You can make a difference in the Apple Support Community!

When you sign up with your Apple Account, you can provide valuable feedback to other community members by upvoting helpful replies and User Tips.

Looks like no one’s replied in a while. To start the conversation again, simply ask a new question.

An issue with VPN and "send all traffic over vpn connection"

I have find an issue with "send all traffic over vpn connection" In OS BigSur 11.0.1.

This feature doesn't work.


Today I did adjust VPN interface with type L2TP.



After this I did apply configuration and tried make connection to remote equipment. I had open terminal and was running ping to internal IP address of remote network, it doesn't work. This issue is possible to fix only via configuration static route in terminal:


sudo route add -net 10.1.1.1/29 -interface ppp0


Somebody has the same issue? How can I fix it? I'm very need this feature "send all traffic over vpn connection".

Posted on Dec 13, 2020 3:55 PM

Reply
3 replies

Dec 17, 2020 6:56 AM in response to Joogser

Hi Joogser,


Thanks for posting. As we understand it, you're having an issue with VPN settings in macOS Big Sur. We're glad to see how we can assist.


To verify, when you say it doesn't work, what specific behavior are you observing?


To narrow the issue down, see if you can replicate it in a newly-created administrator account: Set up users, guests, and groups on Mac. Once you create the account, log in there and see if the same issue occurs. Let us know how it goes.


Take care.

Dec 17, 2020 8:08 AM in response to ryane77

Ryane77, here are my answers on a queations:


As we understand it, you're having an issue with VPN settings in macOS Big Sur.

  • Yes, I have issue with additional feature which help me to sending all traffic from my Mac via L2TP type tunnel. In all previous MacOS systems this feature works fine. But in BigSur v.11.0.1 & v.11.1 this feature doesn't work and I need adjust static routes in terminal (CLI) every once after new connections.


To verify, when you say it doesn't work, what specific behavior are you observing?

  • Okay, I will show simple way of diagnostic. I have one external/public IP address of my home Mac and one external/public IP address of remote equipment in Data Center. When I make connection to remote network (via VPN, L2TP) with enabled feature "send all traffic over vpn connection" it is mean all generated traffic from my Mac must follow via this tunnel. We can easy verify it with help of either via any web browser, just open google, input my IP address, and google will show us our external/public IP address.



So, if Mac send all traffic via tunnel, in my case I will see on google IP address of remote equipment placed in data center, if this feature doesn't work, I will see in google IP address of my home Mac.


I could make demonstration with using terminal and show to you all results of tcpdump utils, but I thinks all information above шы more than enough.


Once you create the account, log in there and see if the same issue occurs. Let us know how it goes.

I replicated this issue in a new created administrator account. This issue is persists. All traffic over vpn connection doesn't follow.

Dec 17, 2020 8:26 AM in response to Joogser

L2TP is an older protocol. You might need to do some manual adjustments. Look at your interface list in System Preferences > Network. Is the VPN on the top? If not, drag it up there.


The VPN does work, but it is specifically intended for public IP addresses. A reserved, private network like 10.1.1.1 normally shouldn’t go through a VPN, at least in a consumer device world. This could be a problem with your VPN or a bug with the operating system. It is difficult to say which.


I had a problem with search domains with a VPN I used to use. I wrote a little app to detect changes in the network configuration (via the System Configuration framework) and add the search domain that I needed. In this case, the problem was the configuration of the VPN. It was easier for me to fix the problem on the client side than get the enterprise VPN connection changed.

An issue with VPN and "send all traffic over vpn connection"

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.