This Chapter provides information on how to configure a Per-App VPN configuration for
Windows 10 UWP endpoints using Workspace ONE
| Where Can I Use This? | What Do I Need? |
- NGFW (managed by Panorama or Strata Cloud Manager)
- Prisma Access (managed by Panorama or Strata Cloud
Manager)
|
- GlobalProtect Gateway license or Prisma Access license with
the Mobile User subscription
|
You can enable access to internal resources from your managed mobile endpoints by configuring
GlobalProtect VPN access using Workspace ONE. In a per-app VPN configuration, you
can specify which managed apps can send traffic through the GlobalProtect VPN
tunnel. Unmanaged apps will continue to connect directly to the internet instead of
through the GlobalProtect VPN tunnel.
Because Workspace ONE does not yet list GlobalProtect as an official connection provider for
Windows endpoints, you must select an alternate VPN provider, edit the settings
for the GlobalProtect app, and import the configuration back into the VPN
profile as described in the following workflow.
Use the following steps to configure a per-app VPN configuration for Windows 10 UWP endpoints
using Workspace ONE: