Always on VPN traffic filter to exclude Teams

John Couzins 1 Reputation point
2020-08-05T20:33:16.893+00:00

I am looking to deploy a WIndows 10 Always on VPN with group policy (no intune yet) and onsite Windows servers.

I want to push all traffic down the corporate VPN with the exception of Teams and or OneDrive traffic. The traffic filters seem to allow you to pick applications to send down the vpn but i want the inverse of this.

Does anyone know if this is possible?

Thanks,

John

Windows 10 Network
Windows 10 Network
Windows 10: A Microsoft operating system that runs on personal computers and tablets.Network: A group of devices that communicate either wirelessly or via a physical connection.
2,312 questions
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Gloria Gu 3,896 Reputation points
    2020-08-06T06:07:21.357+00:00

    Hi,

    In regards to your issue, following is my suggestions:

    I want to confirm first that does your win 10 client deploy two NIC, one is linked to the corporate VPN to access internal resource and another is linked to the Internet? If my understanding has any problem, please correct it at any time.

    In this situation, the client will choose VPN connection as default network because of the low route hop of VPN configuration than Internet. If you want specific application(teams&onedrive) to use Internet network and other applications to use VPN network, you can first try to block these two applications in firewall outbound rules while connecting to both networks. Theoretically, it will switch to the Internet network when trying to access teams& onedrive.

    15908-5.png

    If my answer is helpful to you, please remember to mark them as answer. Thank you!

    Best regards,
    Gloria

    0 comments No comments

  2. John Couzins 1 Reputation point
    2020-08-06T07:02:18.173+00:00

    Hi Gloria,
    No these would be laptop deployments where users connect from their homes.
    John