Looks like no one’s replied in a while. To start the conversation again, simply ask a new question.

Automating Network Extension Authorization in MDM-Managed Devices

In pursuit of a seamless network extension deployment process, I seek to eliminate the need for end-users to manually approve or disapprove the execution of a network extension.

Currently, I have successfully set up the network extension alongside the corresponding application within my infrastructure.


To accomplish this, I am leveraging Intune for both profile deployment and app installation. The installation procedure proceeds without issues, and I have deployed configuration profiles to grant the application full disk access, as well as whitelist the network extension. Despite these configurations, however, an alert continues to prompt users, asking for permission to run the extension.


My query centers on whether there exists a method, through profile configurations or otherwise, to facilitate the automatic authorization of the network extension's execution without requiring user intervention.



Here is the current configuration in Intune for allowing the extension to run.


Having this configured will prevent this screen from appearing:

And only this will appear:


My target is to automatically allow to my extension to run without asking user consent.



Your insights and expertise in this matter would be greatly appreciated. Thank you for your assistance.


MacBook Pro 13″, macOS 11.4

Posted on Aug 24, 2023 4:54 AM

Reply

Similar questions

1 reply
Sort By: 

Aug 24, 2023 5:29 PM in response to cviorel

These forums are mostly for retail Apple customers to help each other. You would be better served asking this question on the MacAdmins Slack which is populated by thousands of Mac Admins and Engineers. There are several Intune related channels and Microsoft engineers have been known to lurk and jump into conversations now and then. When Office for Mac was re-written and released, the lead engineer joined this Slack and as a result he and his team greatly improved the deployment ability of Office for Mac. Prior to that, there was hardly any documentation and the MacAdmins were reverse engineering Office for Mac trying to figure out all the issues.


https://www.macadmins.org/



Reply

Automating Network Extension Authorization in MDM-Managed Devices

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.