device. See our full hardware VPN guide.
Mesh VPN
Software, such as Tailscale, that connects a user's own devices to each other over a private encrypted network — a different goal from making traffic appear to originate from a specific location. See FlashedRouter vs. Tailscale.
Residential IP
An IP address assigned by a home internet provider to an individual household, as opposed to a datacenter IP shared across many unrelated users. Read more in residential IP vs. datacenter VPN.
Datacenter IP
An IP address belonging to a commercial hosting or VPN provider's server infrastructure, often reused across many customers and more likely to appear on VPN or fraud blocklists.
Geofencing
Restricting or changing access to a website, app, or service based on the geographic location inferred from a device's IP address. See our geo-restrictions guide.
Exit node
The device or server a VPN or mesh network routes traffic out through before it reaches the wider internet — the point that determines what location and IP address the traffic appears to come from.
Dynamic DNS
A service that keeps a domain name pointed at a home internet connection's IP address even when that address changes, which is common on residential internet plans.
Static IP
An IP address that stays fixed over time, rather than changing periodically the way many residential connections do by default.
WireGuard
A modern VPN protocol known for a small codebase and fast performance, used as the tunneling protocol behind many current VPN products, including mesh VPNs like Tailscale.
DNS leak
A misconfiguration where DNS lookups bypass an active VPN tunnel and go out over the regular connection instead, potentially revealing browsing activity or true location despite the VPN being on.
IP leak
Any situation where a device's real IP address becomes visible to a site or service despite an active VPN or tunnel, usually caused by a dropped connection or misconfiguration.
VPN blocklist
A list of IP ranges, usually datacenter ranges used by commercial VPN providers, that a platform blocks or challenges specifically because they're known to belong to VPN infrastructure.
Impossible travel
A fraud-detection signal that flags an account login as suspicious because it occurs from a location that couldn't reasonably be reached in the time since the account's last known location. Covered in our geo-restrictions guide.
Two-factor authentication (2FA)
A login step requiring a second form of verification beyond a password, often triggered more frequently when a login's location or IP address doesn't match its usual pattern.
IP allowlisting
A security practice where a system only accepts connections from a pre-approved list of IP addresses, commonly used by companies to restrict internal tools to known office or VPN egress addresses. See FlashedRouter for Business.

Get FlashedRouter — $349.99