Skip Navigation

Create a VPN profile

You can use
to create a zero trust network access (ZTNA) profile that is recognized by devices as a VPN provider.
trusts nothing and no one by default. For more information on
, see Integrating BlackBerry UEM with CylanceGATEWAY to create a ZTNA profile.
The required profile settings vary for each device type and depend on the VPN connection type and authentication type that you select.
Some devices may be unable to store the xAuth password. For more information, visit to read 30353.
  • If devices use certificate-based authentication for work VPN connections, create a CA certificate profile and assign it to user accounts, user groups, or device groups. To send client certificates to devices, create a user credential, SCEP, or shared certificate profile to associate with the VPN profile.
  • For
    , and
    Samsung Knox
    devices that use a proxy server, create a proxy profile to associate with the VPN profile.
    (The proxy server for
    Windows 10
    devices is configured in the VPN profile.)
  • For
    Samsung Knox
    devices, add the appropriate VPN client app to the app list and assign it to user accounts, user groups, or device groups. The supported VPN client apps are
    Cisco AnyConnect
  1. On the menu bar, click
    Policies and Profiles
  2. Click
    Networks and connections > VPN
  3. Click The Add icon.
  4. Type a name and description for the VPN profile. This information is displayed on devices.
  5. Perform the following actions:
    1. Click the tab for a device type.
    2. Configure the appropriate values for each profile setting to match the VPN configuration in your organization's environment. If your organization requires that users provide a username and password to connect to the VPN and the profile is for multiple users, in the
      field, type
  6. Repeat step 5 for each device type in your organization.
  7. Click