Configure a Per-App VPN Configuration for iOS Endpoints Using MobileIron

You can enable access to internal resources from your managed mobile endpoints by configuring GlobalProtect VPN access using MobileIron. In a per-app VPN configuration, you can specify which managed apps can route traffic through the VPN tunnel. Unmanaged apps will continue to connect directly to the internet instead of through the VPN tunnel.
Use the following steps to configure a per-app VPN configuration for iOS endpoints using MobileIron:
  1. Download the GlobalProtect app for iOS.
  2. Add a certificate configuration and then configure the certificate settings.
    All per-app VPN configurations require certificate-based authentication.
  3. Add a per-app VPN configuration.
    • Set the configuration type to Per-app VPN.
  4. Configure per-app VPN settings for iOS.
    • Set the Connection Type to Palo Alto Networks GlobalProtect, and then configure the associated settings.

Related Documentation