Configure Per-App or Full Device Tunnel for Android devices to provide secure access to your corporate applications and resources. Using this functionality requires you to configure and install the Per-App Tunnel component as part of your VMware Tunnel installation.


  1. Navigate to Devices > Profiles > List View > Add and select Android (Legacy) or Android for Work. For a Samsung Knox deployment, select Android and then select Container.
  2. Configure the profile's General settings.
  3. Expand the VPN payload from the list and click ADD.
  4. Enter a Connection Name and select Workspace ONE Tunnel as the Connection Type.
    The Server text box populates automatically with your VMware Tunnel component server URL. If this component is not configured, you see a message and hyperlink to the system settings page where you can configure it.
  5. Select the appropriate DTR from the drop-down list.
  6. Configure the Always ON VPN setting if desired. If toggled ON, an option to enable Lockdown mode is displayed.
  7. Select Save & Publish.

What to do next

Configure an internal or public app to use the profile when making connections.