I wondered whether you had any example workflows for creating a Configuration Profile suitable for a IKEv2 VPN using machine-based authentication?
We have the option of using the Strongswan VPN standalone connection app but we would much rather use the facility built into OS X/macOS if at all possible.
We already have a Configuration Profile for our 802.1X University wireless network which includes an AD certificate request and also both our Root and Intermediate certificates, so it would be good to use the existing certificate stored in the System Keychain if at all possible, rather than request yet another certificate from AD-CS?
Any advice or pointers would be greatly appreciated!
