LeoTun

Internet Freedom Alliance

2026-10 sing-box upgraded: old configs no longer work. Sign in and re-scan the code on the sing-box page, once per device.
2026-08 We are now LeoTun (formerly RoyalShield). Your account, servers, pricing and setup are unchanged — no action needed. The name shown on payment pages and in emails is updated accordingly.
2026-08 Private network is now live: no server picking, no config changes — your devices connect directly for a faster, steadier link. Find it under "Private" in the top nav.
2026-09 New router firmware is out — please update. OpenVPN is back: download a profile, import it, and connect in one tap.
2026-09 Every page now ends with related guides — usage basics, common problems and fixes, and typical scenarios — to help you understand the VPN system and use it more smoothly.
2026-09 Hong Kong is back. For ChatGPT and Claude, choose a Southeast Asia or Japan line. Iceland has been retired.
2026-09 Price update, bigger discounts: Family 8 USD/month, Enterprise 16 USD/month; discounts start sooner (Family from 6 months, Enterprise from 3 months). Time you've already paid for — including annual plans — is not affected.
2026-09 New Personal plan: 4 USD/month for 2 devices, routers included — everyone should have a VPN router.
HomeRouterOpenVPNCiscoHiddifyProxyPrivateContact

Related guides

Flashing the Router Firmware: From Stock to Ours, Step by Step

Updated 2026-10-05

You have a router that still runs its stock system and want it on our firmware: sign in and click Start Building, download it 3 to 5 minutes later, extract the zip, upload the file under Local Upgrade in the router's stock admin panel with Keep Settings switched off, and click Install. Then move your computer and phone to the new Wi‑Fi (name and password are both www.anyfq.com). As long as your account is active, the router connects by itself within 10 minutes — no sign-in needed. There is a video of the whole process; it uses a GL.iNet GL‑MT3000, and other models follow the same steps.

Watch the video first

A two-and-a-half-minute video walks through the whole process. You can open it from the first link under Related pages at the end of this guide, or from the Video Tutorial button under "How to Flash Firmware" on the Router page. Chinese pages get Chinese narration, every other language gets English.

Before you start

  • Check that your model is supported: sign in, open the Router section and find the model by brand. The hardware revision (v1, v2 and so on) has to match too.
  • Your account must be active. Personal, Family and Enterprise plans can all use a router.
  • Have a network cable ready for the router's WAN port, which goes to your modem or upstream router. While flashing, connect your computer to the router by cable as well if you can; it is steadier than Wi‑Fi.
  • Download the stock firmware for your model from the manufacturer's site and keep it, in case you ever want to go back.

Step 1: Build the firmware on the website

  • The firmware is made for your account on the spot, which is why it takes a few minutes. At busy times the build may wait in a queue; the page says so. Just wait — there is no need to click again.
  • The firmware's interface language is the language you were using on the website when you clicked build. Use the site in English and the router's admin pages are in English; for another language, switch the site first and then build.
  • The download link is valid for one day. If it expires, build again.
  1. Sign in and click Router in the navigation bar.
  2. Find your model and click Firmware, or scroll down to Build Router Firmware and pick the model from the brand list.
  3. Click Start Building and wait 3 to 5 minutes. The entry under Recent Builds changes to Completed, and you get an email.

Step 2: Download and extract

  • GL.iNet stock system (the case in the video): use the file ending in sysupgrade.bin.
  • Another brand's stock system: use the file with factory in its name.
  • Already on our firmware and upgrading: use the file with sysupgrade in its name.
  • If the zip contains only one file, that is the one.
  • This firmware is for you alone. It carries your account details so the router can sign in by itself after flashing. Do not send the file to anyone else or share it publicly.
  1. Under Recent Builds, click Download. You get a zip file.
  2. Open your Downloads folder and extract it.
  3. The extracted folder contains the firmware file.

Step 3: Flash it from the stock admin panel

GL.iNet is the example here. On other brands, look for Firmware Upgrade, System Upgrade or Local Upgrade in the stock admin panel; the procedure is the same.

  1. Connect your computer to the router, open the stock admin panel in a browser (192.168.8.1 on GL.iNet) and sign in with the admin password.
  2. In the left menu open System, then Upgrade, and switch to Firmware Local Upgrade.
  3. Click the upload area, pick the firmware file you extracted, and wait until verification shows Pass.
  4. Switch Keep Settings off. This is the step people miss most often: the two systems do not share a configuration format, and keeping the old settings causes all sorts of odd problems.
  5. Click Install. The page changes to Upgrading and rebooting. It takes two to three minutes; do not unplug the router or close the page meanwhile.

Step 4: Join the new Wi‑Fi

It is normal for the old page to stop loading once the progress finishes: the router now runs a different system, and both its address and its Wi‑Fi have changed.

The new Wi‑Fi name is www.anyfq.com and the password is also www.anyfq.com. Computers and phones have to switch to this Wi‑Fi before they can get online or open the router's admin page. A computer connected by cable does not need to switch.

The new admin address is 192.168.11.1 — type it in full, including the http part at the start.

Step 5: Wait for it to connect by itself

No sign-in, no region to pick. As long as your account is active, the router connects by itself within 10 minutes. From then on every device on this Wi‑Fi goes through the service automatically — TVs, set-top boxes and game consoles included.

Two things worth doing afterwards. Change the Wi‑Fi password and the admin password in the admin page, since the defaults are public. And plug in the network cable so the router can go online once: it has to work out which region it is in before it raises the wireless power to the level allowed there, so a weak signal right after flashing is normal.

Replacing an old router: unbind first

An account is bound to one router at a time. If your account was used on another router before, sign in, open the Router section, and under the Build Router Firmware heading you will see the model that is Bound, with Unbind next to it. Click Unbind. You can do this even if the old router is broken or not at hand.

There is nothing to do on the new router: it connects automatically and is bound to your account. Flashing the new router before unbinding works too; it connects by itself once you unbind.

If your account expires

After expiry the router stops routing through the service, while your home network carries on as usual. Once you renew, the router recovers by itself — no need to sign in again or re-flash.

It did not connect by itself: check in this order

  1. Is the broadband working? From a device on the router, open any ordinary website. If that fails, check the cable in the WAN port and the modem.
  2. Has the account expired? Sign in on the website and check the expiry date. After renewing, wait a few minutes.
  3. Is the account still bound to the old router? In the Router section, look at the bound model. If it is not this router, click Unbind.
  4. Restart the router once: unplug it, wait ten seconds, plug it back in and give it two to three minutes.
  5. Sign in manually: open 192.168.11.1 and log in to the router with username root and password www.anyfq.com. Then go to Services, then VPN, enter your account email and password, and save.

FAQ

How long does a firmware build take?

3 to 5 minutes. The firmware is built for your account on the spot. At busy times it may wait in a queue; the page tells you, and you do not need to click again. You get an email when it is ready.

I cannot find the router's Wi‑Fi after flashing.

The Wi‑Fi name has changed: the new name and password are both www.anyfq.com. Switch your computer or phone to it. The admin address has changed as well, to 192.168.11.1.

Do I need to sign in on the router after flashing?

No. The firmware is built for your account, and with an active account the router connects by itself within 10 minutes. If it has not connected after ten minutes or so, go through the checklist in this guide.

The admin pages came out in the wrong language. How do I change it?

The firmware language is the website language at the moment you clicked build. Switch the site to the language you want, then build, download and flash once more.

I bought a new router. What about the old one?

Click Unbind in the Router section of the website and the new router connects automatically. You can unbind even if the old router is not at hand.

After my account expires and I renew, do I have to flash again?

No. Once you renew, the router recovers by itself, with no sign-in and no re-flash.

Can a friend use my firmware file on their router?

No. The file carries your account details, and an account is bound to one router at a time. Your friend can build one with their own account.

What if the flash goes wrong?

Most routers have a recovery mode: unplug the power, hold the reset button while plugging it back in, keep holding for a few seconds, connect a computer by cable and upload the stock firmware following the manufacturer's instructions. That is why you save a copy of the stock firmware beforehand.

Related pages

  • Video: flashing the router firmware, start to finish →
  • Router page: models, firmware builds and purchase →
  • What the router firmware does →
  • How split routing works on a VPN router →
  • Choosing a VPN router →
  • Tencent Video or iQIYI Blocked Abroad? Fix It in 5 Steps →
  • How to Choose a China VPN →
  • Does Cisco AnyConnect Work in China? →
  • How to Import a Hiddify Subscription →
  • China VPN for Students Abroad →
  • What a Web Proxy Is and When to Use One →
  • Free or Paid China VPN? →
  • What the Private Network (Tailscale) Is →
  • How to Use OpenVPN and When to Choose It →
  • How to Reach Us and Never Lose Contact →
  • Where We Beat Other VPNs →
  • How to Recognise a Risky VPN App →
  • Which connection method fits which scenario →
  • Which Region Is Fastest from Inside China →
  • For the TV and the Grandparents at Home →
  • Watching Home Cameras and a NAS in China from Abroad →
  • What to Do When iOS Cannot Install an App →
  • Cannot Connect, Slow, or Dropping: What to Check →
  • Setting Up for Business Trips and Travel →
  • On a Company Laptop: No Admin Rights, Corporate VPN Already On →
  • Many Devices, One Setup, No Redo on a New Phone →
  • Routing a Synology or QNAP NAS →
  • Routing a Linux Server and Command-Line Tools →
  • “Damaged” on a Mac, and how to verify the installer →
  • Using RustDesk for remote help →
  • What macOS's Network Extension Approval Is →
  • Not enough device slots? Temporary vs long-term fixes →
  • Dropbox and other apps want an HTTP / SOCKS proxy — what to do →
  • How to Get Good Answers from the AI Support →
  • How to manually uninstall the Cisco client on a Mac →
  • Cisco error “remote user is disabled” →

Flags by Twemoji (CC-BY 4.0)·IP Geolocation by DB-IP

AboutGuidesContact

© 2007–2026LeoTun