Shadowsocks+ KILLSWITCH

how do you guys configure a killswitch? I'm struggling a lot about it, get ip block twice a day

Disable forward LAN->WAN(NAT) so that it does not communicate without VPN?

do you mean like firewall? I'll give it a go, see what happens. thanks anyways

"Killswitch" means that your LAN will never use the Internet directly. In other words, if the tunnel fails, "killswitch" functionality means that LAN computers will have no Internet access. This is desirable in use cases where you want to make sure the Internet provider never is able to monitor your usage or attempted usage, for example when the provider is the government.

But, it kind of sounds like that is not what you're looking for. If the tunnel fails, killswitch will be no help to restore it.

Shadowsocks is a proxying system for http only, it is not a general VPN. It is still possible to killswitch LAN users from accessing the ISP by not allowing the lan->wan forwarding which is enabled by default.

Tried killswitch didnt work. I found out I got DNS leak (using ShadowsocksR+) any thoughts on how to fix it?