Hi cjoseph,
I'm affiliated with Christoffer.
@cjoseph wrote:
Is split-tunneling configured or not?
Split-tunneling is configured.
@cjoseph wrote:
Have the mac user type "scutil --dns" at the commandline to ensure that they are getting the correct DNS server(s).
The client's Mac machine has the correct DNS server, as follows:
"resolver #2
nameserver[0] : 172.16.1.10
if_index : 10 (utun0)
flags : Scoped, Request A records
Reachable, Transient Connection, Connection Required, Automatic Connection On Demand"
Note: The settings for the DNS server had to be configured manually under the Wireless Network adapter, due to no changes to the VIA connection adapter were allowed.
I'm sorry for heading off topic, but the initial problem were raised to our knowledge when the certificate was about to expire, and the user device got re-provisioned. After the re-provisioned process, the user were prompted with the following message:
"There is no certificate in keychain which has neagent in its ACL."
During the initial state, the client's Mac machine were running Mac VIA 2.0.3.72619, along with a complete certificate chain.
Thanks in advance.