Skip to content

Commit 245e85c

Browse files
authored
Merge pull request #294461 from cherylmc/new-macos
new macOS Entra
2 parents 49e77c1 + 149094f commit 245e85c

File tree

8 files changed

+125
-181
lines changed

8 files changed

+125
-181
lines changed

.openpublishing.redirection.json

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -5264,6 +5264,11 @@
52645264
"redirect_url": "/azure/virtual-wan/monitor-virtual-wan",
52655265
"redirect_document_id": false
52665266
},
5267+
{
5268+
"source_path_from_root": "/articles/virtual-wan/openvpn-azure-ad-client-mac.md",
5269+
"redirect_url": "/azure/virtual-wan/point-to-site-entra-vpn-client-mac",
5270+
"redirect_document_id": false
5271+
},
52675272
{
52685273
"source_path_from_root": "/articles/virtual-wan/monitoring-best-practices.md",
52695274
"redirect_url": "/azure/virtual-wan/monitor-virtual-wan",

articles/virtual-wan/TOC.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -257,7 +257,7 @@
257257
- name: Windows clients
258258
href: point-to-site-entra-vpn-client-windows.md
259259
- name: macOS clients
260-
href: openvpn-azure-ad-client-mac.md
260+
href: point-to-site-entra-vpn-client-mac.md
261261
- name: Linux clients
262262
href: point-to-site-entra-vpn-client-linux.md
263263
- name: VPN client profiles

articles/virtual-wan/openvpn-azure-ad-client-mac.md

Lines changed: 0 additions & 106 deletions
This file was deleted.
Lines changed: 39 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,39 @@
1+
---
2+
title: Configure Azure VPN Client - P2S Microsoft Entra ID authentication - macOS
3+
titleSuffix: Azure Virtual WAN
4+
description: Learn how to configure the Azure VPN Client on macOS for Virtual WAN P2S configurations that use Microsoft Entra ID authentication.
5+
ms.service: azure-virtual-wan
6+
ms.topic: how-to
7+
ms.date: 02/11/2025
8+
ms.author: cherylmc
9+
author: cherylmc
10+
---
11+
12+
# Configure Azure VPN Client - Microsoft Entra ID authentication - macOS
13+
14+
This article helps you configure your macOS client computer to connect to an Azure virtual network using a Virtual WAN User VPN point-to-site (P2S) connection. These steps apply to Azure VPN gateways configured for Microsoft Entra ID authentication. Microsoft Entra ID authentication only supports OpenVPN® protocol connections and requires the Azure VPN Client. The Azure VPN client for macOS is currently not available in France and China due to local regulations and requirements.
15+
16+
## Before you begin
17+
18+
Verify that you are on the correct article. The following table shows the configuration articles available for Azure Virtual WAN point-to-site (P2S) VPN clients. Steps differ, depending on the authentication type, tunnel type, and the client OS.
19+
20+
[!INCLUDE [P2S client configuration articles](../../includes/virtual-wan-vpn-client-install-articles.md)]
21+
22+
## Prerequisites
23+
24+
This article assumes that you've already performed the following prerequisites:
25+
26+
* You configured a virtual WAN according to the steps in the [Configure a User VPN (P2S) gateway for Microsoft Entra ID authentication](point-to-site-entra-gateway.md) article. Your User VPN configuration must use Microsoft Entra ID (Azure Active Directory) authentication and the OpenVPN tunnel type.
27+
* You generated and downloaded the VPN client configuration files. For steps to generate a VPN client profile configuration package, see [Download global and hub profiles](global-hub-profile.md).
28+
29+
[!INCLUDE [Supported OS, processors, Rosetta software](../../includes/vpn-gateway-vwan-macos-prerequisites-vpn-client-include.md)]
30+
31+
[!INCLUDE [Configuration steps](../../includes/vpn-gateway-vwan-entra-vpn-client-mac.md)]
32+
33+
## Optional client configuration settings
34+
35+
You can configure the Azure VPN Client with optional configuration settings such as additional DNS servers, custom DNS, forced tunneling, custom routes, and other additional settings. For a description of the available optional settings and configuration steps, see [Azure VPN Client optional settings](azure-vpn-client-optional-configurations-windows.md).
36+
37+
## Next steps
38+
39+
For more information about Microsoft-registered Azure VPN Client, see [Configure P2S User VPN for Microsoft Entra ID authentication](point-to-site-entra-gateway.md).

articles/vpn-gateway/point-to-site-entra-vpn-client-mac.md

Lines changed: 1 addition & 73 deletions
Original file line numberDiff line numberDiff line change
@@ -20,79 +20,7 @@ Make sure you have the following prerequisites before you proceed with the steps
2020

2121
[!INCLUDE [Supported OS, processors, Rosetta software](../../includes/vpn-gateway-vwan-macos-prerequisites-vpn-client-include.md)]
2222

23-
## Workflow
24-
25-
This article continues on from the [Configure a P2S VPN gateway for Microsoft Entra ID authentication](point-to-site-entra-gateway.md) steps. This article helps you:
26-
27-
1. Download and install the Azure VPN Client for macOS.
28-
1. Extract the VPN client profile configuration files.
29-
1. Import the client profile settings to the VPN client.
30-
1. Create a connection and connect to Azure.
31-
32-
## Download the Azure VPN Client
33-
34-
1. Download the latest [Azure VPN Client](https://apps.apple.com/us/app/azure-vpn-client/id1553936137) from the Apple Store.
35-
1. Install the client on your computer.
36-
37-
## <a name="generate"></a>Extract client profile configuration files
38-
39-
If you used the P2S server configuration steps as mentioned in the [Prerequisites](#prerequisites) section, you've already generated and downloaded the VPN client profile configuration package that contains the VPN profile configuration files. If you need to generate configuration files, see [Download the VPN client profile configuration package](point-to-site-entra-gateway.md#download).
40-
41-
When you generate and download a VPN client profile configuration package, all the necessary configuration settings for VPN clients are contained in a VPN client profile configuration zip file. The VPN client profile configuration files are specific to the P2S VPN gateway configuration for the virtual network. If there are any changes to the P2S VPN configuration after you generate the files, such as changes to the VPN protocol type or authentication type, you need to generate new VPN client profile configuration files and apply the new configuration to all of the VPN clients that you want to connect.
42-
43-
Locate and unzip the VPN client profile configuration package you generated and downloaded (listed in the [Prerequisites](#prerequisites)). Open the **AzureVPN** folder. In this folder, you'll see either the **azurevpnconfig_aad.xml** file or the **azurevpnconfig.xml** file, depending on whether your P2S configuration includes multiple authentication types. The .xml file contains the settings you use to configure the VPN client profile.
44-
45-
## <a name="modify"></a>Modify profile configuration files
46-
47-
[!INCLUDE [custom audience steps](../../includes/vpn-gateway-entra-vpn-client-custom.md)]
48-
49-
## Import VPN client profile configuration files
50-
51-
> [!NOTE]
52-
> [!INCLUDE [Entra VPN client note](../../includes/vpn-gateway-entra-vpn-client-note.md)]
53-
54-
1. On the Azure VPN Client page, select **Import**.
55-
56-
1. Navigate to the folder containing the file that you want to import, select it, then click **Open**.
57-
58-
1. On this screen, notice the connection values are populated using the values in the imported VPN client configuration file.
59-
60-
* Verify that the **Certificate Information** value shows **DigiCert Global Root G2**, rather than the default or blank. Adjust the value if necessary.
61-
* Notice the Client Authentication values align with the values that were used to configure the VPN gateway for Microsoft Entra ID authentication. This field must reflect the same value that your gateway is configured to use.
62-
63-
:::image type="content" source="media/point-to-site-entra-vpn-client-mac/values.png" alt-text="Screenshot of Azure VPN Client saving the imported profile settings." lightbox="media/point-to-site-entra-vpn-client-mac/values.png":::
64-
65-
1. Click **Save** to save the connection profile configuration.
66-
1. In the VPN connections pane, select the connection profile that you saved. Then, click **Connect**.
67-
1. Once connected, the status changes to **Connected**. To disconnect from the session, click **Disconnect**.
68-
69-
## Create a connection manually
70-
71-
1. Open the Azure VPN Client. At the bottom of the client, select **Add** to create a new connection.
72-
73-
1. On the **Azure VPN Client** page, you can configure the profile settings. Change the **Certificate Information** value to show **DigiCert Global Root G2**, rather than the default or blank, then click **Save**.
74-
75-
Configure the following settings:
76-
77-
* **Connection Name:** The name by which you want to refer to the connection profile.
78-
* **VPN Server:** This name is the name that you want to use to refer to the server. The name you choose here doesn't need to be the formal name of a server.
79-
* **Server Validation**
80-
* **Certificate Information:** DigiCert Global Root G2
81-
* **Server Secret:** The server secret.
82-
* **Client Authentication**
83-
* **Authentication Type:** Microsoft Entra ID
84-
* **Tenant:** Name of the tenant.
85-
* **Audience:** The Audience value must match the value that your P2S gateway is configured to use.
86-
* **Issuer:** Name of the issuer.
87-
1. After filling in the fields, click **Save**.
88-
1. In the VPN connections pane, select the connection profile that you configured. Then, click **Connect**.
89-
90-
## Remove a VPN connection profile
91-
92-
You can remove the VPN connection profile from your computer.
93-
94-
1. Open the Azure VPN Client.
95-
1. Select the VPN connection that you want to remove, then click **Remove**.
23+
[!INCLUDE [Configuration steps](../../includes/vpn-gateway-vwan-entra-vpn-client-mac.md)]
9624

9725
## Optional client configuration settings
9826

includes/virtual-wan-vpn-client-install-articles.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -16,5 +16,5 @@ ms.topic: include
1616
| | OpenVPN | iOS | [OpenVPN client](../articles/virtual-wan/point-to-site-vpn-client-certificate-openvpn-ios.md) |
1717
| | OpenVPN |Linux | [Azure VPN client](../articles/virtual-wan/point-to-site-azure-vpn-client-certificate-linux.md)<br>[OpenVPN client](../articles/virtual-wan/point-to-site-vpn-client-certificate-openvpn-linux.md)|
1818
| Microsoft Entra ID | OpenVPN | Windows | [Azure VPN client](../articles/virtual-wan/point-to-site-entra-vpn-client-windows.md) |
19-
| | OpenVPN | macOS | [Azure VPN client](../articles/virtual-wan/openvpn-azure-ad-client-mac.md) |
19+
| | OpenVPN | macOS | [Azure VPN client](../articles/virtual-wan/point-to-site-entra-vpn-client-mac.md) |
2020
| | OpenVPN| Linux |[Azure VPN client](../articles/virtual-wan/point-to-site-entra-vpn-client-linux.md) |

0 commit comments

Comments
 (0)