- In Jamf Pro, click Devices at the top of the page.
- Click Configuration Profiles.
- Click New.
- Use the General payload to configure the basic settings for the profile.
- In the Name field, enter the name of the iboss security filter group name.
- From the Distribution Method pop-up menu, select "Install Automatically".
- Configure the VPN payload and modify the following settings:
- VPN Type —VPN
- Connection Type —Custom SSL
- Provider Type —App Proxy
- Identifier —Set this to the bundle identifier that corresponds to the iboss cloud Enterprise app.
- Server —Set this to the DNS hostname of your preferred iboss cloud DNS cluster.
- Account —Use one of the following variables for the identifier type that will be populated for each device:
$USERNAME$DEVICENAME$SERIALNUMBER
- Under Custom Data, enter the following keys and values:
- GatewayPort —Set this to the port used by the iboss cloud proxy.
- RunTimeMode —standard
- ProxyAutoConfigurationScriptURL —Set this to the URL for the iboss cloud PAC script.
- ComputerOverrideUser —If you want auto group categorization to occur with iboss cloud, set this to 0. If you want all group categorization to occur based on the device's configuration policy, set this to 1.
- WebSecurityKey —Set this to the group security key for the policy's targeted filter group.
- GatewayHost —Use the hostname of the preferred DNS cluster used for the Server field.
- CloudRegistrationSSLPort —If the proxy port was provisioned as 8009, set this to 8016. If the proxy port was provisioned as 80, set this to 443.
- LogLevel —0
- AutoLoginSecurityGroups —Set this to the group name that is associated with the security key from the WebSecurityKey parameter.
- Configure the following settings:
- User Authentication —Certificate
- Identity Certificate —None
- Enable VPN On Demand —Enabled
- Proxy Setup —None
- (Optional) If you plan to use SSL decryption, you must add the iboss cloud SSL decryption certificate to the configuration profile.
Configure the Certificate payload.
Enter a name for the certificate.
From the Select Certificate Option pop-up menu, select "Upload".
- Select Upload Certificate.Note:
The file you upload to Jamf Pro must use the .cer file type.
Upload your iboss cloud SSL decryption certificate.
- Click the Scope tab and configure the scope of the profile.
- Click Save.