From c769212a928cef1eb7a8c635da95c5d535ee9b65 Mon Sep 17 00:00:00 2001 From: hwdsl2 Date: Fri, 6 Sep 2019 18:57:00 -0500 Subject: [PATCH] Update docs --- docs/clients-zh.md | 17 ++++++++++------- docs/clients.md | 17 ++++++++++------- 2 files changed, 20 insertions(+), 14 deletions(-) diff --git a/docs/clients-zh.md b/docs/clients-zh.md index c828583..5c303a0 100644 --- a/docs/clients-zh.md +++ b/docs/clients-zh.md @@ -202,7 +202,7 @@ Fedora 28 (和更新版本)和 CentOS 7 用户可以使用更高效的 [IPse *其他语言版本: [English](clients.md#troubleshooting), [简体中文](clients-zh.md#故障排除).* * [Windows 错误 809](#windows-错误-809) -* [Windows 错误 628](#windows-错误-628) +* [Windows 错误 628 或 766](#windows-错误-628-或-766) * [Windows 10 升级](#windows-10-升级) * [Windows 8/10 DNS 泄漏](#windows-810-dns-泄漏) * [macOS VPN 流量](#macos-vpn-流量) @@ -217,7 +217,7 @@ Fedora 28 (和更新版本)和 CentOS 7 用户可以使用更高效的 [IPse ### Windows 错误 809 -> 无法建立计算机与 VPN 服务器之间的网络连接,因为远程服务器未响应。 +> 错误 809:无法建立计算机与 VPN 服务器之间的网络连接,因为远程服务器未响应。 要解决此错误,在首次连接之前需要修改一次注册表,以解决 VPN 服务器 和/或 客户端与 NAT (比如家用路由器)的兼容问题。请下载并导入下面的 `.reg` 文件,或者打开 提升权限命令提示符 并运行以下命令。**完成后必须重启计算机。** @@ -241,16 +241,19 @@ Fedora 28 (和更新版本)和 CentOS 7 用户可以使用更高效的 [IPse REG ADD HKLM\SYSTEM\CurrentControlSet\Services\RasMan\Parameters /v ProhibitIpSec /t REG_DWORD /d 0x0 /f ``` -### Windows 错误 628 +### Windows 错误 628 或 766 -> 在连接完成前,连接被远程计算机终止。 +> 错误 628:在连接完成前,连接被远程计算机终止。 -要解决此错误,请按以下步骤操作: +> 错误 766:找不到证书。使用通过 IPSec 的 L2TP 协议的连接要求安装一个机器证书。它也叫做计算机证书。 -1. 右键单击系统托盘中的无线/网络图标,选择 **打开网络和共享中心**。 +要解决这些错误,请按以下步骤操作: + +1. 右键单击系统托盘中的无线/网络图标。 +1. 选择 **打开网络和共享中心**。或者,如果你使用 Windows 10 版本 1709 或以上,选择 **打开"网络和 Internet"设置**,然后在打开的页面中单击 **网络和共享中心**。 1. 单击左侧的 **更改适配器设置**。右键单击新的 VPN 连接,并选择 **属性**。 1. 单击 **安全** 选项卡,从 **VPN 类型** 下拉菜单中选择 "使用 IPsec 的第 2 层隧道协议 (L2TP/IPSec)"。 -1. 单击 **允许使用这些协议**。确保选中 "质询握手身份验证协议 (CHAP)" 复选框。 +1. 单击 **允许使用这些协议**。选中 "质询握手身份验证协议 (CHAP)" 和 "Microsoft CHAP 版本 2 (MS-CHAP v2)" 复选框。 1. 单击 **高级设置** 按钮。 1. 单击 **使用预共享密钥作身份验证** 并在 **密钥** 字段中输入`你的 VPN IPsec PSK`。 1. 单击 **确定** 关闭 **高级设置**。 diff --git a/docs/clients.md b/docs/clients.md index e2e1a56..5e106bc 100644 --- a/docs/clients.md +++ b/docs/clients.md @@ -202,7 +202,7 @@ First check The network connection between your computer and the VPN server could not be established because the remote server is not responding. +> Error 809: The network connection between your computer and the VPN server could not be established because the remote server is not responding. To fix this error, a one-time registry change is required because the VPN server and/or client is behind NAT (e.g. home router). Download and import the `.reg` file below, or run the following from an elevated command prompt. **You must reboot your PC when finished.** @@ -241,16 +241,19 @@ Although uncommon, some Windows systems disable IPsec encryption, causing the co REG ADD HKLM\SYSTEM\CurrentControlSet\Services\RasMan\Parameters /v ProhibitIpSec /t REG_DWORD /d 0x0 /f ``` -### Windows Error 628 +### Windows Error 628 or 766 -> The connection was terminated by the remote computer before it could be completed. +> Error 628: The connection was terminated by the remote computer before it could be completed. -To fix this error, please follow these steps: +> Error 766: A certificate could not be found. Conenctions that use the L2TP protocol over IPSec require the installation of a machine certificate, also known as a computer certificate. -1. Right-click on the wireless/network icon in system tray, select **Open Network and Sharing Center**. +To fix these errors, please follow these steps: + +1. Right-click on the wireless/network icon in your system tray. +1. Select **Open Network and Sharing Center**. Or, if using Windows 10 version 1709 or newer, select **Open Network & Internet settings**, then on the page that opens, click **Network and Sharing Center**. 1. On the left, click **Change adapter settings**. Right-click on the new VPN and choose **Properties**. 1. Click the **Security** tab. Select "Layer 2 Tunneling Protocol with IPsec (L2TP/IPSec)" for **Type of VPN**. -1. Click **Allow these protocols**. Make sure the "Challenge Handshake Authentication Protocol (CHAP)" checkbox is checked. +1. Click **Allow these protocols**. Check the "Challenge Handshake Authentication Protocol (CHAP)" and "Microsoft CHAP Version 2 (MS-CHAP v2)" checkboxes. 1. Click the **Advanced settings** button. 1. Select **Use preshared key for authentication** and enter `Your VPN IPsec PSK` for the **Key**. 1. Click **OK** to close the **Advanced settings**.