Skip to main content

2026년 3월 14일

Omnissa Workspace ONE Tunnel on Unified Access Gateway

Deploying Tunnel using the Unified Access Gateway appliance provides a secure and effective method for individual applications to access corporate resources.

Tunnel provides granular access control to applications and services, both in your network and in the cloud. The Tunnel client provides per-app management, with explicit trust of individual applications you want to manage. Domain-based filtering is used for easy definition of access control and split-tunneling policies. It is built on native frameworks and is provided across all major platforms. When an application is either launched, or creates a network request, that request is forwarded to the Tunnel client for routing. In this way, local filtering is provided to determine what traffic must be tunneled into your network, sent to the Internet or another proxy, or blocked from leaving the device. Data that is passed to the Tunnel gateway leverages TLS and DTLS algorithms to perform the following checks as part of authentication.

  • It uses SSL pinning to ensure that the server identity is correct.
  • It performs TLS mutual authentication with a client certificate that uniquely identifies the device.
  • The Tunnel gateway validates that the client certificate is on an allowlist of trusted certificates within the Workspace ONE UEM Console and performs a device compliance check to ensure the integrity of the user’s device.

For more information on supported platforms and Tunnel capabilities, see Omnissa Workspace ONE Tunnel guide at Omnissa Product Documentation.

Configure Tunnel

Configure Tunnel in the Workspace ONE UEM Console, and set up a server that meets the hardware, software, and network requirements. For more information, see Configure Omnissa Workspace ONE Tunnel at Omnissa Product Documentation.

Tunnel Deployment Model

Tunnel supports deploying a single-tier model and a multi-tier model. Both SaaS and on-premises Workspace ONE environments support the single-tier and multi-tier models. For more information, see Omnissa Workspace ONE Tunnel Deployment Model in the Omnissa Workspace ONE Tunnel guide at Omnissa Product Documentation.

Deployment of Tunnel with Unified Access Gateway

Unified Access Gateway hosts Workspace ONE services like per-app Tunnel, and is the preferred method of deployment. Deploying Tunnel on Unified Access Gateway can be done from either vSphere or Hyper-V and can be automated using PowerShell. The Tunnel service on Unified Access Gateway is same as what the Linux installer provides. For more information, see Installing Omnissa Workspace ONE Tunnel with Unified Access Gateway in the Omnissa Workspace ONE Tunnel guide at Omnissa Product Documentation.

Deployment of Tunnel with PowerShell

You can use PowerShell to deploy the Tunnel for Workspace ONE UEM. For more information, see Install Omnissa Workspace ONE Tunnel using PowerShell Script in the Omnissa Workspace ONE Tunnel guide at Omnissa Product Documentation.

이 페이지가 도움이 되었나요?

이 항목에 대한 피드백 보내기

이 항목이 도움이 되었나요?

개인정보나 기밀정보는 입력하지 마세요.

링크를 생성하는 중…