The Advanced settings tab lets you configure more settings that are optional for the Per-App component. Except where noted, you can configure these settings before or after installation.

  1. Navigate to Groups & Settings > All Settings > System > Enterprise Integration > VMware Tunnel > Configuration and select the Advanced tab.
  2. Configure the following VMware Tunnel Proxy component settings. Any changes to the Per-App Tunneling settings after installation of the VMware Tunnel server do not require restarting or re-installation of the service. Changes automatically apply to the server.

    Setting Description
    Log Level Select the level of logging for the Per-App Tunnel component.
    Access Logs

    Enable this setting to tell VMware Tunnel to write access logs to syslog for any of your own purposes. These logs are not stored locally. They are pushed to the syslog host over the port you define. Communication to the syslog server occurs over UDP, so ensure that UDP traffic is allowed over this port.

    In relay-endpoint deployments, the relay server writes the access logs, in a cascade deployment, the back-end server writes the access logs and in a basic deployment, the basic server writes the access logs.

    There is no correlation between this syslog integration and the integration accessed on Groups & Settings > All Settings > System > Enterprise Integration > Syslog.

    This feature can be enabled during initial configuration or after installation in the Advanced settings tab in the Workspace ONE UEM console. If configured after installation, the automatic configuration logic updates the tunnel server config with the updated access log settings and restarts the service.

    Syslog Hostname: Enter the URL of your syslog host. This setting displays after you enable Access Logs.

    Port: Enter the port over which you want to communicate with the syslog host.This setting displays after you enable Access Logs.

    API and AWCM outbound calls via proxy

    Enable this option if the communication for initialization between the VMware Tunnel and Workspace ONE UEM API or AWCM is through an outbound proxy.


    Maintain your SSL certificates

    • If you are using AirWatch SSL, select Regenerate to regenerate the certificates
    • If you are using public SSL certificates and you need to add a new certificate, consider using Public SSL Certificate Rotation.
  3. Select Save.