Android Enterprise device settings to configure VPN in Intune

This article lists and describes the different VPN connection settings you can control on Android Enterprise devices. As part of your mobile device management (MDM) solution, use these settings to create a VPN connection, choose how the VPN authenticates, select a VPN server type, and more.

As an Intune administrator, you can create and assign VPN settings to Android Enterprise devices.

To learn more about VPN profiles in Intune, see VPN profiles.

Before you begin

Create a device configuration profile, and choose Android Enterprise.

Device owner only

  • Connection name: Enter a name for this connection. End users see this name when they browse their device for the available VPN connections. For example, enter Contoso VPN.

  • IP address or FQDN: Enter the IP address or fully qualified domain name (FQDN) of the VPN server that devices connect. For example, enter 192.168.1.1 or vpn.contoso.com.

    • Authentication method: Choose how devices authenticate to the VPN server. Your options:

      • Certificates: Select an existing SCEP or PKCS certificate profile to authenticate the connection. Configure certificates lists the steps to create a certificate profile.
      • Username and password: When signing into the VPN server, end users are prompted to enter their user name and password.
  • Connection type: Select the VPN connection type. Your options:

    • Cisco AnyConnect
    • F5 Access
    • Pulse Secure

Work profile only

  • Connection name: Enter a name for this connection. End users see this name when they browse their device for the available VPN connections. For example, enter Contoso VPN.

  • IP address or FQDN: Enter the IP address or fully qualified domain name (FQDN) of the VPN server that devices connect. For example, enter 192.168.1.1 or vpn.contoso.com.

    • Authentication method: Choose how devices authenticate to the VPN server. Your options:

      • Certificates: Select an existing SCEP or PKCS certificate profile to authenticate the connection. Configure certificates lists the steps to create a certificate profile.
      • Username and password: When signing into the VPN server, end users are prompted to enter their user name and password.
  • Connection type: Select the VPN connection type. Your options:

    • Cisco AnyConnect
    • F5 Access
    • Pulse Secure
    • SonicWall Mobile Connect
    • Check Point Capsule VPN

Next steps

Assign the profile and monitor its status.

You can also create VPN profiles for Android, iOS, macOS, Windows 10 and later, Windows 8.1, and Windows Phone 8.1 devices.