<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Systems Manager VPN Settings in Endpoint Security</title>
    <link>https://community.cisco.com/t5/endpoint-security/systems-manager-vpn-settings/m-p/5430269#M11530</link>
    <description>&lt;P&gt;Hello Everyone,&lt;/P&gt;&lt;P&gt;I am trying to configure a VPN payload for iOS in Systems Manager but I cannot get it working for our VPN client. I believe I'm getting hung up on the Local vs. Remote identifiers. I am assuming the Local identifier is the app ID but what is the Remote identifier?&lt;/P&gt;&lt;P&gt;Other MDM's I've worked with allowed for a Connection Type of "Custom" and would ask for an Identifier and/or app bundle ID. I'm just guessing on using IKEv2 here and I'm not sure if the IDs match what Systems Manager is looking for.&lt;/P&gt;</description>
    <pubDate>Tue, 12 Dec 2023 21:54:25 GMT</pubDate>
    <dc:creator>DCHGIT</dc:creator>
    <dc:date>2023-12-12T21:54:25Z</dc:date>
    <item>
      <title>Systems Manager VPN Settings</title>
      <link>https://community.cisco.com/t5/endpoint-security/systems-manager-vpn-settings/m-p/5430269#M11530</link>
      <description>&lt;P&gt;Hello Everyone,&lt;/P&gt;&lt;P&gt;I am trying to configure a VPN payload for iOS in Systems Manager but I cannot get it working for our VPN client. I believe I'm getting hung up on the Local vs. Remote identifiers. I am assuming the Local identifier is the app ID but what is the Remote identifier?&lt;/P&gt;&lt;P&gt;Other MDM's I've worked with allowed for a Connection Type of "Custom" and would ask for an Identifier and/or app bundle ID. I'm just guessing on using IKEv2 here and I'm not sure if the IDs match what Systems Manager is looking for.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Dec 2023 21:54:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/systems-manager-vpn-settings/m-p/5430269#M11530</guid>
      <dc:creator>DCHGIT</dc:creator>
      <dc:date>2023-12-12T21:54:25Z</dc:date>
    </item>
    <item>
      <title>Re: Systems Manager VPN Settings</title>
      <link>https://community.cisco.com/t5/endpoint-security/systems-manager-vpn-settings/m-p/5430270#M11531</link>
      <description>&lt;P&gt;When configuring a VPN payload for iOS in Cisco Meraki’s Systems Manager, the Local Identifier is typically the identifier for your client or device, which could be an app ID, a user principal name (UPN), or an email address. The Remote Identifier is used to identify the VPN server or the remote end of the VPN connection. It’s often set to the server’s domain name or IP address.&lt;/P&gt;&lt;P&gt;For IKEv2 VPN connections, the Local Identifier can be the user’s email address or another unique identifier, and the Remote Identifier would be the VPN server’s address. If you’re using a custom VPN client, the app bundle ID might be used as part of the VPN configuration, but it’s not typically the Local Identifier.&lt;/P&gt;&lt;P&gt;In Systems Manager, if you’re setting up a manual VPN configuration, you’ll have the option to specify these identifiers. If you’re using Sentry VPN, which automates the VPN setup process, the identifiers may be managed automatically based on the settings of the MX Security Appliance or VM Concentrator in your Dashboard organization.&lt;/P&gt;&lt;P&gt;If you’re unsure about the correct identifiers to use, it’s best to consult with your VPN service provider or network administrator to ensure that the identifiers match the VPN server’s configuration. Additionally, you can refer to the Systems Manager VPN Configurations and Sentry VPN documentation for more detailed instructions on setting up VPN payloads in Systems Manager.&lt;/P&gt;&lt;P&gt;&lt;A href="https://documentation.meraki.com/SM/Profiles_and_Settings/Systems_Manager_VPN_Configurations_and_Sentry_VPN" target="_blank" rel="nofollow noopener noreferrer"&gt;Systems Manager VPN Configurations and Sentry VPN - Cisco Meraki&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://documentation.meraki.com/SM/Other_Topics/Systems_Manager_Logging_and_Troubleshooting" target="_blank" rel="nofollow noopener noreferrer"&gt;Systems Manager Logging and Troubleshooting - Cisco Meraki&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 13 Dec 2023 00:03:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/systems-manager-vpn-settings/m-p/5430270#M11531</guid>
      <dc:creator>aleabrahao</dc:creator>
      <dc:date>2023-12-13T00:03:05Z</dc:date>
    </item>
    <item>
      <title>Re: Systems Manager VPN Settings</title>
      <link>https://community.cisco.com/t5/endpoint-security/systems-manager-vpn-settings/m-p/5430271#M11532</link>
      <description>&lt;P&gt;meraki currently doesn't have support for 3rd party VPN providers custom attributes other than Cisco Anyconnect&lt;/P&gt;&lt;P&gt;The only resolution currently would be to create your VPN config inside Apple Configurator and upload that to SM using the custom mobile config capability:&lt;/P&gt;&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2023-12-13 at 16.43.55.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/263784iF171B569C6010D28/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Whilst you'd still be able to us a static cert for Clint auth, you'd lose the ability to use a unique cert per device capability of SM&lt;/P&gt;&lt;P&gt;Details:&lt;/P&gt;&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2023-12-13 at 16.44.46.png" style="width: 311px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/263787i2C8D6F0917159EE4/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 13 Dec 2023 16:54:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/systems-manager-vpn-settings/m-p/5430271#M11532</guid>
      <dc:creator>Arthur Dent</dc:creator>
      <dc:date>2023-12-13T16:54:28Z</dc:date>
    </item>
  </channel>
</rss>

