Recommend:

Setting up an IPSec VPN to the FRITZ!Repeater in macOS

IPSec allows you to establish VPN connections to the FRITZ!Repeater on your computer with macOS. This way you can access your FRITZ!Repeater and all devices in your home network with your computer over a securely encrypted connection, even when you are away from home.

You can find an overview of additional VPN connection options in our guide VPN with FRITZ!.

Example values used in this guide

In this guide we show you how to connect a computer with macOS 11.0.1 to the FRITZ!Repeater over IPSec VPN. When setting up the connection, replace the values used in this guide with your actual values.

Requirements / Restrictions

  • The FRITZ!Repeater must be configured as a router for internet access via a fiber optic or cable modem. VPN is not available when it is used as an IP client.

    Note:If you are operating the FRITZ!Repeater with a FRITZ!Box, configure the VPN connection in the FRITZ!Box.

Note:All instructions on configuration and settings given in this guide refer to the latest FRITZ!OS for the FRITZ!Repeater.

1 Preparations

Configuring MyFRITZ!

Register the FRITZ!Repeater with MyFRITZ!Net so that it can always be reached on the internet at a fixed MyFRITZ! address:

Setting up MyFRITZ!
  1. Click "Internet" in the user interface of the FRITZ!Repeater.
  2. Click "MyFRITZ! Account" in the "Internet" menu.
  3. Enter your email address in the "Your email address" field.
  4. Click "Apply". Now MyFRITZ!Net sends you an email with the confirmation link to your FRITZ!Repeater.

    Important:If you do not receive an email, the email was classified as unsolicited advertising (spam). In this case, check the spam folder of your email inbox.

  5. Open the email you received from MyFRITZ!Net.
  6. Click the "Register Your FRITZ!Repeater" button in the email.

Adjusting the FRITZ!Repeater's IP network

Both ends of a VPN connection must have IP addresses in different IP networks. As soon as the computer is connected to a router (for example a FRITZ!Box) that uses the same IP network as your FRITZ!Repeater, VPN communication is no longer possible.

Note:All FRITZ!Repeaters and FRITZ!Boxes use the IP network 192.168.178.0 in the factory settings.

Set up an IP address in your FRITZ!Repeater that differs from the IP addresses of the routers you use to connect to the FRITZ!Repeater, for example 192.168.10.1 (subnet mask 255.255.255.0):

Changing the FRITZ!Repeater's IP network
  1. Click "Home Network" in the user interface of the FRITZ!Repeater.
  2. Click "Network" in the "Home Network" menu.
  3. Click on the "Network Settings" tab.
  4. Click "Additional Settings" in the section "LAN Settings" to display all of the settings.
  5. Click the "IPv4 Settings" button.
  6. Enter the desired IP address and subnet mask.
  7. Click "Apply" to save the settings and on the FRITZ!Repeater, confirm that the procedure may be executed, if you are asked to do so.

2 Setting up a VPN connection in the FRITZ!Repeater

Set up a separate user for each VPN connection in the FRITZ!Repeater:

Creating VPN settings for a FRITZ!Repeater user
  1. Click "System" in the user interface of the FRITZ!Repeater.
  2. Click "FRITZ!Repeater Users" in the "System" menu.
  3. Click the (Edit) button for the user who intends to connect to the FRITZ!Repeater via VPN or set up a new user for the VPN connection:
    1. Click the "Add User" button.
    2. Enter a name and password for the user in the corresponding fields.
  4. Enable the option "VPN".
  5. Click "Apply" to save the settings and on the FRITZ!Repeater, confirm that the procedure may be executed, if you are asked to do so.

3 Opening the VPN settings

Calling up VPN settings of the FRITZ!Repeater user
  1. Click "Internet" in the user interface of the FRITZ!Repeater.
  2. Click on "Permit Access" in the "Internet" menu.
  3. Click on the "VPN (IPSec)" tab.
  4. Click the "VPN Settings" link for the user who intends to connect to the FRITZ!Repeater via VPN.
  5. If you are asked to do so, on the FRITZ!Repeater confirm that the procedure may be executed and click "OK" to complete the procedure.

4 Setting up and establishing a VPN connection on the computer

Set up the VPN connection on the computer using the VPN settings for the FRITZ!Repeater user displayed in the user interface of the FRITZ!Repeater:

  1. Open the "System Preferences" in the Apple menu.
  2. Click "Network" in the "System Preferences" menu.
  3. Click the plus sign below the list with the existing connections.
  4. Select "VPN" from the drop-down list "Interface".
  5. Select "Cisco IPSec" from the drop-down list "VPN Type".
  6. Enter a name of your choice (FRITZ!Repeater VPN) for the "Service Name" and then click "Create".
  7. Enter the MyFRITZ! address of the FRITZ!Repeater (pi80ewgfi72d2os42.myfritz.net) for the "Server Address".
  8. For the "Account Name", enter the name of the FRITZ!Repeater user (John Smith) who intends to connect to the FRITZ!Repeater via VPN.
  9. Enter the password for the FRITZ!Repeater user (secret1234) in the "Password" field.

    Important:If you enter the password, a password will not be required to establish the VPN connection. Protect your computer with a password so that unauthorized persons cannot use the VPN connection.

  10. Click "Authentication Settings ...".
  11. In the "Shared Secret" field, enter the shared secret (Zj7hPCouK65IrPU4) displayed in the VPN settings for the FRITZ!Repeater user.
  12. Enter the name of the FRITZ!Repeater user (John Smith) in the "Group Name" field.
  13. Click "OK" and then "Apply" to save the settings.
  14. Click "Connect".