Enable sinkhole VPN mitigation for iOS devices
Network threats can be mitigated using a sinkhole VPN profile in the MTD Local Actions
NOTE: | MobileIron recommends selecting the Network Sinkhole action ONLY for network-related threats. Use of Network Sinkhole action for device and application threats can result in disabling network connectivity to the device without the ability to restore network connectivity. |
Before you begin
- Make sure you have reviewed Creating MTD local actions in Core.
Procedure
- From the MobileIron Core Policies & Configs > Policies page, create or edit an MTD local action policy.
-
From a threat in the Network Threats section, select Network Sinkhole from the Local Action iOS column.
Figure 1. Network Sinkhole option in Actions menu.
-
Finish your configuration choices, and click Save. The Policy page displays, with your updated configuration.
NOTE: The VPN policy cannot be edited. To remove the configuration, remove the Network Sinkhole options from the policy. - To push this policy to devices, select the policy.
- Click Actions > Apply to Label. The Apply to Label menu displays.
- Select the device labels that will receive the policy.
- Click Apply. The policy is pushed to labeled devices.