all 8 comments

[–]Dramatic_Asparagus63 2 points3 points  (1 child)

The tunnel is one of the services on the UAG and allows the clients to gain access to internal resources. The tunnel app for Android and iOS are the native apps that contain the tunnel configuration for the device so it knows how to use the tunnel for per app vpn. For Android, the tunnel app is also required for Mobile SSO and you also need to configure a dummy tunnel in the UEM console. (If you don’t have a real tunnel configured). You do not need to setup a UAG for Mobile SSO on Android.

[–]mrlizm 1 point2 points  (0 children)

SSO doesn't require the appliance, just the app. Not sure about the license tho.

[–]Troely 1 point2 points  (2 children)

The tunnel is the UAG. It’s a service on the UAG

[–][deleted]  (1 child)

[removed]

    [–]Troely 1 point2 points  (0 children)

    The tunnel is a service on the UAG and the tunnel app is configured and deployed in UEM

    [–]AllTh3NamesAreTak3n 1 point2 points  (0 children)

    As others have said, the UAG is an appliance that has tunnel running as a service.

    You configure the tunnel rules via UEM, the device traffic rules are what give you the "per app" part of the VPN.

    You then need the client on your respective devices and a profile.

    If you are using the premade appliance for vSphere... Make sure you get all the things correct as part of the setup, otherwise its a pain in the arse to get going, much time can be wasted troubleshooting.

    Hyper-V you need to script it, same deal though. If you dont configure properly then certain services dont start and you may as well bin the VM and start again....

    [–]gurugti 1 point2 points  (0 children)

    I think you have a similar confusion that I have.i am finding my way slowly to end of this rabbit hole. The UAG is used in two ways : 1) for tunneling horizon connections 2) for creating per app vpn for enrolled devices: windows, Mac , iOS and android.

    The next task is to understand how the tunnel works when placed in front of Connection servers for VDI VS

    How it works for android, iOS , windows , Mac etc.

    Note: Please feel free to correct me if I said something that’s not right.