Skip Navigation

Create a VPN profile

The required profile settings vary for each device type and depend on the VPN connection type and authentication type that you select.
Some devices may be unable to store the xAuth password. For more information, visit to read KB30353.
  • If devices use certificate-based authentication for work VPN connections, create a CA certificate profile and assign it to user accounts, user groups, or device groups. To send client certificates to devices, create a user credential, SCEP, or shared certificate profile to associate with the VPN profile.
  • For
    BlackBerry 10
    , and
    Samsung KNOX Workspace
    devices that use a proxy server, create a proxy profile to associate with the VPN profile.
    (The proxy server for
    Windows 10
    devices is configured in the VPN profile.)
  • For
    KNOX Workspace
    devices, add the appropriate VPN client app to the app list and assign it to user accounts, user groups, or device groups. The supported VPN client apps are
    Cisco AnyConnect
  1. On the menu bar, click
    Policies and Profiles
  2. Click
    Networks and connections > VPN
  3. Click .
  4. Type a name and description for the VPN profile. This information is displayed on devices.
  5. Optionally, clear the check box for any device type that you do not want to configure the profile for.
  6. Perform the following actions:
    1. Click the tab for a device type.
    2. Configure the appropriate values for each profile setting to match the VPN configuration in your organization's environment. If your organization requires that users provide a username and password to connect to the VPN and the profile is for multiple users, in the
      field, type
    For details about each profile setting, see VPN profile settings.
  7. Repeat step 5 for each device type in your organization.
  8. Click