Force all iPhone traffic through VPN using on demand settings?
Hi Everyone,
I am going to be sending some engineers to Asia and want to force ALL of their iPhone traffic to use our VPN. I understand this will probably have a negative effect the iPhone's battery life, but I would rather they have no connection if the alternative is unencrypted traffic coming from their devices.
From what I have read, I think I see two potential ways of accomplishing this, but I have questions about each method.
1. Use L2TP and select "send all traffic". I'm concerned about the connection timing out or getting dropped as their phones switch from wifi to cellular data. Does anyone know if the "send all traffic" button causes the phone to keep the VPN connection alive or reinitiate the VPN as needed for for 'all traffic'?
2. Use IPsec with VPN On Demand and set a rule to always use VPN for * address (via the iPhone Configuration Utility). Does anyone know if this will force all traffic to use the VPN, or does it only apply to some connections (i.e. web browsing and email)?
Last but not least, after the iPhones are configured is there an easy way to test/confirm that they are using the VPN for 100% of their outgoing communications?
Thanks in advance!
iPhone 5, iOS 6.0.2