名前空間: microsoft.graph
重要:Microsoft は Intune /beta API をサポートしていますが、より頻繁に変更される可能性があります。 可能な場合は、バージョン v1.0 を使用することをお勧めします。 バージョン セレクターを使用して、バージョン v1.0 で API が使用できるかどうかを確認します。
注:Intune 用 Microsoft Graph API には、テナントの有効な Intune ライセンスが必要です。
このプロファイルで構成を指定することで、目的のIKEv2 VPNエンドポイントに接続するようにiOSデバイスに指示できます。
iosVpnConfiguration から継承
メソッド
| メソッド | 戻り値の型 | 説明 |
|---|---|---|
| iosikEv2VpnConfigurations の一覧表示 | iosikEv2VpnConfiguration コレクション | iosikEv2VpnConfiguration オブジェクトのプロパティと関係を一覧表示します。 |
| iosikEv2VpnConfiguration を取得する | iosikEv2VpnConfiguration | iosikEv2VpnConfiguration オブジェクトのプロパティとリレーションシップを読み取ります。 |
| iosikEv2VpnConfiguration の作成 | iosikEv2VpnConfiguration | 新しい iosikEv2VpnConfiguration オブジェクトを作成します。 |
| iosikEv2VpnConfiguration を削除する | なし | iosikEv2VpnConfiguration を削除します。 |
| iOS を更新する iosikEv2VpnConfiguration | iosikEv2VpnConfiguration | iosikEv2VpnConfiguration オブジェクトのプロパティを更新します。 |
プロパティ
| プロパティ | 型 | 説明 |
|---|---|---|
| id | String | エンティティのキー。 deviceConfiguration から継承します |
| lastModifiedDateTime | DateTimeOffset | オブジェクトの最終更新の DateTime。 deviceConfiguration から継承します |
| roleScopeTagIds | String collection | このエンティティ インスタンスのスコープ タグの一覧。 deviceConfiguration から継承します |
| supportsScopeTags | ブール型 | 基になるデバイス構成がスコープ タグの割り当てをサポートしているかどうかを示します。 この値が false の場合、ScopeTags プロパティへの割り当ては許可されず、スコープを指定されたユーザーにエンティティが表示されません。 これは、Silverlight で作成されたレガシ ポリシーで発生し、Azure Portal でポリシーを削除して再作成することで解決できます。 このプロパティは読み取り専用です。 deviceConfiguration から継承します |
| deviceManagementApplicabilityRuleOsEdition | deviceManagementApplicabilityRuleOsEdition | このポリシーの OS エディションの適用範囲。 deviceConfiguration から継承します |
| deviceManagementApplicabilityRuleOsVersion | deviceManagementApplicabilityRuleOsVersion | このポリシーの OS バージョン適用性ルール。 deviceConfiguration から継承します |
| deviceManagementApplicabilityRuleDeviceMode | deviceManagementApplicabilityRuleDeviceMode | このポリシーのデバイス モード適用性ルール。 deviceConfiguration から継承します |
| createdDateTime | DateTimeOffset | オブジェクトが作成された DateTime。 deviceConfiguration から継承します |
| description | String | 管理者が指定した、デバイス構成についての説明。 deviceConfiguration から継承します |
| displayName | String | 管理者が指定した、デバイス構成の名前。 deviceConfiguration から継承します |
| version | Int32 | デバイス構成のバージョン。 deviceConfiguration から継承します |
| connectionName | 文字列 | ユーザーに表示される接続名。 appleVpnConfiguration から継承されます |
| connectionType | appleVpnConnectionType | 接続の種類。
appleVpnConfiguration から継承されます。 指定可能な値は、 ciscoAnyConnect、 pulseSecure、 f5EdgeClient、 dellSonicWallMobileConnect、 checkPointCapsuleVpn、 customVpn、 ciscoIPSec、 citrix、 ciscoAnyConnectV2、 paloAltoGlobalProtect、 zscalerPrivateAccess、 f5Access2018、 citrixSso、 paloAltoGlobalProtectV2、 ikEv2、 alwaysOn、 microsoftTunnel、 netMotionMobility、 microsoftProtect です。 |
| loginGroupOrDomain | 文字列 | 接続タイプが Dell SonicWALL Mobile Connection に設定されている場合のログイン グループまたはドメイン。 appleVpnConfiguration から継承されます |
| role | 文字列 | 接続の種類が Pulse Secure に設定されている場合のロール。 appleVpnConfiguration から継承されます |
| realm | 文字列 | 接続の種類が "パルス セキュア" に設定されている場合の領域。 appleVpnConfiguration から継承されます |
| サーバー | vpnServer | ネットワーク上の VPN サーバー。 エンド ユーザーがこのネットワークの場所にアクセスできることを確認します。 appleVpnConfiguration から継承されます |
| 識別子 | 文字列 | 接続の種類がカスタム VPN に設定されている場合に VPN ベンダーによって提供される識別子。 例: Cisco AnyConnect は、com.cisco.anyconnect.applevpn.plugin の形式の識別子を使用します。 appleVpnConfiguration から継承 |
| customData | keyvalue コレクション | 接続の種類が [カスタム VPN] に設定されている場合のカスタム データ。 このフィールドを使用して、Intune でサポートされていないが、VPN ソリューションで使用できる機能を有効にします。 これらのキーと値のペアを追加する方法については、VPN ベンダーにお問い合わせください。 このコレクションには、最大 25 個の要素を含めることができます。 appleVpnConfiguration から継承されます |
| customKeyValueData | keyValuePair コレクション | 接続の種類が [カスタム VPN] に設定されている場合のカスタム データ。 このフィールドを使用して、Intune でサポートされていないが、VPN ソリューションで使用できる機能を有効にします。 これらのキーと値のペアを追加する方法については、VPN ベンダーにお問い合わせください。 このコレクションには、最大 25 個の要素を含めることができます。 appleVpnConfiguration から継承されます |
| enableSplitTunneling | ブール型 | すべてのネットワーク トラフィックを VPN 経由で送信します。 appleVpnConfiguration から継承されます |
| authenticationMethod | vpnAuthenticationMethod | この VPN 接続の認証方法。
appleVpnConfiguration から継承されます。 可能な値は、certificate、usernameAndPassword、sharedSecret、derivedCredential、azureAD です。 |
| enablePerApp | ブール型 | これを true に設定すると Per-App VPN ペイロードが作成されます。このペイロードは、後でエンド ユーザーの iOS デバイスでこの VPN 接続をトリガーできるアプリに関連付けることができます。 appleVpnConfiguration から継承されます |
| safariDomains | String collection | このアプリごとの VPN 設定が有効になっている場合の Safari ドメイン。 この VPN に関連付けられているアプリに加えて、ここで指定した Safari ドメインもこの VPN 接続をトリガーできます。 appleVpnConfiguration から継承されます |
| onDemandRules | vpnOnDemandRule コレクション | オンデマンド ルール。 このコレクションには、最大で 500 個の要素を含めることができます。 appleVpnConfiguration から継承されます |
| providerType | vpnProviderType | アプリごとの VPN のプロバイダーの種類。
appleVpnConfiguration から継承されます。 可能な値は notConfigured、appProxy、packetTunnel です。 |
| associatedDomains | String collection | 関連付けられたドメイン appleVpnConfiguration から継承 |
| excludedDomains | String collection | アプリごとの VPN がアクティブになっている場合でも、VPN ではなくパブリック インターネット経由でアクセスされるドメイン 継承元 appleVpnConfiguration |
| disableOnDemandUserOverride | ブール型 | ユーザーが設定アプリで自動 VPN を無効にできないように切り替える appleVpnConfiguration から継承 |
| disconnectOnIdle | ブール型 | オンデマンド接続がアイドルになった後に切断するかどうか appleVpnConfiguration から継承 |
| disconnectOnIdleTimerInSeconds | Int32 | オンデマンド接続を切断するまでの待機時間 (秒単位)。 有効な値: 0 から 65535 appleVpnConfiguration から継承 |
| proxyServer | vpnProxyServer | プロキシ サーバー。 appleVpnConfiguration から継承されます |
| optInToDeviceIdSharing | ブール型 | ネットワーク アクセス制御の検証中に使用するために、デバイスの ID をサード パーティの VPN クライアントと共有すること Opt-In。 appleVpnConfiguration から継承されます |
| userDomain | 文字列 | Zscaler のみ。 Zscaler アプリでログイン フィールドに事前設定する静的ドメインを入力します。 これを空のままにすると、ユーザーの Azure Active Directory ドメインが代わりに使用されます。 継承元 iosVpnConfiguration |
| strictEnforcement | ブール型 | Zscaler のみ。 ユーザーが Zscaler アプリにサインインするまで、ネットワーク トラフィックをブロックします。 "True" は、トラフィックがブロックされていることを意味します。 継承元 iosVpnConfiguration |
| cloudName | 文字列 | Zscaler のみ。 ユーザーが割り当てられている Zscaler クラウド。 継承元 iosVpnConfiguration |
| excludeList | String collection | Zscaler のみ。 Zscaler クラウド経由で送信されないネットワーク アドレスのリスト。 継承元 iosVpnConfiguration |
| targetedMobileApps | appListItem コレクション | 対象のモバイル アプリ。 このコレクションには、最大で 500 個の要素を含めることができます。 継承元 iosVpnConfiguration |
| microsoftTunnelSiteId | 文字列 | Microsoft トンネル サイト ID。 継承元 iosVpnConfiguration |
| childSecurityAssociationParameters | iosVpnSecurityAssociationParameters | 子セキュリティ アソシエーション パラメーター |
| clientAuthenticationType | vpnClientAuthenticationType | VPN クライアントが使用するクライアント認証の種類。 可能な値は、userAuthentication、deviceAuthentication です。 |
| deadPeerDetectionRate | vpnDeadPeerDetectionRate | ピア接続がまだアクティブかどうかをチェックする頻度を決定します。 . 使用可能な値: medium、none、low、high。 |
| disableMobilityAndMultihoming | ブール型 | MOBIKEを無効にする |
| disableRedirect | ブール型 | リダイレクトの無効化 |
| enableCertificateRevocationCheck | ブール型 | ベスト エフォートの失効チェックを有効にします。サーバーの応答がタイムアウトしても失敗しません |
| enableEAP | ブール型 | EAP のみの認証を有効にします |
| enablePerfectForwardSecrecy | ブール型 | Perfect Forward Secrecy (PFS) を有効にします。 |
| enableUseInternalSubnetAttributes | ブール型 | [内部サブネット属性を使用する] を有効にします。 |
| localIdentifier | vpnLocalIdentifier | VPN 経由で接続しようとしているクライアントを識別する方法。 . 可能な値は deviceFQDN、empty、clientCertificateSubjectName です。 |
| remoteIdentifier | 文字列 | IKEv2 サーバーのアドレス。 FQDN、UserFQDN、ネットワーク アドレス、または ASN1DN である必要があります |
| securityAssociationParameters | iosVpnSecurityAssociationParameters | セキュリティ アソシエーション パラメーター |
| serverCertificateCommonName | 文字列 | サーバー認証で使用される IKEv2 サーバー証明書の共通名 |
| serverCertificateIssuerCommonName | 文字列 | 発行者 認証で使用される IKEv2 サーバー証明書発行者の共通名 |
| serverCertificateType | vpnServerCertificateType | VPN サーバーが認証のために VPN クライアントに提示する証明書の種類。 使用可能な値: rsa、ecdsa256、ecdsa384、ecdsa521。 |
| sharedSecret | 文字列 | 共有シークレット認証が選択されているときに使用します |
| tlsMaximumVersion | 文字列 | EAP-TLS 認証で使用される最大 TLS バージョン |
| tlsMinimumVersion | 文字列 | EAP-TLS 認証で使用する最小 TLS バージョン |
| allowDefaultSecurityAssociationParameters | ブール型 | 明示的に指定しない限り、すべてのパラメーターをデバイスの既定値に設定することで、セキュリティ アソシエーション パラメーターを使用できるようにします。 |
| allowDefaultChildSecurityAssociationParameters | ブール型 | 明示的に指定しない限り、すべてのパラメーターをデバイスの既定値に設定することで、子セキュリティ アソシエーション パラメーターを使用できるようにします。 |
| alwaysOnConfiguration | appleVpnAlwaysOnConfiguration | AlwaysOn の構成 |
| enableAlwaysOnConfiguration | ブール型 | Always On VPN が有効になっているかどうかを判断します |
| mtuSizeInBytes | Int32 | 最大伝送単位。 有効な値: 1280 - 1400 |
リレーションシップ
| リレーションシップ | 型 | 説明 |
|---|---|---|
| groupAssignments | deviceConfigurationGroupAssignment コレクション | デバイスの構成プロファイルのグループ割り当てのリストです。 deviceConfiguration から継承します |
| assignments | deviceConfigurationAssignment コレクション | デバイスの構成プロファイルの割り当てのリスト。 deviceConfiguration から継承します |
| deviceStatuses | deviceConfigurationDeviceStatus コレクション | デバイスごとのデバイス構成のインストール状況。 deviceConfiguration から継承します |
| userStatuses | deviceConfigurationUserStatus コレクション | ユーザー別のデバイス構成のインストールの状態。 deviceConfiguration から継承します |
| deviceStatusOverview | deviceConfigurationDeviceOverview | デバイス構成のデバイス状態の概要 (deviceConfiguration から継承) |
| userStatusOverview | deviceConfigurationUserOverview | デバイス構成のユーザー状態の概要 (deviceConfiguration から継承) |
| deviceSettingStateSummaries | settingStateDeviceSummary コレクション | デバイス構成設定状態のデバイスの要約 (deviceConfiguration から継承) |
| identityCertificate | iosCertificateProfileBase | 認証方法が証明書の場合のクライアント認証用の ID 証明書。 継承元 iosVpnConfiguration |
| derivedCredentialSettings | deviceManagementDerivedCredentialSettings | 認証に使用する派生資格情報のテナント レベルの設定。 継承元 iosVpnConfiguration |
JSON 表記
以下は、リソースの JSON 表記です。
{
"@odata.type": "#microsoft.graph.iosikEv2VpnConfiguration",
"id": "String (identifier)",
"lastModifiedDateTime": "String (timestamp)",
"roleScopeTagIds": [
"String"
],
"supportsScopeTags": true,
"deviceManagementApplicabilityRuleOsEdition": {
"@odata.type": "microsoft.graph.deviceManagementApplicabilityRuleOsEdition",
"osEditionTypes": [
"String"
],
"name": "String",
"ruleType": "String"
},
"deviceManagementApplicabilityRuleOsVersion": {
"@odata.type": "microsoft.graph.deviceManagementApplicabilityRuleOsVersion",
"minOSVersion": "String",
"maxOSVersion": "String",
"name": "String",
"ruleType": "String"
},
"deviceManagementApplicabilityRuleDeviceMode": {
"@odata.type": "microsoft.graph.deviceManagementApplicabilityRuleDeviceMode",
"deviceMode": "String",
"name": "String",
"ruleType": "String"
},
"createdDateTime": "String (timestamp)",
"description": "String",
"displayName": "String",
"version": 1024,
"connectionName": "String",
"connectionType": "String",
"loginGroupOrDomain": "String",
"role": "String",
"realm": "String",
"server": {
"@odata.type": "microsoft.graph.vpnServer",
"description": "String",
"address": "String",
"isDefaultServer": true
},
"identifier": "String",
"customData": [
{
"@odata.type": "microsoft.graph.keyValue",
"key": "String",
"value": "String"
}
],
"customKeyValueData": [
{
"@odata.type": "microsoft.graph.keyValuePair",
"name": "String",
"value": "String"
}
],
"enableSplitTunneling": true,
"authenticationMethod": "String",
"enablePerApp": true,
"safariDomains": [
"String"
],
"onDemandRules": [
{
"@odata.type": "microsoft.graph.vpnOnDemandRule",
"ssids": [
"String"
],
"dnsSearchDomains": [
"String"
],
"probeUrl": "String",
"action": "String",
"domainAction": "String",
"domains": [
"String"
],
"probeRequiredUrl": "String",
"interfaceTypeMatch": "String",
"dnsServerAddressMatch": [
"String"
]
}
],
"providerType": "String",
"associatedDomains": [
"String"
],
"excludedDomains": [
"String"
],
"disableOnDemandUserOverride": true,
"disconnectOnIdle": true,
"disconnectOnIdleTimerInSeconds": 1024,
"proxyServer": {
"@odata.type": "microsoft.graph.vpnProxyServer",
"automaticConfigurationScriptUrl": "String",
"address": "String",
"port": 1024
},
"optInToDeviceIdSharing": true,
"userDomain": "String",
"strictEnforcement": true,
"cloudName": "String",
"excludeList": [
"String"
],
"targetedMobileApps": [
{
"@odata.type": "microsoft.graph.appListItem",
"name": "String",
"publisher": "String",
"appStoreUrl": "String",
"appId": "String"
}
],
"microsoftTunnelSiteId": "String",
"childSecurityAssociationParameters": {
"@odata.type": "microsoft.graph.iosVpnSecurityAssociationParameters",
"securityEncryptionAlgorithm": "String",
"securityIntegrityAlgorithm": "String",
"securityDiffieHellmanGroup": 1024,
"lifetimeInMinutes": 1024
},
"clientAuthenticationType": "String",
"deadPeerDetectionRate": "String",
"disableMobilityAndMultihoming": true,
"disableRedirect": true,
"enableCertificateRevocationCheck": true,
"enableEAP": true,
"enablePerfectForwardSecrecy": true,
"enableUseInternalSubnetAttributes": true,
"localIdentifier": "String",
"remoteIdentifier": "String",
"securityAssociationParameters": {
"@odata.type": "microsoft.graph.iosVpnSecurityAssociationParameters",
"securityEncryptionAlgorithm": "String",
"securityIntegrityAlgorithm": "String",
"securityDiffieHellmanGroup": 1024,
"lifetimeInMinutes": 1024
},
"serverCertificateCommonName": "String",
"serverCertificateIssuerCommonName": "String",
"serverCertificateType": "String",
"sharedSecret": "String",
"tlsMaximumVersion": "String",
"tlsMinimumVersion": "String",
"allowDefaultSecurityAssociationParameters": true,
"allowDefaultChildSecurityAssociationParameters": true,
"alwaysOnConfiguration": {
"@odata.type": "microsoft.graph.appleVpnAlwaysOnConfiguration",
"tunnelConfiguration": "String",
"userToggleEnabled": true,
"voicemailExceptionAction": "String",
"airPrintExceptionAction": "String",
"cellularExceptionAction": "String",
"allowAllCaptiveNetworkPlugins": true,
"allowedCaptiveNetworkPlugins": {
"@odata.type": "microsoft.graph.specifiedCaptiveNetworkPlugins",
"allowedBundleIdentifiers": [
"String"
]
},
"allowCaptiveWebSheet": true,
"natKeepAliveIntervalInSeconds": 1024,
"natKeepAliveOffloadEnable": true
},
"enableAlwaysOnConfiguration": true,
"mtuSizeInBytes": 1024
}