mirror of
https://github.com/MicrosoftDocs/windows-itpro-docs.git
synced 2025-06-16 19:03:46 +00:00
@ -73,7 +73,7 @@ Two client-side configuration service providers are leveraged for VPN device com
|
|||||||
- Upon request, forwards the Health Attestation Certificate (received from HAS) and related runtime information to the MDM server for verification
|
- Upon request, forwards the Health Attestation Certificate (received from HAS) and related runtime information to the MDM server for verification
|
||||||
|
|
||||||
> [!NOTE]
|
> [!NOTE]
|
||||||
>Currently, it is required that certificates be issued from an on-premises CA, and that SSO be enabled in the user’s VPN profile. This will enable the user to obtain Kerberos tickets in order to access resources on-premises. Kerberos currently does not support the use of Azure AD certificates.
|
> Currently, it is required that certificates used for obtaining Kerberos tickets must be issued from an on-premises CA, and that SSO must be enabled in the user’s VPN profile. This will enable the user to access on-premises resources.
|
||||||
|
|
||||||
## Client connection flow
|
## Client connection flow
|
||||||
The VPN client side connection flow works as follows:
|
The VPN client side connection flow works as follows:
|
||||||
|
Reference in New Issue
Block a user