Skip to content

Commit 8a06d6d

Browse files
committed
Update docs
- Add/Update client configuration instructions for macOS 13 (Ventura) and newer. Ref: hwdsl2#1421.
1 parent f9a5a5a commit 8a06d6d

4 files changed

Lines changed: 112 additions & 37 deletions

File tree

docs/clients-xauth-zh.md

Lines changed: 26 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ IPsec/XAuth 模式也称为 "Cisco IPsec"。该模式通常能够比 IPsec/L2TP
99
---
1010
* 平台名称
1111
* [Windows](#windows)
12-
* [OS X (macOS)](#os-x)
12+
* [OS X (macOS)](#os-x-macos)
1313
* [Android](#android)
1414
* [iOS (iPhone/iPad)](#ios)
1515
* [Linux](#linux)
@@ -38,7 +38,30 @@ IPsec/XAuth 模式也称为 "Cisco IPsec"。该模式通常能够比 IPsec/L2TP
3838

3939
如果在连接过程中遇到错误,请参见 [故障排除](clients-zh.md#ikev1-故障排除)
4040

41-
## OS X
41+
## OS X (macOS)
42+
43+
### macOS 13 (Ventura) and newer
44+
45+
> 你也可以使用 [IKEv2](ikev2-howto-zh.md)(推荐)或者 [IPsec/L2TP](clients-zh.md) 模式连接。
46+
47+
1. 打开系统设置并转到网络部分。
48+
1. 在窗口右方单击 **VPN**
49+
1.**添加VPN配置** 下拉菜单选择 **Cisco IPSec**
50+
1. 在打开的窗口中的 **显示名称** 字段中输入任意内容。
51+
1.**服务器地址** 字段中输入`你的 VPN 服务器 IP`
52+
1.**帐户名称** 字段中输入`你的 VPN 用户名`
53+
1.**密码** 字段中输入`你的 VPN 密码`
54+
1.**类型** 下拉菜单选择 **共享密钥**
55+
1.**共享密钥** 字段中输入`你的 VPN IPsec PSK`
56+
1. 保持 **群组名称** 字段空白。
57+
1. 单击 **创建** 保存 VPN 连接信息。
58+
1. 如果要在菜单栏显示 VPN 状态并快速访问相关设置,你可以转到系统设置的控制中心部分,滚动到页面底部并在 **VPN** 下拉菜单选择 **在菜单栏中显示**
59+
60+
要连接到 VPN:使用菜单栏中的图标,或者打开系统设置的 **VPN** 部分并启用 VPN 连接。最后你可以到 [这里](https://www.ipchicken.com) 检测你的 IP 地址,应该显示为`你的 VPN 服务器 IP`
61+
62+
如果在连接过程中遇到错误,请参见 [故障排除](clients-zh.md#ikev1-故障排除)
63+
64+
### macOS 12 (Monterey) and older
4265

4366
> 你也可以使用 [IKEv2](ikev2-howto-zh.md)(推荐)或者 [IPsec/L2TP](clients-zh.md) 模式连接。
4467
@@ -56,7 +79,7 @@ IPsec/XAuth 模式也称为 "Cisco IPsec"。该模式通常能够比 IPsec/L2TP
5679
1. 保持 **群组名称** 字段空白。
5780
1. 单击 ****
5881
1. 选中 **在菜单栏中显示 VPN 状态** 复选框。
59-
1. 单击 **应用** 保存VPN连接信息
82+
1. 单击 **应用** 保存 VPN 连接信息
6083

6184
要连接到 VPN:使用菜单栏中的图标,或者打开系统偏好设置的网络部分,选择 VPN 并单击 **连接**。最后你可以到 [这里](https://www.ipchicken.com) 检测你的 IP 地址,应该显示为`你的 VPN 服务器 IP`
6285

docs/clients-xauth.md

Lines changed: 25 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ IPsec/XAuth mode is also called "Cisco IPsec". This mode is generally **faster t
99
---
1010
* Platforms
1111
* [Windows](#windows)
12-
* [OS X (macOS)](#os-x)
12+
* [OS X (macOS)](#os-x-macos)
1313
* [Android](#android)
1414
* [iOS (iPhone/iPad)](#ios)
1515
* [Linux](#linux)
@@ -38,7 +38,30 @@ Once connected, you will see **tunnel enabled** in the VPN Connect status window
3838

3939
If you get an error when trying to connect, see [Troubleshooting](clients.md#ikev1-troubleshooting).
4040

41-
## OS X
41+
## OS X (macOS)
42+
43+
### macOS 13 (Ventura) and newer
44+
45+
> You may also connect using [IKEv2](ikev2-howto.md) (recommended) or [IPsec/L2TP](clients.md) mode.
46+
47+
1. Open **System Settings** and go to the **Network** section.
48+
1. Click **VPN** on the right hand side of the window.
49+
1. Click the **Add VPN Configuration** drop-down menu and select **Cisco IPSec**.
50+
1. In the window that opens, enter anything you like for the **Display name**.
51+
1. Enter `Your VPN Server IP` for the **Server address**.
52+
1. Enter `Your VPN Username` for the **Account name**.
53+
1. Enter `Your VPN Password` for the **Password**.
54+
1. Select **Shared secret** from the **Type** drop-down menu.
55+
1. Enter `Your VPN IPsec PSK` for the **Shared secret**.
56+
1. Leave the **Group name** field blank.
57+
1. Click **Create** to save the VPN configuration.
58+
1. To show VPN status in your menu bar and for shortcut access, go to the **Control Center** section of **System Settings**. Scroll to the bottom and select `Show in Menu Bar` from the **VPN** drop-down menu.
59+
60+
To connect to the VPN: Use the menu bar icon, or go to the **VPN** section of **System Settings** and toggle the switch for your VPN configuration. You can verify that your traffic is being routed properly by [looking up your IP address on Google](https://www.google.com/search?q=my+ip). It should say "Your public IP address is `Your VPN Server IP`".
61+
62+
If you get an error when trying to connect, see [Troubleshooting](clients.md#ikev1-troubleshooting).
63+
64+
### macOS 12 (Monterey) and older
4265

4366
> You may also connect using [IKEv2](ikev2-howto.md) (recommended) or [IPsec/L2TP](clients.md) mode.
4467

docs/clients-zh.md

Lines changed: 31 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -7,7 +7,7 @@
77
---
88
* 平台名称
99
* [Windows](#windows)
10-
* [OS X (macOS)](#os-x)
10+
* [OS X (macOS)](#os-x-macos)
1111
* [Android](#android)
1212
* [iOS (iPhone/iPad)](#ios)
1313
* [Chrome OS (Chromebook)](#chrome-os)
@@ -107,7 +107,34 @@ Add-VpnConnection -Name 'My IPsec VPN' -ServerAddress '你的 VPN 服务器 IP'
107107

108108
如果在连接过程中遇到错误,请参见 [故障排除](#ikev1-故障排除)
109109

110-
## OS X
110+
## OS X (macOS)
111+
112+
### macOS 13 (Ventura) and newer
113+
114+
> 你也可以使用 [IKEv2](ikev2-howto-zh.md)(推荐)或者 [IPsec/XAuth](clients-xauth-zh.md) 模式连接。
115+
116+
1. 打开系统设置并转到网络部分。
117+
1. 在窗口右方单击 **VPN**
118+
1.**添加VPN配置** 下拉菜单选择 **L2TP/IPSec**
119+
1. 在打开的窗口中的 **显示名称** 字段中输入任意内容。
120+
1. 保持 **配置****默认**
121+
1.**服务器地址** 字段中输入`你的 VPN 服务器 IP`
122+
1.**帐户名称** 字段中输入`你的 VPN 用户名`
123+
1.**用户认证** 下拉菜单选择 **密码**
124+
1.**密码** 字段中输入`你的 VPN 密码`
125+
1.**机器认证** 下拉菜单选择 **共享密钥**
126+
1.**共享密钥** 字段中输入`你的 VPN IPsec PSK`
127+
1. 保持 **群组名称** 字段空白。
128+
1. **(重要)** 单击 **选项** 选项卡,并启用 **通过VPN连接发送所有流量**
129+
1. **(重要)** 单击 **TCP/IP** 选项卡,然后在 **配置IPv6** 下拉菜单选择 **仅本地链接**
130+
1. 单击 **创建** 保存 VPN 连接信息。
131+
1. 如果要在菜单栏显示 VPN 状态并快速访问相关设置,你可以转到系统设置的控制中心部分,滚动到页面底部并在 **VPN** 下拉菜单选择 **在菜单栏中显示**
132+
133+
要连接到 VPN:使用菜单栏中的图标,或者打开系统设置的 **VPN** 部分并启用 VPN 连接。最后你可以到 [这里](https://www.ipchicken.com) 检测你的 IP 地址,应该显示为`你的 VPN 服务器 IP`
134+
135+
如果在连接过程中遇到错误,请参见 [故障排除](#ikev1-故障排除)
136+
137+
### macOS 12 (Monterey) and older
111138

112139
> 你也可以使用 [IKEv2](ikev2-howto-zh.md)(推荐)或者 [IPsec/XAuth](clients-xauth-zh.md) 模式连接。
113140
@@ -127,7 +154,7 @@ Add-VpnConnection -Name 'My IPsec VPN' -ServerAddress '你的 VPN 服务器 IP'
127154
1. 选中 **在菜单栏中显示 VPN 状态** 复选框。
128155
1. **(重要)** 单击 **高级** 按钮,并选中 **通过VPN连接发送所有通信** 复选框。
129156
1. **(重要)** 单击 **TCP/IP** 选项卡,并在 **配置IPv6** 部分中选择 **仅本地链接**
130-
1. 单击 **** 关闭高级设置,然后单击 **应用** 保存VPN连接信息
157+
1. 单击 **** 关闭高级设置,然后单击 **应用** 保存 VPN 连接信息
131158

132159
要连接到 VPN:使用菜单栏中的图标,或者打开系统偏好设置的网络部分,选择 VPN 并单击 **连接**。最后你可以到 [这里](https://www.ipchicken.com) 检测你的 IP 地址,应该显示为`你的 VPN 服务器 IP`
133160

@@ -597,7 +624,7 @@ echo 1 > /proc/sys/net/ipv4/ip_no_pmtu_disc
597624

598625
### macOS 通过 VPN 发送通信
599626

600-
OS X (macOS) 用户: 如果可以成功地使用 IPsec/L2TP 模式连接,但是你的公有 IP 没有显示为 `你的 VPN 服务器 IP`,请阅读上面的 [OS X](#os-x) 部分并完成以下步骤。保存 VPN 配置然后重新连接。
627+
OS X (macOS) 用户: 如果可以成功地使用 IPsec/L2TP 模式连接,但是你的公有 IP 没有显示为 `你的 VPN 服务器 IP`,请阅读上面的 [macOS](#os-x-macos) 部分并完成以下步骤。保存 VPN 配置然后重新连接。
601628

602629
1. 单击 **高级** 按钮,并选中 **通过VPN连接发送所有通信** 复选框。
603630
1. 单击 **TCP/IP** 选项卡,并在 **配置IPv6** 部分中选择 **仅本地链接**

docs/clients.md

Lines changed: 30 additions & 28 deletions
Original file line numberDiff line numberDiff line change
@@ -7,7 +7,7 @@ After [setting up your own VPN server](https://github.com/hwdsl2/setup-ipsec-vpn
77
---
88
* Platforms
99
* [Windows](#windows)
10-
* [OS X (macOS)](#os-x)
10+
* [OS X (macOS)](#os-x-macos)
1111
* [Android](#android)
1212
* [iOS (iPhone/iPad)](#ios)
1313
* [Chrome OS (Chromebook)](#chrome-os)
@@ -107,7 +107,34 @@ To connect to the VPN: Click on the wireless/network icon in your system tray, s
107107

108108
If you get an error when trying to connect, see [Troubleshooting](#ikev1-troubleshooting).
109109

110-
## OS X (Pre 13.x Ventura)
110+
## OS X (macOS)
111+
112+
### macOS 13 (Ventura) and newer
113+
114+
> You may also connect using [IKEv2](ikev2-howto.md) (recommended) or [IPsec/XAuth](clients-xauth.md) mode.
115+
116+
1. Open **System Settings** and go to the **Network** section.
117+
1. Click **VPN** on the right hand side of the window.
118+
1. Click the **Add VPN Configuration** drop-down menu and select **L2TP over IPSec**.
119+
1. In the window that opens, enter anything you like for the **Display name**.
120+
1. Leave **Configuration** as **Default**.
121+
1. Enter `Your VPN Server IP` for the **Server address**.
122+
1. Enter `Your VPN Username` for the **Account name**.
123+
1. Select **Password** from the **User authentication** drop-down menu.
124+
1. Enter `Your VPN Password` for the **Password**.
125+
1. Select **Shared secret** from the **Machine authentication** drop-down menu.
126+
1. Enter `Your VPN IPsec PSK` for the **Shared secret**.
127+
1. Leave the **Group name** field blank.
128+
1. **(Important before you click create)** Click the **Options** tab, and make sure the **Send all traffic over VPN connection** toggle is ON.
129+
1. **(Important before you click create)** Click the **TCP/IP** tab, and select **Link-local only** from the **Configure IPv6** drop-down menu.
130+
1. Click **Create** to save the VPN configuration.
131+
1. To show VPN status in your menu bar and for shortcut access, go to the **Control Center** section of **System Settings**. Scroll to the bottom and select `Show in Menu Bar` from the **VPN** drop-down menu.
132+
133+
To connect to the VPN: Use the menu bar icon, or go to the **VPN** section of **System Settings** and toggle the switch for your VPN configuration. You can verify that your traffic is being routed properly by [looking up your IP address on Google](https://www.google.com/search?q=my+ip). It should say "Your public IP address is `Your VPN Server IP`".
134+
135+
If you get an error when trying to connect, see [Troubleshooting](#ikev1-troubleshooting).
136+
137+
### macOS 12 (Monterey) and older
111138

112139
> You may also connect using [IKEv2](ikev2-howto.md) (recommended) or [IPsec/XAuth](clients-xauth.md) mode.
113140
@@ -132,31 +159,6 @@ To connect to the VPN: Use the menu bar icon, or go to the Network section of Sy
132159

133160
If you get an error when trying to connect, see [Troubleshooting](#ikev1-troubleshooting).
134161

135-
## OS X 13.x +
136-
137-
> You may also connect using [IKEv2](ikev2-howto.md) (recommended) or [IPsec/XAuth](clients-xauth.md) mode.
138-
139-
1. Open **System Settings** and go to the **Network** section.
140-
1. Click the **VPN** button on the right hand side of the window.
141-
1. Click the **Add VPN Configuration** drop-down menu and select **L2TP over IPSec**.
142-
1. In the window that opens enter anything you like for the **Display Name**.
143-
1. Leave **Configuration** as `Default`
144-
1. Enter `Your VPN Server IP` for the **Server Address**.
145-
1. Enter `Your VPN Username` for the **Account Name**.
146-
1. For **User Authentication** leave the dropdown selection on `Password`
147-
1. For **Password** enter `Your VPN Password`.
148-
1. For **Machine Authentication**, select the **Shared Secret** from the dropdown
149-
1. For **Shared Secret** enter `Your VPN IPsec PSK`.
150-
1. Leave **Group Name** empty
151-
1. **(Important before you click create)** Click the **Options** tab and make sure the **Send all traffic over VPN connection** toggle is on.
152-
1. **(Important before you click create)** Click the **TCP/IP** tab, and make sure **Link-local only** is selected in the **Configure IPv6** drop down.
153-
1. Click **Create** to save yoiur configuration and close the settings window
154-
1. To show the VPN status in your menu bar and for shortcut access go into **System Settings** and to the **Control Centre** section. Scroll to the bottom and choose `Show in menu bar` from the dropdown.
155-
156-
To connect to the VPN: Use the menu bar icon, or go to the **Network** section of **System Settings**, select the **VPN** and toggle the switch for your VPN configuration. You can verify that your traffic is being routed properly by [looking up your IP address on Google](https://www.google.com/search?q=my+ip). It should say "Your public IP address is `Your VPN Server IP`".
157-
158-
If you get an error when trying to connect, see [Troubleshooting](#ikev1-troubleshooting).
159-
160162
## Android
161163

162164
**Important:** Android users should instead connect using [IKEv2 mode](ikev2-howto.md) (recommended), which is more secure. Android 12+ only supports IKEv2 mode. The native VPN client in Android uses the less secure `modp1024` (DH group 2) for the IPsec/L2TP and IPsec/XAuth ("Cisco IPsec") modes.
@@ -620,7 +622,7 @@ If your Android 6.x or 7.x device cannot connect, try these steps:
620622

621623
### macOS send traffic over VPN
622624

623-
OS X (macOS) users: If you can successfully connect using IPsec/L2TP mode, but your public IP does not show `Your VPN Server IP`, read the [OS X](#os-x) section above and complete these steps. Save VPN configuration and re-connect.
625+
OS X (macOS) users: If you can successfully connect using IPsec/L2TP mode, but your public IP does not show `Your VPN Server IP`, read the [macOS](#os-x-macos) section above and complete these steps. Save VPN configuration and re-connect.
624626

625627
1. Click the **Advanced** button and make sure the **Send all traffic over VPN connection** checkbox is checked.
626628
1. Click the **TCP/IP** tab, and make sure **Link-local only** is selected in the **Configure IPv6** section.

0 commit comments

Comments
 (0)