![de_DE](https://vpn.hc.r1.ampr.org/w/wp-content/plugins/multisite-language-switcher/flags/de.png)
The first step is to import the root certificate of the HamCloud VPN server:
- Download the root certificate here and open it with “Keychain Access”.
![](https://vpn.hc.r1.ampr.org/w/wp-content/uploads/2023/01/macOS-cert-import.png)
- Add certificate to the Keychain “System”.
![](https://vpn.hc.r1.ampr.org/w/wp-content/uploads/2023/01/macOS-cert-add.png)
- In Keychain Access, choose System, select the Certificates tab and double-click the “HamCloud VPN Root CA” certificate.
![](https://vpn.hc.r1.ampr.org/w/wp-content/uploads/2023/01/macOS-cert-management.png)
- Unfold “Trust” and change “IP Security (IPsec)” and “X.509 Basic Policy” to “Always Trust”.
![](https://vpn.hc.r1.ampr.org/w/wp-content/uploads/2023/01/macOS-cert-trust-all-users.png)
- The certificate is now shown as trusted.
![](https://vpn.hc.r1.ampr.org/w/wp-content/uploads/2023/01/macOS-cert-trust.png)
The second step is to create a new VPN configuration:
- Add VPN configuration with type IKEv2 in the network system settings.
![](https://vpn.hc.r1.ampr.org/w/wp-content/uploads/2023/01/macOS-new-vpn.png)
- Create the VPN profile with the following data:
- Display Name: Hamcloud VPN
- Server address: vpn.hc.r1.ampr.org
- Remote ID: vpn.hc.r1.ampr.org
- Type: Username
- Username: <enter username of VPN credentials>
- Password: <enter password of VPN credentials>
![](https://vpn.hc.r1.ampr.org/w/wp-content/uploads/2023/01/macOS-vpn-properties-1.png)
Now the VPN connection can be used:
- Click on the VPN icon.
![](https://vpn.hc.r1.ampr.org/w/wp-content/uploads/2023/01/macOS-vpn-inactive.png)
- Select the HamCloud VPN and activate it.
![](https://vpn.hc.r1.ampr.org/w/wp-content/uploads/2023/01/macOS-vpn-hamcloud-disconnected.png)
- You are now connected to the HamCloud.
![](https://vpn.hc.r1.ampr.org/w/wp-content/uploads/2023/01/macOS-vpn-hamcloud-connected.png)