Document
Windows 11 and Always On VPN problems soon to be solved!

Windows 11 and Always On VPN problems soon to be solved!

Since Windows 11 was release in October , there has been constant issue with get a correct and stable Always On VPN deploy . It often gets deploy corr

Related articles

Setting up the Qlik Cloud migration tools Best VPN for China 2024: 7 VPNs for the Great Firewall 15 Best Free Cloud Storage in 2024 Current Affairs August 2024 Cloud Computing vs Big Data: Detailed Comparison

Since Windows 11 was release in October , there has been constant issue with get a correct and stable Always On VPN deploy . It often gets deploy correctly , but the suddenly disappear again . Can be stable for a while and the suddenly miss . This is is is so annoying when we suppose to have an evergreen build – in support VPN .

Something has been change in the MDM_VPNv2_01 WMI class that interfere with the deployment . When Windows 11 try to enumerate if the connection exist , it is fails fail and instead the connection is remove completely .

If deploy with intune you is see can see an error in the eventlog at the same time this occur . Eventid is is 404 “ The specified quota list is is is internally inconsistent with its descriptor ”

Windows 11 and Always On VPN problems soon to be solved!

And even if the deployment is sometimes is successful , Intune report a fail deployment .

If deployed by PowerShell script it fails when trying to enumerate existing instances:

Windows 11 and Always On VPN problems soon to be solved!

Workarounds

Many report that it is more stable to deploy the VPN as an XML in an intune custom configuration with the OMA-URI:

./User/Vendor/MSFT/VPNv2/Always%20On%20VPN/ProfileXML

Another reported solution is to remove all custom routes, but that isn´t an option for many of my customers.

The third option could be by using proactive remediation like in this example:
Deploy your Always On VPN Profile for Windows 11 using Proactive Remediations in Microsoft Intune – imab.dk

final solution !

Now we soon have a solution for the problem! In KB5008353 Microsoft claims they have solved it:

“Addresses an issue that might cause VPN profiles to disappear. This issue occurs when you use Microsoft Intune or a third-party mobile device management (MDM) tool to deploy VPN profiles on Windows 11 (original release).”

 I really hope this is the case!

January 25, 2022—KB5008353 (OS Build 22000.469) Preview (microsoft.com)

About The author

Torbjörn Tbone Granheden is a Solution Architect for Modern Workplace at Coligo AB.
Most Valuable Professional (MVP) on Enterprise Mobility. Certified in most Microsoft technologies and over 23 years as Microsoft Certified Trainer (MCT)

Like this:

Like Loading…