These settings apply to supervised devices and devices operating in basic control mode.
The Per App VPN functionality lets a device establish a VPN connection when supported system apps or third-party apps are launched. This functionality is available for IKEv2 and IPSec connections.
For the Per App VPN functionality to work correctly, the iOS MDM Server version must not be earlier than 15.4.0.2019.
To configure Per App VPN for a third-party app:
In the main window of Kaspersky Security Center Web Console, select Assets (Devices) → Policies & profiles. In the list of group policies that opens, click the name of the policy that you want to configure.
In the policy properties window, select Application settings.
Select iOS and go to the Device configuration section.
On the Advanced tab, in the Per App VPN section, select the Enable Per App VPN check box.
Select the Per App VPN configuration alias that you want to apply to this VPN configuration.
The alias lets you use the corresponding VPN configuration for an installation package of a third-party app.
If a Per App VPN configuration alias is not selected, Per App VPN is still available for system apps.
If you change the previously selected Per App VPN configuration alias, VPN will be disabled for all third-party apps using this configuration after they are reinstalled or updated.
Click Add.
The new VPN configuration that supports Per App VPN functionality is displayed in the list.
Click Save to save the changes you have made.
To set up Per App VPN for the required third-party app, do one of the following: