In SMA12.5.0 the following are CT enhancements.
The Connect Tunnel (CT) settings now allow you to choose your preferred browser for SAML authentication. This option is available for both Windows and macOS systems, enabling to select either the default browser, an embedded browser or web authentication. This change enhances the authentication process and accommodates user preferences.
The SAML logout is available for connect tunnel clients.
When users disconnect the tunnel, they logout from their session on the IdP as well.
When using split-tunnel split-DNS mode, DNS requests for configured resources are sent over VPN, while all other requests are sent through the local network. To enable this mode, use CEM "EVPN_ENABLE_SPLIT_DNS=1" and ensure that "Use tunnel as primary network" is unchecked.
For more information on these features refer to Secure Mobile Access Connect Tunnel Guide.