
Enrolled devices that run Windows 8.1 and later.

You can use Intune custom configuration policies to create VPN profiles for the following platforms: User enrollment for iOS/iPadOS and macOS only support per-app VPN. For more information, see How to configure certificates with Microsoft Intune. This step makes sure that each device can recognize the legitimacy of your certificate authority. If you use certificate based authentication for your VPN profile, then deploy the VPN profile, certificate profile, and trusted root profile to the same groups. VPN profiles for a device tunnel are supported for Windows 10/11 Enterprise multi-session remote desktops. If you need help with deploying apps using Microsoft Intune, see What is app management in Microsoft Intune?. You must deploy the VPN app before you create the VPN profile. This article lists the VPN apps you can use, shows you how to create a VPN profile, and includes guidance on securing your VPN profiles. The users see the VPN connection in the list of available networks, and can connect with minimal effort. You assign this profile to all users who have iOS/iPadOS devices. You create a VPN profile that includes these settings.

This issue and warning remain until Windows updates the Windows 11 client that resolves this issue.įor example, you want to configure all iOS/iPadOS devices with the required settings to connect to a file share on the organization network. After the upgrade to Windows 11, any changes to the devices VPN profiles or adding new VPN profiles will trigger the issue.

When the device checks-in with Intune a second time, it processes the VPN profile changes, and connectivity is restored. A device with one or more Intune VPN profiles loses its VPN connectivity when the device processes multiple changes to VPN profiles for the device simultaneously. For Windows 11 devices, there is an issue between the Windows 11 client and the Windows VPNv2 CSP.
