Ikev2 経由で Mac を Azure VPN に接続できない

Ikev2 経由で Mac を Azure VPN に接続できない

私はMacbookをAzure VPNに接続しようとしています。接続しようとするたびに、上部のバーにあるVPNアイコンの接続アニメーション(ここに画像の説明を入力してください) は数秒間続き、何が悪かったのかについての説明もなく停止します。

私はすべての指示に忠実に従い、すべてを二重、三重、四重にチェックしました。すべての証明書を削除して最初からやり直しましたが、それでも成功しませんでした。

WireShark でスニッフィングすると、短い会話しか得られず、何が問題なのかを示すヒントはまったく見つかりません。

ワイヤーシャーク

尾行する/var/log/system.logとこうなります:

DATE Macbook nesessionmanager[16073]: NESMIKEv2VPNSession[PreProd:39C837FA-09F7-42BD-AD8D-F85994AB9470]: Received a start command from SystemUIServer[282]
DATE Macbook nesessionmanager[16073]: NESMIKEv2VPNSession[PreProd:39C837FA-09F7-42BD-AD8D-F85994AB9470]: status changed to connecting
DATE Macbook nesessionmanager[16073]: Failed to find the VPN app for plugin type com.apple.neplugin.IKEv2
DATE Macbook neagent[24535]: IKEv2 Plugin: ikev2_dns_callback: Error -65554
DATE Macbook kernel[0]: ipsec_ctl_connect: creating interface ipsec0
DATE Macbook configd[55]: network changed
DATE Macbook kernel[0]: hfs: mounted Recovery HD on device disk0s3
DATE Macbook mds[66]: (Volume.Normal:2464) volume:0x7fcf1c016000 ********** Bootstrapped Creating a default store:0 SpotLoc:(null) SpotVerLoc:(null) occlude:0 /Volumes/Recovery HD
DATE Macbook sandboxd[132] ([283]): Finder(283) System Policy: deny file-write-create /Volumes/Recovery HD/.Trashes/501
DATE Macbook fseventsd[48]: Logging disabled completely for device:1: /Volumes/Recovery HD
DATE Macbook kernel[0]: hfs: unmount initiated on Recovery HD on device disk0s3
DATE Macbook kernel[0]: hfs: mounted Recovery HD on device disk0s3
DATE Macbook mds[66]: (Volume.Normal:2464) volume:0x7fcf1a856c00 ********** Bootstrapped Creating a default store:0 SpotLoc:(null) SpotVerLoc:(null) occlude:0 /Volumes/Recovery HD
DATE Macbook kernel[0]: hfs: unmount initiated on Recovery HD on device disk0s3
DATE Macbook sandboxd[132] ([283]): Finder(283) System Policy: deny file-write-create /Volumes/Recovery HD/.Trashes/501
DATE Macbook neagent[24535]: Authentication method did not match
DATE Macbook neagent[24535]: Failed to process IKE Auth packet
DATE Macbook symptomsd[238]: -[FlowAnalyticsEngine _newFlowData:] netanalyticsdebug: (2) no head-end for flow azuregateway-515cbc58-3610-48a3-958f-6362b55579cb-e4f08f898b02.vpn.azure.com, discarding all its records
DATE Macbook neagent[24535]: Failed to receive packet
DATE Macbook neagent[24535]: BUG in libdispatch client: kevent[EVFILT_READ] delete: "Bad file descriptor" - 0x9
DATE Macbook nesessionmanager[16073]: NESMIKEv2VPNSession[PreProd:39C837FA-09F7-42BD-AD8D-F85994AB9470]: status changed to disconnecting
DATE Macbook kernel[0]: SIOCPROTODETACH_IN6: ipsec0 error=6
DATE Macbook nesessionmanager[16073]: NESMIKEv2VPNSession[PreProd:39C837FA-09F7-42BD-AD8D-F85994AB9470]: status changed to disconnected, last stop reason Stop command received
DATE Macbook configd[55]: network changed
DATE Macbook symptomsd[238]: nw_interface_create_with_name netutil_ifname_to_ifindex(ipsec0) failed, dumping backtrace:
            [x86_64] libnetcore-583.50.1
        0   libsystem_network.dylib             0x00007fff9c67cde9 __nw_create_backtrace_string + 123
        1   libsystem_network.dylib             0x00007fff9c69f1f3 nw_interface_create_with_name + 179
        2   Network                             0x00007fff8992cedc -[NWInterface initWithInterfaceName:] + 120
        3   SymptomEvaluator                    0x00007fff9a9482fc config_callback + 874
        4   SystemConfiguration                 0x00007fff9b823faf rlsPerform + 184
        5   SystemConfiguration                 0x00007fff9b8373ab __SCDynamicStoreSetDispatchQueue_block_invoke_2 + 52
        6   libdispatch.dylib                   0x00007fff9b01893d _dispatch_call_block_and_release + 12
        7   libdispatch.dylib                   0x00007fff9b00d40b _dispatch_client_callout + 8
        8   libdispatch.dylib                   0x00007fff9b01203b _dispatch_queue_drain + 754
        9   libdispatch.dylib                   0x00007fff9b018707 _dispatch_queue_invoke + 549
        10  libdispatch.dylib                   0x00007fff9b010d53 _dispatch_root_queue_drain + 538
        11  libdispatch.dylib                   0x00007fff9b010b00 _dispatch_worker_thread3 + 91
        12  libsystem_pthread.dylib             0x00007fff893544de _pthread_wqthread + 1129
        13  libsystem_pthread.dylib             0x00007fff89352341 start_wqthread + 13
DATE Macbook symptomsd[238]: -[NWInterface initWithInterfaceName:] nw_interface_create_with_name(ipsec0) failed, dumping backtrace:
            [x86_64] libnetcore-583.50.1
        0   libsystem_network.dylib             0x00007fff9c67cde9 __nw_create_backtrace_string + 123
        1   Network                             0x00007fff8992cf46 -[NWInterface initWithInterfaceName:] + 226
        2   SymptomEvaluator                    0x00007fff9a9482fc config_callback + 874
        3   SystemConfiguration                 0x00007fff9b823faf rlsPerform + 184
        4   SystemConfiguration                 0x00007fff9b8373ab __SCDynamicStoreSetDispatchQueue_block_invoke_2 + 52
        5   libdispatch.dylib                   0x00007fff9b01893d _dispatch_call_block_and_release + 12
        6   libdispatch.dylib                   0x00007fff9b00d40b _dispatch_client_callout + 8
        7   libdispatch.dylib                   0x00007fff9b01203b _dispatch_queue_drain + 754
        8   libdispatch.dylib                   0x00007fff9b018707 _dispatch_queue_invoke + 549
        9   libdispatch.dylib                   0x00007fff9b010d53 _dispatch_root_queue_drain + 538
        10  libdispatch.dylib                   0x00007fff9b010b00 _dispatch_worker_thread3 + 91
        11  libsystem_pthread.dylib             0x00007fff893544de _pthread_wqthread + 1129
        12  libsystem_pthread.dylib             0x00007fff89352341 start_wqthread + 13
DATE Macbook symptomsd[238]: nw_interface_create_with_name netutil_ifname_to_ifindex(ipsec0) failed, dumping backtrace:
            [x86_64] libnetcore-583.50.1
        0   libsystem_network.dylib             0x00007fff9c67cde9 __nw_create_backtrace_string + 123
        1   libsystem_network.dylib             0x00007fff9c69f1f3 nw_interface_create_with_name + 179
        2   Network                             0x00007fff8992cedc -[NWInterface initWithInterfaceName:] + 120
        3   SymptomEvaluator                    0x00007fff9a9482fc config_callback + 874
        4   SystemConfiguration                 0x00007fff9b823faf rlsPerform + 184
        5   SystemConfiguration                 0x00007fff9b8373ab __SCDynamicStoreSetDispatchQueue_block_invoke_2 + 52
        6   libdispatch.dylib                   0x00007fff9b01893d _dispatch_call_block_and_release + 12
        7   libdispatch.dylib                   0x00007fff9b00d40b _dispatch_client_callout + 8
        8   libdispatch.dylib                   0x00007fff9b01203b _dispatch_queue_drain + 754
        9   libdispatch.dylib                   0x00007fff9b018707 _dispatch_queue_invoke + 549
        10  libdispatch.dylib                   0x00007fff9b010d53 _dispatch_root_queue_drain + 538
        11  libdispatch.dylib                   0x00007fff9b010b00 _dispatch_worker_thread3 + 91
        12  libsystem_pthread.dylib             0x00007fff893544de _pthread_wqthread + 1129
        13  libsystem_pthread.dylib             0x00007fff89352341 start_wqthread + 13
DATE Macbook symptomsd[238]: -[NWInterface initWithInterfaceName:] nw_interface_create_with_name(ipsec0) failed, dumping backtrace:
            [x86_64] libnetcore-583.50.1
        0   libsystem_network.dylib             0x00007fff9c67cde9 __nw_create_backtrace_string + 123
        1   Network                             0x00007fff8992cf46 -[NWInterface initWithInterfaceName:] + 226
        2   SymptomEvaluator                    0x00007fff9a9482fc config_callback + 874
        3   SystemConfiguration                 0x00007fff9b823faf rlsPerform + 184
        4   SystemConfiguration                 0x00007fff9b8373ab __SCDynamicStoreSetDispatchQueue_block_invoke_2 + 52
        5   libdispatch.dylib                   0x00007fff9b01893d _dispatch_call_block_and_release + 12
        6   libdispatch.dylib                   0x00007fff9b00d40b _dispatch_client_callout + 8
        7   libdispatch.dylib                   0x00007fff9b01203b _dispatch_queue_drain + 754
        8   libdispatch.dylib                   0x00007fff9b018707 _dispatch_queue_invoke + 549
        9   libdispatch.dylib                   0x00007fff9b010d53 _dispatch_root_queue_drain + 538
        10  libdispatch.dylib                   0x00007fff9b010b00 _dispatch_worker_thread3 + 91
        11  libsystem_pthread.dylib             0x00007fff893544de _pthread_wqthread + 1129
        12  libsystem_pthread.dylib             0x00007fff89352341 start_wqthread + 13
DATE Macbook kernel[0]: hfs: mounted Recovery HD on device disk0s3
DATE Macbook mds[66]: (Volume.Normal:2464) volume:0x7fcf22841600 ********** Bootstrapped Creating a default store:0 SpotLoc:(null) SpotVerLoc:(null) occlude:0 /Volumes/Recovery HD
DATE Macbook fseventsd[48]: Logging disabled completely for device:1: /Volumes/Recovery HD
DATE Macbook kernel[0]: hfs: unmount initiated on Recovery HD on device disk0s3
DATE Macbook sandboxd[132] ([283]): Finder(283) System Policy: deny file-write-create /Volumes/Recovery HD/.Trashes/501
DATE Macbook kernel[0]: hfs: mounted Recovery HD on device disk0s3
DATE Macbook mds[66]: (Volume.Normal:2464) volume:0x7fcf1c016000 ********** Bootstrapped Creating a default store:0 SpotLoc:(null) SpotVerLoc:(null) occlude:0 /Volumes/Recovery HD
DATE Macbook kernel[0]: hfs: unmount initiated on Recovery HD on device disk0s3
DATE Macbook sandboxd[132] ([283]): Finder(283) System Policy: deny file-write-create /Volumes/Recovery HD/.Trashes/501

これだけでは何が問題なのかわかりません。疑わしいエラー メッセージを Google で検索してみましたが、結果は残念なものでした...

どなたか、この調査を継続する方法について正しい方向を示していただけますか?

答え1

それはバグ

同様のケースログにはあなたと同じシナリオが記録されています。

また、次の方法を試すこともできます: でipsec.conf、暗号と rightauth を更新します。

rightauth=eap-tls
ike=3des-sha1-modp1024
esp=3des-sha1-modp1024

参照:https://apple.stackexchange.com/questions/217366/ikev2-vpn-el-capitan-10-11

最後に、Apple のメーリング リストの 1 つにメッセージを投稿できます。 https://lists.apple.com/mailman/listinfo

答え2

OSX 上の VPN 接続に移動し、「認証設定」で「なし」を選択し、「証明書」を選択します (証明書が表示されます)。「接続」をクリックすると、切断されなくなります。

関連情報