Skip to main content
Versa Networks

Configure Tamper Protection

Versa-logo-release-icon.png For supported software information, click here.

For Windows only.

Tamper protection prevents unauthorized removal or alteration of the VPN client software and ensures defense against cyber threats while maintaining a secure connection for all network communications. Restricting the ability to alter or remove the VPN client ensures the consistent application of security policies, minimizes exposure to vulnerabilities, and protects sensitive data from interception.

If you enable tamper protection from the server side, tamper protection does not allow you to uninstall the client, delete the client account, or delete any files from the installation directory. The tamper protection option only appears on the SASE client if you enable tamper protection in the gateway profile associated with a SASE client.

Enable Tamper Protection

To enable tamper protection for a secure access gateway profile associated with a client:

  1. Go to Configure > Secure Services Edge > Secure Access > Client-based Access > Policy Rules.

  2. Select a rule to edit. To create a secure client access rule, see Configure SASE Secure Client-Based Access Rules.
  3. In the Edit Client-based Access Rule screen, select step 7, Client Configuration, and then click Customize in the Client Controls pane.

    client-controls-customize.png
  4. In the Configure Client Controls screen, click Advanced Settings, and then enter information for the following fields.


     
    Field Description
    Tamper Protection

    (For Releases 11.4.1 and later.) Click the checkbox to enable tamper protection in the client device. 

    Note: Supported on Windows Client, version 7.8 and later.

    Tamper Protection Override Key Enter a tamper protection authentication key that you use to disable this feature from the SASE client.
  5. Click Next. To save and deploy the secure client-based access rule, see Review and Configure SASE Secure Client-Based Access Rules.
  6. Register Versa SASE Client. After registration, the SASE client Account Details screen shows that tamper protection is enabled in the SASE client.



    If you try to uninstall Versa SASE Client, the SASE client shows a warning message that tamper protection must be disabled to uninstall the SASE client. See Disable Tamper Protection.

Disable Tamper Protection From the SASE Client

To disable tamper protection, click the Tamper Protection toggle button in the SASE client Account Details screen, and then enter the tamper protection authentication key.

To disable tamper protection from the SASE client UI:

  1. In the SASE client home screen, click the  Settings icon.
  2. In the Enterprise section, click the account for which you want to disable tamper protection.
  3. Click Account Details. The Account Details screen displays. Note that Tamper Protection is enabled only if the feature is enabled for the gateway profile of the client.
  4. To disable tamper protection, slide the Tamper Protection toggle button. A popup message displays to enter the override key that is set from the Client Configuration > Client Controls tab from the server side.

  5. Enter the tamper protection override key and click Submit. 



    The Account Details screen displays the tamper protection is disabled.

Supported Software Information 

Releases 11.4.1 and later support all content described in this article.

  • Was this article helpful?