Addigy can be leveraged to deploy certificates to managed devices. This will allow administrators to use certificates for passwordless authentication (WiFi, corporate resource access, etc..). For a great example on how Certificates can bolster your security posture with WiFi authentication , please review How to Deploy SCEP Certificates Using Addigy and SecureW2.
Building an MDM Profile with the Certificate Payload
- In Addigy, go to Catalog > MDM Profiles.
- Click on New, to create a new profile.
- Filter by device type that the profile will be applied to, then click on Certificates.
- Type in a Payload Name that will identify the profile.
- Select the Certificate type. Current Certificate types that can be selected:
- pem
- pkcs
- pkcs12
- root
- Click on Select Certificate to upload the certificate file.
- (Optional) Set the Installation Priority. For more details on this, please refer to Priority Deployments.
(Option 1) Applying the MDM Profile to a Policy via Catalog
Next, the MDM Configuration will need to be added to the Policy and deployed:
- In Addigy, go to Catalog > MDM Profiles.
- Click on the 3 dots "..." under Actions, next to the previously created MDM Profile.
- In the new dropdown pane, click on Assignments...
- Select one or more policies the MDM Profile will be assigned to.
- Click on Save.
(Option 2) Applying the MDM Profile to a Policy via Policies
Next, the MDM Configuration will need to be added to the Policy and deployed:
- In Addigy, go to Policies and click on the Policy that will contain the previously created MDM Profile.
- Click on MDM Profiles, on the left hand menu pane.
- Select the checkbox of the previously created MDM Profile.
- Click on Add/Remove button.
- Select Add to Policy.
End User Experience
Once these certificates are successfully pushed out to your end users, they will appear in the Keychain Access application.