I have a client moving to Azure and we are in the final stages of testing. Currently I have a SKU VPNgw1 vnetgateway in the East US 2 region, setup with an IKEv2 tunnel type. I have set this up for about 15 people, after testing with a small group. We now have one Apple MAC that simply will not let us use the child certificate for the VPN. The certificate says it installs, but when we go to setup the VPN, it does not display in the drop down list. We've tried a bunch of different things, but I figured we could try using OpenVPN with a OpenVPN compatible client, but the vnetgateway is only set to IKEv2, not "IKEv2 and OpenVPN".
The current P2S tunnel type is set to IKEv2. Can I change the tunnel type to "IKEv2 and OpenVPN" without disrupting or having to reconfigure currently existing IKEv2 client connections.