For iOS 7 and higher devices, you can force selected applications to connect through your corporate VPN. Your VPN provider must support this feature, and you must publish the apps as managed applications.

Configure the Per-App VPN Profile

  1. Navigate to Devices > Profiles & Resources > Profiles > Add and select iOS.

  2. Select the VPN payload from the list.
  3. Configure your base VPN profile accordingly.

    For a list of supported vendor providers through AirWatch, refer to the following AirWatch Knowledge Base article:  https://support.air-watch.com/articles/115001662568. New vendors can be added at any time.

  4. Select Per-App VPN to generate a VPN UUID for the current VPN profile settings. The VPN UUID is a unique identifier for this specific VPN configuration.
  5. Select Connect Automatically to display text boxes for the Safari Domains, which are internal sites that trigger an automatic VPN connection.
  6. Choose a Provider Type to determine how to tunnel traffic, either through an application layer or IP layer.
  7. Select Save & Publish.

    If saving was done as an update to an existing VPN profile, then any existing devices/applications that currently use the profile are updated. Any devices/applications that were not using any VPN UUID are also updated to use the VPN profile.

Configure Public Apps to Use Per App Profile

After you create a per app tunnel profile you can assign it to specific apps in the application configuration screen. This tells that application to use the defined VPN profile when establishing connections.

  1. Navigate to Apps & Books > Applications > Native.
  2. Select the Public tab.
  3. Select Add Application to add an app or Edit an existing app.

    For iOS apps, only public or internal apps built with the Cocoa Framework are supported.

  4. On the Deployment tab, select Use VPN and then select the profile you created.

  5. Select Save and publish your changes.

Configure Internal Apps to Use Per App Profile

After you create a per app tunnel profile you can assign it to specific apps in the application configuration screen. This tells that application to use the defined VPN profile when establishing connections.

  1. Navigate to Apps & Books > Applications > Native.
  2. Select the Internal tab.
  3. Select Add Application and add an app.

    For iOS apps, only public or internal apps built with the Cocoa Framework are supported.

  4. Select Save & Assign to move to the Assignment page.
  5. Select Add Assignment and select Per-App VPN Profile in the Advanced section.
  6. Save & Publish the app.