
If your VPN drops every few minutes in a new country, the VPN app usually isn't the problem — the local network is. Hotels and cafes reset idle connections, mobile networks hop cell towers, and some countries throttle or block specific VPN protocols outright. The fix in most cases: switch your VPN's protocol to WireGuard or OpenVPN over TCP port 443 in the app's settings. Port 443 traffic looks identical to normal HTTPS browsing, so it's far harder for a restrictive network to selectively block. If switching protocol doesn't help, test with the VPN off entirely — if the connection still drops, the problem is the WiFi or mobile signal itself, not the VPN.
At home, your VPN probably stays connected for days. Abroad, it can drop every few minutes — and the instinct is to blame the VPN app, reinstall it, switch providers, or give up on VPN entirely right when you need it most (banking, work logins, avoiding a hotel's snooping network). The VPN app is rarely the actual cause. Four things are usually behind it:
None of these are fixed by reinstalling the app or switching providers — they're fixed by changing how the VPN connects, not which VPN you use.
Before changing any settings, confirm what's actually failing.
Almost every mainstream VPN app (ExpressVPN, NordVPN, ProtonVPN, Surfshark, Mullvad, and your work's corporate VPN client) lets you choose the underlying protocol in settings, even though most people never touch it.
This single change — protocol to WireGuard or OpenVPN/TCP/443 — resolves the large majority of "VPN keeps dropping abroad" cases we see, because it removes the network's ability to tell your VPN traffic apart from ordinary browsing.
Some corporate VPN clients don't expose a protocol setting, and some networks block VPN traffic at the firewall regardless of port. We connect remotely, diagnose whether it's the network, the app, or a router setting on your end, and get you reconnected — including work VPNs with strict IT policies. Flat $79.99 USD, any time zone, No Fix No Fee.
Get help now — $79.99Some environments make VPN stability harder no matter what you do on your end:
If you travel through several of these in one trip, it's worth testing your VPN's protocol settings once at home first, on a network you understand, so you know what "stealth mode" or "protocol switching" actually looks like in your specific app before you need it under pressure. Our guide on hotel and cafe WiFi problems covers the network side of this in more depth.
If you rely on a VPN for work — accessing a company network or client systems from abroad — an unstable connection isn't just annoying, it can look like a security event to your IT team. Our VPN and remote work support service handles both personal and corporate VPN troubleshooting from anywhere.
We help travelers with this from wherever you are:
Most VPN drops abroad come from the local network, not the VPN app. Hotel and cafe routers often reset idle connections after a few minutes, mobile networks switch cell towers and briefly drop the tunnel, and some countries throttle or actively interfere with VPN protocols like OpenVPN on port 1194. Switching your VPN protocol to one that runs over port 443 (the same port as normal HTTPS traffic) fixes most of these drops because that traffic is much harder for a network to selectively block.
WireGuard and OpenVPN over TCP port 443 are the most reliable for travel because they reconnect faster after a network switch and are harder for restrictive networks to identify and block than UDP-based protocols on non-standard ports. If your VPN app has a setting for protocol or port, try WireGuard first, then OpenVPN (TCP, 443) if WireGuard is blocked.
Test by disabling the VPN and browsing normally for ten minutes. If the connection stays stable without the VPN, the network is fine and the issue is specific to the VPN tunnel — usually protocol or port blocking. If the connection drops even without the VPN, the problem is the WiFi or mobile signal itself, and no VPN setting will fix that.
Some hotel and corporate networks block VPN traffic intentionally, often to force guests onto a paid or monitored connection, or as a side effect of aggressive firewall rules. Some countries also restrict VPN protocols at the ISP or state level. In both cases, switching to a VPN protocol disguised as regular HTTPS traffic (port 443) is the most reliable workaround.