A Virtual Private Network (VPN) creates an encrypted tunnel between your Mac and a server somewhere in the world, routing all your internet traffic through it. This hides your browsing activity from your Internet Service Provider (ISP), protects sensitive data on public Wi-Fi networks (like those in airports, cafes, or hotels), and can allow you to access region-restricted content. Setting up a VPN on macOS can be done either through a dedicated app from a commercial provider or by manually entering configuration details for a workplace or school network.
Method 1: Using a VPN App (Recommended for Personal Use)
If you have subscribed to a commercial VPN service such as NordVPN, ExpressVPN, Mullvad, or ProtonVPN, the simplest and most reliable approach is to use their official macOS application. These apps handle all the complex protocol configuration, server selection, and kill-switch functionality automatically.
- Go to your VPN provider’s official website and locate the download page for macOS. Alternatively, search for your provider in the Mac App Store.
- Download and install the application following the standard macOS installation process.
- Open the VPN app and log in using your account email and password.
- Click the Connect button. The app will automatically select the best available server for your location and establish the encrypted connection.
- A VPN icon (usually a lock or shield symbol) will appear in your Mac’s menu bar, confirming the connection is active.
To disconnect, open the app again and click Disconnect. The app will remember your settings for future sessions.
Method 2: Manual VPN Configuration (For Work or School Networks)
If your employer or educational institution’s IT department has provided you with specific server details, you can add the VPN connection directly through macOS’s built-in Network settings without installing any third-party software. macOS natively supports IKEv2, L2TP over IPSec, and Cisco IPSec protocols.
- Click the Apple menu () and select System Settings (or System Preferences on older macOS).
- Click on Network in the left-hand sidebar.
- Click the “+” button or the Action menu (often three dots or a gear icon) at the bottom of the connections list and select Add VPN Configuration…
- A configuration window will appear. From the Type dropdown, select the VPN protocol your organisation uses (e.g., IKEv2, L2TP over IPsec, or Cisco IPsec). Ask your IT department if you are unsure which to choose.
- In the Display Name field, enter a descriptive name (e.g., “Work VPN” or “University Network”).
- Enter the Server Address provided by your IT department.
- Enter your Remote ID and Account Name (your work username).
- Click Authentication Settings… and enter the password or certificate provided by your IT department.
- Click Create to save the configuration.
- To connect, return to the Network settings and click the toggle next to your newly created VPN connection to turn it On.
Checking Your VPN Connection Is Working
After connecting, you can verify the VPN is active by visiting a website like whatismyipaddress.com. The IP address shown should belong to your VPN server’s location, not your actual home location. If it still shows your real location, the VPN is not routing your traffic correctly and you should reconnect or contact your VPN provider’s support team.