MikroTik is now on ProVM.
You can deploy a full MikroTik Cloud Hosted Router (CHR) on a Doprax VM in under a minute. Same RouterOS you'd run on a physical MikroTik box, running in the cloud.
What you can do with it:
→ Firewall for your cloud servers
→ VPN server (WireGuard, OpenVPN, L2TP, IPsec)
→ Bandwidth management and traffic shaping
→ HTTP proxy with domain filtering
→ Route traffic between sites
Pick MikroTik as the image source when you create a ProVM. Version 7.17, available now.
One thing to know: CHR's free license caps speed at 1 Mbps. Grab the 60-day trial or a P1 license from your MikroTik.com account to unlock full throughput. We'll have a setup guide up shortly.
Full guide: https://www.doprax.com/docs/how-to-deploy-a-mikrotik-cloud-hosted-router-on-a-doprax-vm
You can deploy a full MikroTik Cloud Hosted Router (CHR) on a Doprax VM in under a minute. Same RouterOS you'd run on a physical MikroTik box, running in the cloud.
What you can do with it:
→ Firewall for your cloud servers
→ VPN server (WireGuard, OpenVPN, L2TP, IPsec)
→ Bandwidth management and traffic shaping
→ HTTP proxy with domain filtering
→ Route traffic between sites
Pick MikroTik as the image source when you create a ProVM. Version 7.17, available now.
One thing to know: CHR's free license caps speed at 1 Mbps. Grab the 60-day trial or a P1 license from your MikroTik.com account to unlock full throughput. We'll have a setup guide up shortly.
Full guide: https://www.doprax.com/docs/how-to-deploy-a-mikrotik-cloud-hosted-router-on-a-doprax-vm
It’s official: Hetzner prices are up to 36% higher now. The good news: ProVM prices remain the same, so now is a good time to switch to ProVM.
Read more here: https://www.doprax.com/blog/hetzner-just-raised-prices-by-up-to-36-provm-didnt
PS: We’re currently syncing our system against the new Hetzner prices, so for a short time you won’t see “Hetzner” in the list of providers when creating a new VM. Updates coming up!
Read more here: https://www.doprax.com/blog/hetzner-just-raised-prices-by-up-to-36-provm-didnt
PS: We’re currently syncing our system against the new Hetzner prices, so for a short time you won’t see “Hetzner” in the list of providers when creating a new VM. Updates coming up!
We’re always working on improving our systems and your experience. The most valuable feedback comes from our users, so we want to know what you think. What’s missing, what would you like to improve?
Take a look at our anonymous survey (you can reply in any language): https://docs.google.com/forms/d/e/1FAIpQLScSlPQl7Agr-NsnoUP9UqQefi9IN7jxxl_u1jro3LbVy9guEQ/viewform
Take a look at our anonymous survey (you can reply in any language): https://docs.google.com/forms/d/e/1FAIpQLScSlPQl7Agr-NsnoUP9UqQefi9IN7jxxl_u1jro3LbVy9guEQ/viewform
We’ve launched the ProVM Turbo tier! ⚡️
3Gbps port speed, advanced 2026 CPU and high speed RAM / disk.
You can spin up a more powerful ProVM now via your Doprax dashboard:
https://www.doprax.com/v/virtual-machines
3Gbps port speed, advanced 2026 CPU and high speed RAM / disk.
You can spin up a more powerful ProVM now via your Doprax dashboard:
https://www.doprax.com/v/virtual-machines
Psiphon Conduit can be super helpful when you need reliable access to the open web. The nodes are run by volunteers and they can keep thousands of users connected simultaneously.
Each node is just a VPS running a Docker container, forwarding encrypted packets.
Here's how to run one on a ProVM:
https://www.doprax.com/docs/run-a-psiphon-conduit-node-on-a-doprax-provm
Each node is just a VPS running a Docker container, forwarding encrypted packets.
Here's how to run one on a ProVM:
https://www.doprax.com/docs/run-a-psiphon-conduit-node-on-a-doprax-provm
3x-ui or Marzban? People argue features, but those barely differ.
Both run on Xray-core, both do VLESS and Reality, both give you a dashboard, traffic stats, and a Telegram bot.
The real question is: how many users are you serving?
One server and a handful of users, run 3x-ui. It's a single Go binary, light on memory, up in minutes, and simple enough that you won't fight it.
Many users, or servers in more than one location, run Marzban. Real database, full API, and one panel that controls multiple nodes, so a user connects through any of them on the same subscription link.
That's the whole decision. Small and simple, 3x-ui. Large and multi-server, Marzban.
Full breakdown, including where 3x-ui starts to strain and why: https://www.doprax.com/blog/3x-ui-or-marzban-pick-by-how-many-servers-you-run
Both run on Xray-core, both do VLESS and Reality, both give you a dashboard, traffic stats, and a Telegram bot.
The real question is: how many users are you serving?
One server and a handful of users, run 3x-ui. It's a single Go binary, light on memory, up in minutes, and simple enough that you won't fight it.
Many users, or servers in more than one location, run Marzban. Real database, full API, and one panel that controls multiple nodes, so a user connects through any of them on the same subscription link.
That's the whole decision. Small and simple, 3x-ui. Large and multi-server, Marzban.
Full breakdown, including where 3x-ui starts to strain and why: https://www.doprax.com/blog/3x-ui-or-marzban-pick-by-how-many-servers-you-run
If you connect your locally running Claude Code to a Doprax VM, you can use plain language to control any processes running on it. For example:
→ "Add a WireGuard peer for my phone" and get the config back in the same message.
→ "Check how many users are live on 3x-ui" instead of opening the panel.
→ "Restart the Marzban node and confirm the API's back up" while you do something else.
→ "Something's wrong with nginx, check the logs" instead of grepping through them yourself.
Full walkthrough: https://www.doprax.com/tutorial/use-claude-code-on-your-laptop-to-manage-a-doprax-provm
→ "Add a WireGuard peer for my phone" and get the config back in the same message.
→ "Check how many users are live on 3x-ui" instead of opening the panel.
→ "Restart the Marzban node and confirm the API's back up" while you do something else.
→ "Something's wrong with nginx, check the logs" instead of grepping through them yourself.
Full walkthrough: https://www.doprax.com/tutorial/use-claude-code-on-your-laptop-to-manage-a-doprax-provm
How to spot a fake VPN
Free VPN apps make one promise: your traffic stays private. But can you trust just about any third-party VPN provider?
Running servers costs money. If the app is free and has no published audit, someone else is paying for your data.
Check these five things before you install a VPN app:
1. Is there a real audit from an outside company? Or just a claim?
2. Can you find the company behind the app? A name, an address, a real business?
3. Does the app ask for permissions it doesn't need, like your contacts or location?
4. Does it tell you which protocol it uses (WireGuard, OpenVPN)? Or does it hide behind words like "proprietary encryption"?
5. How many real server locations does it have? Some apps show many countries but use only two or three real servers.
In case of doubt, run your own VPN. Full post here: https://www.doprax.com/blog/how-to-spot-a-fake-vpn
Free VPN apps make one promise: your traffic stays private. But can you trust just about any third-party VPN provider?
Running servers costs money. If the app is free and has no published audit, someone else is paying for your data.
Check these five things before you install a VPN app:
1. Is there a real audit from an outside company? Or just a claim?
2. Can you find the company behind the app? A name, an address, a real business?
3. Does the app ask for permissions it doesn't need, like your contacts or location?
4. Does it tell you which protocol it uses (WireGuard, OpenVPN)? Or does it hide behind words like "proprietary encryption"?
5. How many real server locations does it have? Some apps show many countries but use only two or three real servers.
In case of doubt, run your own VPN. Full post here: https://www.doprax.com/blog/how-to-spot-a-fake-vpn
Good news!
We’ve been improving our infrastructure quality and IP availability. What’s new:
1. We’re doubling down on internal IP monitoring to ensure that any IPs assigned to servers are fully functional.
2. There’s now a full new IP range on Hetzner.
Recent updates have reduced IP-related issues significantly, and we are working closely with our infrastructure partners to further improve reliability and connectivity across all locations.
Next up is ProVM. We're working on more improvements there for consistent performance across all regions (PS: try ProVM Turbo, our new high-end range of VMs).
Read in full: https://www.doprax.com/blog/how-were-improving-ip-quality-across-doprax
Do you have improvement suggestions? Let your voice be heard: https://docs.google.com/forms/d/e/1FAIpQLScSlPQl7Agr-NsnoUP9UqQefi9IN7jxxl_u1jro3LbVy9guEQ/viewform
We’ve been improving our infrastructure quality and IP availability. What’s new:
1. We’re doubling down on internal IP monitoring to ensure that any IPs assigned to servers are fully functional.
2. There’s now a full new IP range on Hetzner.
Recent updates have reduced IP-related issues significantly, and we are working closely with our infrastructure partners to further improve reliability and connectivity across all locations.
Next up is ProVM. We're working on more improvements there for consistent performance across all regions (PS: try ProVM Turbo, our new high-end range of VMs).
Read in full: https://www.doprax.com/blog/how-were-improving-ip-quality-across-doprax
Do you have improvement suggestions? Let your voice be heard: https://docs.google.com/forms/d/e/1FAIpQLScSlPQl7Agr-NsnoUP9UqQefi9IN7jxxl_u1jro3LbVy9guEQ/viewform
Claude Code & Your VM: When It’s Especially Useful
Some server tasks are faster to do by hand. Others are easier if you let Claude Code do them for you.
IIf you run WireGuard, 3x-ui, or Marzban, you'll hit the second case more often than you think:
→ Two inbounds look the same. One works, one doesn't. Instead of checking both by hand, ask Claude Code to compare the configs and the logs.
→ Some WireGuard peers haven't connected in a week, and you didn't notice.
→ Rotating a cert means changing three files and restarting things in the right order. Easy to make a mistake late at night.
This doesn't mean you stop knowing your own setup. Claude Code still shows you every command before it runs. It just saves you from checking three log files by hand, one by one.
See more examples here: https://www.doprax.com/tutorial/claude-code-your-vm-practical-use-cases
Some server tasks are faster to do by hand. Others are easier if you let Claude Code do them for you.
IIf you run WireGuard, 3x-ui, or Marzban, you'll hit the second case more often than you think:
→ Two inbounds look the same. One works, one doesn't. Instead of checking both by hand, ask Claude Code to compare the configs and the logs.
→ Some WireGuard peers haven't connected in a week, and you didn't notice.
→ Rotating a cert means changing three files and restarting things in the right order. Easy to make a mistake late at night.
This doesn't mean you stop knowing your own setup. Claude Code still shows you every command before it runs. It just saves you from checking three log files by hand, one by one.
See more examples here: https://www.doprax.com/tutorial/claude-code-your-vm-practical-use-cases
Running your own V2Ray server is only half the setup. The other half is getting your phone or laptop to actually use it.
If you're on iPhone or Mac, V2Box is a clean way to do that. Scan a QR code from your panel, tap connect, done.
→ Works with VMess, VLESS, and Trojan
→ Supports Reality and uTLS on the client side
→ Merges Wi-Fi and cellular for a more stable connection
→ Can share the tunnel locally over SOCKS5/HTTP for other devices
Full walkthrough here: https://www.doprax.com/tutorial/connect-to-your-provm-v2ray-server-from-iphone-or-mac-with-v2box
If you're on iPhone or Mac, V2Box is a clean way to do that. Scan a QR code from your panel, tap connect, done.
→ Works with VMess, VLESS, and Trojan
→ Supports Reality and uTLS on the client side
→ Merges Wi-Fi and cellular for a more stable connection
→ Can share the tunnel locally over SOCKS5/HTTP for other devices
Full walkthrough here: https://www.doprax.com/tutorial/connect-to-your-provm-v2ray-server-from-iphone-or-mac-with-v2box
Ubuntu, Debian, or Fedora for your next server? The answer depends on what you're optimizing for.
→ Ubuntu Server: widest docs and compatibility, 5 years of support, the safe default
→ Debian Server: leanest base, no Snap, ideal for small VMs running one or two services
→ Fedora Server: newest packages, but a ~13 month clock before you need to upgrade
→ AlmaLinux / Rocky Linux: RHEL-compatible, ~10 year lifecycle, no subscription needed
→ CentOS Stream: a rolling preview of RHEL, built for testing, not for a box you forget about
Full breakdown with a quick decision table: https://www.doprax.com/blog/ubuntu-server-vs-debian-server-vs-fedora-server
→ Ubuntu Server: widest docs and compatibility, 5 years of support, the safe default
→ Debian Server: leanest base, no Snap, ideal for small VMs running one or two services
→ Fedora Server: newest packages, but a ~13 month clock before you need to upgrade
→ AlmaLinux / Rocky Linux: RHEL-compatible, ~10 year lifecycle, no subscription needed
→ CentOS Stream: a rolling preview of RHEL, built for testing, not for a box you forget about
Full breakdown with a quick decision table: https://www.doprax.com/blog/ubuntu-server-vs-debian-server-vs-fedora-server
Cloudflare launched a new product yesterday. It's called Cloudflare Wallets, and it's built for AI agents (not people).
The idea: AI agents need a way to pay for things on their own. An API call, a piece of data, access to gated content. Right now an agent hits a login page built for humans and just stops. Cloudflare wants to fix that with wallets agents can use directly.
Two wallet types exist. Account Wallets are for people and organizations. Virtual Wallets are for agents, and they run through API keys. Account owners set the limits: spending caps, an allow list of merchants, a max transaction size. The agent spends inside those limits without asking for approval every time.
Right now, only handle reservation is live. You can claim a human readable handle at cloudflare.pay. Funding a wallet and letting an agent actually spend from it comes later, no fixed date yet.
Pretty cool, if you ask us.
Source: https://blog.cloudflare.com/wallets/
The idea: AI agents need a way to pay for things on their own. An API call, a piece of data, access to gated content. Right now an agent hits a login page built for humans and just stops. Cloudflare wants to fix that with wallets agents can use directly.
Two wallet types exist. Account Wallets are for people and organizations. Virtual Wallets are for agents, and they run through API keys. Account owners set the limits: spending caps, an allow list of merchants, a max transaction size. The agent spends inside those limits without asking for approval every time.
Right now, only handle reservation is live. You can claim a human readable handle at cloudflare.pay. Funding a wallet and letting an agent actually spend from it comes later, no fixed date yet.
Pretty cool, if you ask us.
Source: https://blog.cloudflare.com/wallets/
You can have AI for free.
There’s this Github repo which lists all the free LLM APIs (for example free tiers of models like Gemini). If you ever wanted to experiment with agents or automated workflows, you don’t have to spend anything on that.
Read more in our blog: https://www.doprax.com/blog/the-free-tier-llm-api-is-the-cheapest-way-to-run-an-agent
There’s this Github repo which lists all the free LLM APIs (for example free tiers of models like Gemini). If you ever wanted to experiment with agents or automated workflows, you don’t have to spend anything on that.
Read more in our blog: https://www.doprax.com/blog/the-free-tier-llm-api-is-the-cheapest-way-to-run-an-agent
The moment you start a new server, bots can (and will) discover and scan it. Most of the attacks are lazy: the bots are looking for password logins and default admin accounts.
Do these two things to protect yourself:
→ SSH keys instead of passwords. A bot can guess a password. It cannot brute-force a key.
→ A normal user with sudo instead of root for everything. One compromised session shouldn't hand over the whole machine.
Keep your system up to date to prevent bugs from being exploited, run a firewall, and let fail2ban ban the repeat knockers.
Full 6-step walkthrough with every command: https://www.doprax.com/tutorial/how-to-secure-a-new-linux-server-in-6-steps
Do these two things to protect yourself:
→ SSH keys instead of passwords. A bot can guess a password. It cannot brute-force a key.
→ A normal user with sudo instead of root for everything. One compromised session shouldn't hand over the whole machine.
Keep your system up to date to prevent bugs from being exploited, run a firewall, and let fail2ban ban the repeat knockers.
Full 6-step walkthrough with every command: https://www.doprax.com/tutorial/how-to-secure-a-new-linux-server-in-6-steps
5 Commands to Check a New VPS
You just got SSH access to a new server. Before you install anything, spend two minutes confirming you got the configuration you need:
1. Check the OS image you actually got (cat /etc/os-release)
2. Confirm the specs (nproc, free -h; df -h)
3. Look at your IP addresses (ip -4 addr show; ip -6 addr show)
4. See what is already listening (ss -tulpn)
5. Test disk write speed (dd if=/dev/zero of=/tmp/test bs=1M count=1024 oflag=dsync; rm /tmp/test)
Full tutorial here: https://www.doprax.com/tutorial/5-commands-to-check-a-new-vps
You just got SSH access to a new server. Before you install anything, spend two minutes confirming you got the configuration you need:
1. Check the OS image you actually got (cat /etc/os-release)
2. Confirm the specs (nproc, free -h; df -h)
3. Look at your IP addresses (ip -4 addr show; ip -6 addr show)
4. See what is already listening (ss -tulpn)
5. Test disk write speed (dd if=/dev/zero of=/tmp/test bs=1M count=1024 oflag=dsync; rm /tmp/test)
Full tutorial here: https://www.doprax.com/tutorial/5-commands-to-check-a-new-vps