Configuring VPN Clients for Windows Modern

Configure SOTI VPN client settings for Windows Modern devices using the VPN profile payload to assign servers, manage network access, and enable features such as split tunneling.

About this task

Use this task to configure the SOTI Virtual Private Network (VPN) client settings through the SOTI MobiControl SOTI VPN Windows Modern profile payload. You can use the profile payload to assign VPN servers, disable VPN on corporate/ internal networks, enable split tunnel, and more.

Procedure

  1. Create or edit a SOTI Windows Modern profile configuration (see Creating a Profile) and add the SOTI VPN payload.
    Selecting the SOTI VPN profile configuration in a Windows Modern profile.
  2. In the VPN Servers section, select (Add) to add a VPN server.
    1. Enter the external Address of the VPN server.
    2. Specify the Port.
      Note: You may specify a different port number for traffic forwarding if necessary; however, make sure to use port 51820 for forwarding traffic to the SOTI VPN server.
    3. Select the VPN server from the enrolled list.
      Remember: When selecting a VPN server, you see a list of all enrolled VPN servers that you have permissions to assign. If you do not see your VPN server listed, verify that the user has the Assign VPN Servers permissions. Also, make sure that the server itself is enabled. See Configuring SOTI VPN Server Settings.
  3. Optional: Enter the Internal DNS Server Address used to resolve internal enterprise domains.
    Note: If left blank, the device’s default DNS is used to resolve FQDNs.
  4. Enable Split-tunnel VPN to route only selected traffic through the VPN.
    1. In the Tunneled Resources section, select (Add) to enter IP ranges using CIDR notation.
  5. Save the profile and assign it to the appropriate Windows Modern device groups. See Assigning a Profile.

Results

Your devices receive the SOTI VPN configuration from the profile.