Task:Setup instructions for manual distribution of mobile-config scripts for iPhones and iPads.
Assumptions:These instructions assume the mobile-config script has already been generated, These instructions are for situations when mobile device management (MDM) is not available. It assumes email distribution from a private server. Use caution whenever distributing certificates and private keys!
Background:Mobile-device scripts run on any iPhone or iPad –simply open the email attachment to start the process. It installs certificates and configures the IKEv2 VPN. This script can configure multiple devices.
Security ConsiderationsAlso note, the script includes the private key for the client certificate. This provides identity validation, authentication, and authorization. Anyone that gets a hold of this key can impersonate the account. It’s critical to use a passcode and enforce encryption. Do not install these files on jailbroken devices. Delete the script from your mailbox after all devices are configured.
Brief instructions:Step 1: Open mobile-config file to start the profile installation.
· N.B., This script is not signed –that’s OK.
· Click Next.
Step 2: Enter device passcode.
Step 3: Consent.
· Brief description for mobile-config.
· Installation requires consent.
· Click Next.
Step 4: Confirm Install.
· General VPN disclosure.
· Click Install. Click Done.
Step 5. Connect to the VPN.
· Open Settings.
· Toggle the VPN button.
· The VPN symbol appears in upper left-hand corner to confirm active VPN sessions.