Create a VPN Profile to deploy corporate VPN settings directly to managed devices in Workspace ONE UEM powered by AirWatch. This profile enables end users to access corporate infrastructure remotely and securely.

Important: You can use a VPN profile only on Windows Rugged devices, but not on Windows CE devices.


  1. Navigate to Devices > Profiles & Resources > Profiles > Add and select Add Profile.
  2. Select Windows Rugged.
  3. Configure the profile's General settings.
  4. Select the VPN profile and click the Configure button.
  5. Configure the VPN settings.
    Settings Descriptions
    Connection Type

    Defines the connection for the VPN.

    Both of these types rely on the encryption protocol to be passed within the tunnel because they do not inherently have their own encryption methods.

    • PPTP – Point-to-Point Tunneling Protocol.
    • IPSec/L2TP – Layer 2 Tunneling Protocol.
    Connection Name Enter the connection name.
    Server Enter the hostname of IP address of the VPN server.

    Enter the user name for the VPN.

    You can use lookup values to use the device-specific value.


    Enter the domain for the VPN.

    You can use lookup values to use the device-specific value.


    Defines the authentication for the VPN.

    • Certificate – Use this option to deploy certificate-based authentication for your VPN connections.

      You must select this option if you select the Connection TypeIPSec/L2TP

    • Pre Shared Key – Use the PSK option when you have a shared secret that device users use to access the VPN.

      This authentication type often uses symmetric key algorithms for security.

    Shared Secret

    Enter the shared secret for the connection.

    Displays when Authentication is set to Pre Shared Key.

  6. Select Save & Publish to push the profile to devices.