SSL VPN from macOS to Vigor Router

This article demonstrates how to set up the Vigor Router as an SSL VPN gateway to allow Internet clients, especially macOS, to access the local network by an SSL VPN tunnel. In the article, we show the configuration required for the router, as well as how to start the SSL VPN connection from a mac using Smart VPN Client, the free VPN client app provided by DrayTek.

Setup on Vigor Router

1. Make sure the router is connected to the Internet and has a public WAN IP address so that VPN clients on the Internet can reach it.

2. At VPN and Remote Access >> Remote Access Control, make sure "SSL VPN Service" is enabled.

screenshot of DrayOS VPN Access Control

3. Create user profiles for SSL VPN clients. Go to VPN and Remote Access >> Remote Dial-in User. add a profile as follows:

  1. Check "SSL Tunnel" for Allowed Dial-In Type.
  2. Enter Username and Password.
  3. Click OK to save the profile.
a screenshot of DrayOS Remote Dial-in User profile

1. Make sure the router is connected to the Internet and has a public WAN IP address so that VPN clients on the Internet can reach it.

2. At VPN and Remote Access >> Remote Access Control, make sure "SSL VPN Service" is enabled.

a screenshot of Vigor3900 Remote Access Control

3. If SSL VPN port and HTTPS port are the same, make sure HTTPS Allow is enabled at System Maintenance >> Access Control.

a screenshot of Vigor3900 Access Control

4. Create user profiles for SSL VPN clients. Go to User Management >> User Profile, and click Add.

  1. Check Enable
  2. Type Username and Password
  3. At PPTP/L2TP SSL Server, select "Enable" for SSL Tunnel
  4. Click Apply to save the profile.
a screenshot of Vigor3900 User Profile
VPN Setup on macOS 

1. Get the latest SmartVPN App for MacOS at here. Start the App, click the setting icon then select "Basic" for Certificate verify level. (Read this article to learn more about Server Authentication.)   

a screenshot of SmartVPN for macOS

2. Click '+' to create a VPN profile

  1. Give a profile name
  2. Type Vigor Router's IP or domain name at Server
  3. Type SSL VPN port, which is 443 by default
  4. Type the Username
  5. Click Authentication Settings
a screenshot of SmartVPN for macOS

3. Choose "Password" for User Authentication and type the password. Then, click OK.

a screenshot of SmartVPN for macOS

4. (Optional) When VPN client is allowed to access other subnet(s) on the server, we can go to Advanced... >> More Routes, then click '+' to add a new route.

a screenshot of SmartVPN for macOS

5. Click Connect and allow the access to the required information.

a screenshot of SmartVPN for macOS a screenshot of SmartVPN for macOS

6. After VPN, we can see the connection statistics like this.

a screenshot of SmartVPN for macOS

Published On: Jul 20, 2016

Was this helpful?   

book icon

Related Articles