OpenVPN Profile Deployment Guide

A profile with the following settings is being deployed to all campus managed MacOS and Windows devices:

Setting

Value

connect:allowLocalDnsResolvers

true

connect:allowUnusedAddrFamilies

yes

connect:enable_dco

true

connect:tls_version_min_override

tls_1_3

connect:security_level

preferred

connect:connectionTimeout

30

connect:vpn_proto

tcp


Deployment Process

The deployment process is straightforward. However, please note the following:

⚠️ Windows Caveat — PowerShell Screen

On Windows devices, a black PowerShell window will briefly appear for approximately 5 seconds. This is expected behavior — it is running the profile import silently in the background. No action is required.

Uploaded Image (Thumbnail)

The black PowerShell window shown above will appear briefly during the import process and close on its own.


After the Profile is Imported

Once the profile has been successfully imported, you will be prompted with the following screen:

"Do you want to apply the configuration from C:\CWRU-OPenVPN-Win\openvpn-win.ocfg?"

Uploaded Image (Thumbnail)

Click OK to apply the configuration.


When Will This Prompt Appear?

This import confirmation screen will appear under the following conditions:

  • ✅ OpenVPN is open but not connected — The prompt will appear immediately.
  • 🔄 OpenVPN is currently connected — The prompt will appear the next time you start up or when you disconnect.
  • ❌ OpenVPN is closed — The prompt will appear the next time you launch OpenVPN.

💡 Note: If you have any issues or do not see the prompt, please contact your IT support team.