Configure Certificate Profile (Android Management)
Certificates in the Profiles section allow admins to remotely upload corporate certificates and other certificates that are necessary to authenticate the device's access to the network.
To create a Certificate profile and deploy it to the device(s), follow these steps:
1. Navigate to SureMDM Web Console > Profiles > Android > Add > Certificate > Configure.
2. In the Certificate prompt,
- To fetch the existing SCEP certificate from the CA server, follow these steps:
a. Deselect Create Certificate Using SCEP.
b. Select Certificate Usage (VPN and Apps / Wi-Fi) from the drop-down list.
c. Upload the Certificate file from the saved location.
d. Enter the Password and click Add.
- To get a SCEP certificate from another CA server, follow these steps:
a. Select Create Certificate Using SCEP.
b. Select Certificate Usage (VPN and Apps / Wi-Fi) from the drop-down list.
c. Enter a Certificate Name.
d. Select Override Account-Wide SCEP Settings. This will enable administrators to create and configure another certificate using SCEP. To configure SCEP in SureMDM, see the steps under Configure SCEP.
e. Click Add.
The newly created profile will be listed under the Profiles section.
3. Enter the Profile Name and click Save.
The newly created profile will be listed in the Profiles section.
4. Go back to the Home tab and select the Android device(s) or group(s).
5. Click Apply to launch the Apply Job/Profile To Device prompt .
6. In the Apply Job/Profile To Device prompt, select the created profile and click Apply.
Remove Certificate
To remove certificates, follow these steps:
Navigate to SureMDM Web Console > Profiles > Android > Add > Certificate Management > Remove Certificate Configure.
Enable the required options:
- Remove the certificate with user-installed trusted credentials
- Remove User Certificates and enter the certificate names
Click OK.
Enter the Profile Name and click Save.
The newly created profile can be deployed to the device.
Remove certificate with user-installed trusted credentials is supported only on Android 6 + devices with Device Owner and Profile Owner enrollments with SureMDM Agent V >= 27.23.00.
Remove User Certificates is supported only on Device Owner enrolled devices with Android V >7 and SureMDM Agent V >=27.44.10