

For more information, see the Microsoft Intune Support Team Blog. You should migrate to the new apps as soon as possible. To avoid a disruption in service for Microsoft Tunnel, plan to migrate your use of the deprecated tunnel client app and connection type to those that are now generally available.Īpplies to the Microsoft Defender for Endpoint app that includes Tunnel client functionality.Ĭisco, Citrix, F5, and Palo Alto have announced that their legacy clients don't work on iOS 12 and later.

On August 1, 2022, the Microsoft Tunnel (standalone client) (preview) connection type will cease to connect to Microsoft Tunnel.Only the generally available version of Microsoft Defender for Endpoint will be available as the tunnel client app. On July 29, 2022, the standalone tunnel client app will no longer be available for download.With this general availability, the use of the Microsoft Tunnel (standalone client)(preview) connection type and the standalone tunnel client app are deprecated and soon will drop from support. On Apboth the Microsoft Tunnel connection type and Microsoft Defender for Endpoint as the tunnel client app became generally available. Microsoft Tunnel (standalone client)(preview)Īpplies to the Microsoft Tunnel client app. IKEv2 settings (in this article) describes the properties. For detailed steps, see the Zscaler documentation. To use Conditional Access, or allow users to bypass the Zscaler sign-in screen, you must integrate Zscaler Private Access (ZPA) with your Azure AD account. Palo Alto Networks GlobalProtect (Legacy)Īpplies to Palo Alto Networks GlobalProtect app version 4.1 and earlier.Īpplies to Palo Alto Networks GlobalProtect app version 5.0 and later. Select the VPN connection type from the following list of vendors:Īpplies to Cisco Legacy An圜onnect app version 4.0.5x and earlier.Īpplies to Cisco An圜onnect app version 4.0.7x and later.Īpplies to F5 Access app version 2.1 and earlier.Īpplies to F5 Access app version 3.0 and later. These settings use the Apple VPN payload (opens Apple's web site). Some settings are only available for specific VPN clients. The available settings depend on the VPN client you choose. For more information on the enrollment types, see iOS/iPadOS enrollment. User enrollment is limited to per-app VPN. These settings are available for all enrollment types except user enrollment. Microsoft 365 network connectivity principles.Alternative ways for security professionals and IT to achieve modern security controls in today’s unique remote work scenarios blog.Using third-party network devices or solutions with Microsoft 365.Overview: VPN split tunneling for Microsoft 365.And, allow the Outlook traffic to bypass the VPN. If you need to use a VPN, then use a split-tunnel VPN, such as Microsoft Tunnel.Microsoft doesn't provide technical support for third party or partner VPNs. Work with the third party or partner VPN for possible resolutions.If removing the VPN resolves the behavior, then you can: If you're using a third party or partner VPN, and experience a latency or performance issue, then remove the VPN. Some Microsoft 365 services, such as Outlook, may not perform well using third party or partner VPNs. Before you beginĬreate an iOS/iPadOS VPN device configuration profile. Some settings are only available for some VPN clients, such as Citrix, Zscaler, and more. These settings are used to create and configure VPN connections to your organization's network. Microsoft Intune includes many VPN settings that can be deployed to your iOS/iPadOS devices.
