Skip to main content

Endpoint Concepts Guide

Illumio Endpoint Specifications and Requirements

Illumio Endpoints support the following configurations:

Illumio Environment

  • Illumio Core SaaS: Illumio Core PCE 22.2.0 and later releases.

  • Illumio Core On-prem: 21.5.11 or 21.5.20 VEN and later releases.

Customer Environment

  • Computers running these Windows versions:

    • Windows 7

    • Windows 10

  • Computers running these macOS versions:

    • 14.0, 14.1, 14.2, and 14.3 (Sonoma)

    • 13.x (Ventura)

    • 12.x (Monterey)

    • 11.0 (formerly 10.16) (Big Sur)

  • Supported domain-joined endpoint interfaces:

    • Wired

    • Wireless

    • PPP/VPN

    Note

    Endpoint segmentation is not compatible with hypervisors such as Windows Hyper-V. The connectivity to or from virtual machines might be blocked if the Endpoint VEN is in Full Enforcement mode.

Wireless Connections and VPNs

To activate a VEN installed on endpoints and to support a wireless network connection, the Enforcement Type in the Pairing Profile must be set to Endpoint VEN.

Note

When creating a Pairing Profile with the Endpoint Enforcement Type, the Illumio VEN detects two additional interface types on the endpoint: WLAN/802.11 and PPP. To detect these interface types, the endpoint must be domain authenticated with the corporate domain.

The VPN and WiFi interfaces must be domain authenticated for on-prem domain-joined systems, or within the corporate range for Additional Authenticated Data (AAD)-joined systems. The VPN must report an interface type of Ethernet, tunnel, or PPP. (AnyConnect reports the Ethernet interface type.)

Note

Wireless network support is only available for Illumio Endpoints. No support is provided for other server types, such as bare-metal servers, virtual machines (VMs), or container hosts.