Certificate Profile
The Certificate Profiles allow administrators to efficiently upload corporate certificates and other essential certificates. These certificates play a crucial role in authenticating device access to the network, ensuring secure and seamless connectivity. Administrators can seamlessly manage and distribute certificates to enrolled devices from a centralized platform.
To create and configure Certificates remotely on the enrolled device(s), follow these steps:
Navigate to the SureMDM Web Console > Profiles > Windows > Add > Certificate > Add Certificate Configure.
In the Certificate prompt,
To deploy certificates to existing Certificate stores on the Windows devices, follow these steps:
a. Deselect Retrieve certificate from CA server.
b. Select Store Location (Local Machine/Current Users) from the pop-up list.
c. Upload the Certificate file from the saved location.
d. Enter the Password (optional) and click Add.
To fetch the existing SCEP certificate from the CA server, follow these steps:
a. Select Retrieve certificate from CA server.
b. Select Install Context (Device/User) from the drop-down list.
c. Select Certificate Usage (Wi-Fi/General) from the drop-down list.
d. Enter Certificate Name (Certificate Template Name as per CA server)
To get SCEP certificate from another CA server, follow these steps:
a. Select Retrieve certificate from CA server.
b. Select Certificate Usage (Wi-Fi/General) from the drop-down list.
c. Enter Certificate Name (Certificate Template Name as per CA server)
d. Select Override Account-wide Certificate Management settings.
This will enable administrators to create and configure another certificate using SCEP. To configure SCEP in SureMDM, see the steps under Configure SCEP.
e. Click Add.
The newly created profile will be listed in the Profiles section.
Click Remove Certificate Configure > Remove certificate with user-installed trusted credentials to remove all the certificates that were previously added.
Go back to the Home tab and select the Windows device(s) or group(s).
Click Apply to launch the Apply Job/Profile To Device prompt.
Select the profile under All Jobs/Profiles.
Click Apply in the Apply/Profile To Device prompt.