Home Arrow Icon Knowledge base Arrow Icon Global Arrow Icon How do I manage GlobalProtect VPN settings for multiple iOS devices


How do I manage GlobalProtect VPN settings for multiple iOS devices


To manage GlobalProtect VPN settings for multiple iOS devices using Workspace ONE, follow these steps:

1. Access the Workspace ONE Console

- Log into the Workspace ONE UEM console.
- Navigate to Devices > Profiles & Resources > Profiles.

2. Create or Modify an iOS Profile

- Select Add to create a new profile or choose an existing iOS profile to modify.

- Choose iOS as the platform.

3. Configure General Settings

- Enter a Name for the profile to identify it easily.

- Optionally, add a Description to clarify the profile's purpose.

4. Set Up VPN Configuration

- In the VPN settings, configure the following:

- Connection Name: Name displayed on the endpoint.

- Connection Type:
- For GlobalProtect app versions 4.1.x and earlier, select Palo Alto Networks GlobalProtect.
- For GlobalProtect app version 5.0 and later, select Custom and enter the bundle ID as `com.paloaltonetworks.globalprotect.vpn`.

- Server: Enter the hostname or IP address of the GlobalProtect portal.

- User Authentication: Set to Certificate for secure authentication.

- Identity Certificate: Select the certificate that GlobalProtect will use to authenticate users.

5. Enable Per-App VPN Configuration (Optional)

- If you want to route traffic for specific managed apps through the VPN:

- Enable Per App VPN Rules to specify which apps can use the VPN tunnel.

6. Save and Publish the Profile

- After configuring the necessary settings, click Save and then Publish the profile to deploy it to the targeted iOS devices.

7. Monitor and Update Settings

- Use the Workspace ONE console to monitor the deployment status and performance of the GlobalProtect VPN across devices.

- Make updates to the VPN settings as needed by modifying the profile and republishing it.

By following these steps, you can effectively manage GlobalProtect VPN settings for multiple iOS devices using Workspace ONE, ensuring secure access to corporate resources for your users.

Citations:
[1] https://docs.paloaltonetworks.com/globalprotect/10-1/globalprotect-admin/mobile-endpoint-management/manage-the-globalprotect-app-using-other-third-party-mdms/configure-the-globalprotect-app-for-ios
[2] https://soporte.exclusive-networks.es/portal/api/kbArticles/4579000000860015/attachments/qqpl52b07c4afe45c4328933171896aa9ece3/content?portalId=6849c5680c0bc92b79b35a1beec030877351cd2bf7d1f50cdc91a236738b3d70
[3] https://docs.paloaltonetworks.com/globalprotect/10-1/globalprotect-admin/mobile-endpoint-management/manage-the-globalprotect-app-using-workspace-one/configure-workspace-one-for-ios-endpoints/configure-a-per-app-vpn-configuration-for-ios-endpoints-using-workspace-one
[4] https://success.bju.edu/it-support-center/technology-support/home-network-access/globalprotect-vpn/global-protect-for-ios-devices/
[5] https://docs.paloaltonetworks.com/globalprotect/5-1/globalprotect-app-user-guide/globalprotect-app-for-ios/use-the-globalprotect-app-for-ios