Skip to main content

July 20, 2026

Configure Omnissa Workspace ONE Tunnel Settings for Omnissa Workspace ONE UEM

Tunnel proxy deployment secures the network traffic between an end user device and a website through the Workspace ONE Web mobile application.

Procedure

  1. In the admin UI Configure Manually section, click Select.

  2. Navigate to General Settings > Edge Service Settings and click Show.

  3. Click ** Tunnel Settings** gearbox icon.

  4. Change NO to YES to enable tunnel proxy.

  5. Configure the following edge service settings resources.

    OptionDescription
    API Server URLEnter theWorkspace ONE UEM API server URL. For example, enter as https://example.com:<port>.
    API Server User NameEnter the user name to log in to the API server.
    API Server PasswordEnter the password to log in to the API server.
    Organization Group IDEnter the organization of the user.
    Tunnel Server HostnameEnter the Tunnel external hostname configured in the Workspace ONE UEM console.
  6. To configure other advanced settings, click More.

    OptionDescription
    Outbound Proxy HostEnter the host name where the outbound proxy is installed. Note: This is not the Tunnel Proxy.
    Outbound Proxy PortEnter the port number of the outbound proxy.
    Outbound Proxy User NameEnter the user name to log in to the outbound proxy.
    Outbound Proxy PasswordEnter the password to log in to the outbound proxy.
    NTLM AuthenticationChange NO to YES to specify that the outbound proxy request requires NTLM authentication.
    Use for Tunnel ProxyChange NO to YES to use this proxy as an outbound proxy for Tunnel. If not enabled, Unified Access Gateway uses this proxy for the initial API call to get the configuration from the Workspace ONE UEM console.
    Host EntriesEnter the details to be added in /etc/hosts file. Each entry should include an IP, a hostname, and an optional hostname alias in that order, separated by a space. For example, 10.192.168.1 example1.com, 10.192.168.2 example2.com example-alias. Click the '+' sign to add multiple host entries. Important: The host entries are saved only after you click Save.
    Trusted Certificates
    • To select a certificate in PEM format and add to the trust store, click +.
    • To provide a different name, edit the alias text box.
    • By default, the alias name is the filename of the PEM certificate.

    • To remove a certificate from the trust store, click -.
    7. Click Save.

Was this page helpful?

Provide feedback for this topic

Was this topic helpful?

Please do not include any personal or confidential information.

Generating link…