Secure Mobile Access 12.5 Administration Guide

Table of Contents

SMA Connect Tunnel Enhancements

In SMA12.5.0 the following are CT enhancements.

Browser Selection

The Connect Tunnel (CT) settings now allow you to choose your preferred browser for SAML authentication. This option is available for both Windows and macOS systems, enabling to select either the default browser, an embedded browser or web authentication. This change enhances the authentication process and accommodates user preferences.

SAML Logout

The SAML logout is available for connect tunnel clients.

When users disconnect the tunnel, they logout from their session on the IdP as well.

Split-DNS Mode

When using split-tunnel split-DNS mode, DNS requests for configured resources are sent over VPN, while all other requests are sent through the local network. To enable this mode, use CEM "EVPN_ENABLE_SPLIT_DNS=1" and ensure that "Use tunnel as primary network" is unchecked.

For more information on these features refer to Secure Mobile Access Connect Tunnel Guide.