For enterprise systems on private networks, see the deployment overview and Dedicated SaaS private networking.
Configure a client VPN in a blueprint
For a non-MFA OpenVPN or WireGuard connection, configure the client in a blueprint:- Install the VPN client in
initialize. - Upload the VPN profile as a blueprint file attachment. Devin writes attachments to
~/.files/and exposes each path through a$FILE_*variable. - Store VPN credentials in Secrets, preferably using a service account rather than a personal account.
- Add a
knowledgeentry with the command Devin should use to connect or check the tunnel.

