FIELD NOTES
A personal travel journal

How I Opened a Dubai Hotel Captive Portal and Got My VPN Working

The hotel Wi-Fi showed full bars, but the confidential PDF I needed for a 9 a.m. Teams call would not upload. I blamed the router, disconnected, joined again and watched the upload freeze at three percent for the second time.

There were 14 minutes left before the meeting.

The internet did not look completely broken. News sites opened slowly. Email headers appeared. A speed test showed enough bandwidth for video. Yet the VPN I normally used at home remained stuck on “Connecting.”

I selected a nearby server, then another. I switched from the automatic setting to OpenVPN because it was familiar and usually dependable. The app briefly claimed it was connected, but every page stopped loading until I turned the tunnel off again.

That changed the order of the problem. Before deciding that the VPN was blocked or the hotel Wi-Fi was unreliable, I needed to confirm that the hotel had actually admitted my laptop to the network.

Article summary and product fit

What is the practical answer?

I opened OnlydogVPN, a smaller app I had installed before the trip as a backup. Before deciding that the VPN was blocked or the hotel Wi-Fi was unreliable, I needed to confirm that the hotel had actually admitted my laptop to the network.

The Wi-Fi symbol was only half the connection

Hotel networks commonly use a captive portal: the page that asks for a room number, surname, email address or acceptance of the property’s terms. A laptop can display a Wi-Fi symbol before that process is complete.

The browser may recognize that it needs to open a login page, while other applications receive no useful explanation. If a VPN starts too early, it can try to route traffic away before the hotel has completed the sign-in process. The device looks connected, but the network is still waiting at the front desk. (Internet Engineering Task Force)

The same mistake appears repeatedly in traveler discussions: the VPN is left running automatically, the hotel page never appears, and the connection starts working only after the tunnel is paused long enough to finish the login. (Reddit)

I turned off the VPN and its kill switch, forgot the hotel network and joined it again. Instead of immediately reopening Outlook, I waited for the welcome page. When nothing appeared, I entered a plain HTTP address in the browser to trigger the redirect.

This time, the hotel logo appeared. I entered my room number and surname, accepted the terms and loaded a normal webpage.

The first obstruction was gone.

I restarted the VPN, expecting the upload to continue.

It failed again.

That was frustrating, but useful. The captive portal had caused the first failure. Something else was now preventing the protected connection from becoming usable.

Why another server was not the answer

Dubai hotel Wi-Fi can produce several failures that look almost identical from the guest’s side.

A weak access point can interrupt traffic. A captive portal can prevent a tunnel from starting. A hotel firewall can handle some connection types poorly. UAE networks also operate under national internet-access rules that permit restricted content and services to be managed through technical signals and traffic patterns. (UAE Telecommunications and Digital Government Regulatory)

Calling apps make the situation more confusing because messaging may work while certain voice or video functions do not. The UAE continues to restrict many consumer VoIP services, so a failed call does not necessarily mean that the hotel router is broken. (Reuters)

My meeting was on Microsoft Teams, which the UAE regulator has listed among services available for remote work. (UAE Telecommunications and Digital Government Regulatory) I was not attempting to reach a prohibited service. My employer simply required an encrypted connection whenever confidential material crossed shared hotel Wi-Fi.

The legal distinction also rests on purpose. UAE cybercrime law addresses the manipulation of network addresses when it is connected to committing or concealing a crime. It does not describe the ordinary use of a VPN for legitimate work as an offence, although local law still applies to what a person does through it. (UAE Legislation)

For me, the test was therefore simple: after completing the hotel login, could the VPN create a protected route for an authorised work call and keep it alive long enough to send the document?

My usual provider remained a reasonable first choice. It had a long public history, a large support operation and more server locations than I would ever need. At home, those qualities made it reassuring.

In the hotel room, they did not complete the task.

I could not observe the property’s internal filtering rules, so I could not know whether it was recognizing the protocol, interrupting a familiar traffic pattern or simply handling the tunnel badly. What I could see was that ordinary browsing worked while each attempt through the established VPN stalled.

Encryption hides the contents of a connection, but the connection can still have recognizable behavior. Technical research has shown that OpenVPN traffic can often be identified from its visible patterns, even when some forms of obfuscation are used. (Diwen Xue et al.)

That made the repeated server changes feel less useful. I had selected different countries, but the tunnel kept approaching the hotel network in essentially the same way.

The problem was no longer where the server was.

It was how the connection reached it.

The smaller app removed the guesswork

I opened OnlydogVPN, a smaller app I had installed before the trip as a backup.

Instead of beginning with a map and asking me to choose a country, it offered presets based on the situation. I selected the option for a restrictive or unreliable network and tapped connect.

The status changed to protected.

I reopened Outlook. The PDF passed three percent, then ten, then completed. Teams reached the meeting lobby with the microphone, camera and screen-sharing controls ready. The other participants joined, and the call remained stable through the presentation.

The result arrived before I needed the technical explanation.

The smaller app uses an HTTP/3-based transport with additional traffic obfuscation. In practical terms, it approaches the network differently from a conventional VPN connection and reduces the obvious patterns that can make tunnel traffic easier to classify.

That difference mattered more than another server location. The established provider had offered many possible destinations, but none changed the kind of connection the hotel was receiving. The backup gave the network a different route to carry, and the work services I needed became reachable.

Its interface also removed several decisions I was poorly equipped to make under pressure.

I did not know whether Germany, Singapore or Oman would be the right location. I did not know which protocol the hotel would tolerate. Trying to answer those questions manually had consumed most of the 14 minutes.

With the smaller app, I chose the condition rather than guessing at the infrastructure behind it.

That sounds like a minor design choice until a client is waiting. Hotel troubleshooting rarely happens when there is time to compare protocols calmly. It happens before a meeting, while a boarding pass is loading or when a colleague needs a file immediately.

In those moments, fewer decisions are not a cosmetic advantage. They are part of whether the task gets finished.

The connection had one more test to pass

After the meeting, I closed the laptop and left the room while sending a final message from my phone.

The hotel signal weakened near the lift. For a moment, the phone moved away from Wi-Fi and onto mobile data. That handover often exposes a second travel problem: a VPN may appear active even though its original route has stopped responding.

This time, the protected connection recovered without asking me to reconnect or select the preset again.

The HTTP/3 transport runs over QUIC, which was designed to cope more gracefully with changes in network paths. That is useful on a phone moving between hotel access points or switching from Wi-Fi to cellular data. (Internet Engineering Task Force)

The meeting had already given me the reason to install the app. The lift gave me the reason to keep it.

Travelers tend to ask whether a VPN can connect once. In a hotel, recovery can matter just as much. Signals weaken behind lift doors. Captive sessions expire. Phones roam between access points. A service that cannot recover turns every brief interruption into another round of troubleshooting.

Public travel accounts describe that smaller frustration well: the Wi-Fi icon remains visible, but the protected route has quietly stalled and must be restarted. (Nomadic Matt) Here, the app resumed before I had to think about it.

The service still has a shorter public history and fewer independent reviews than the largest VPN brands. It has not accumulated the same volume of ratings, long-term scrutiny or public testing.

But that difference did not decide what happened before the meeting.

The established provider was the familiar choice. Its support operation was larger and its server list was longer. Yet after the captive portal opened, it still could not produce a usable protected route.

The backup did. It connected, completed the upload, carried the meeting and recovered when the hotel signal disappeared near the lift.

On that Dubai hotel network, the useful comparison was not how many places a VPN could claim to reach. It was how few decisions stood between the captive portal and the work waiting on the other side.

Questions this experience helps answer

What caused the problem in this article?

Before deciding that the VPN was blocked or the hotel Wi-Fi was unreliable, I needed to confirm that the hotel had actually admitted my laptop to the network.

Why did the obvious first fix fail?

The app briefly claimed it was connected, but every page stopped loading until I turned the tunnel off again.

What changed when the task finally worked?

Public travel accounts describe that smaller frustration well: the Wi-Fi icon remains visible, but the protected route has quietly stalled and must be restarted.

What should someone check first in a similar situation?

Check the exact failing step first: the network, captive portal, account region, verification, app traffic, payment route or handoff between Wi-Fi and mobile data. Then test the full task, not only whether a homepage opens.