
Open the Certification Authority console, right-click Certificate Templates, and select Manage.įind the User certificate template, right-click it, and choose Duplicate Template to open Properties of New Template.įor iOS/iPadOS certificate templates, go to the Extensions tab, update Key Usage, and confirm that Signature is proof of origin isn't selected. Sign in to your Enterprise CA with an account that has administrative privileges. Specify certutil -ca.cert ca_name.cer to export the Root certificate as a file named ca_name.cer.Ĭonfigure certificate templates on the CA Go to Start > Run, and then enter Cmd to open command prompt. Log into the Root Certification Authority server with Administrator Account. The following steps explain how to get the required certificate from your Enterprise CA.

To authenticate a device with VPN, WiFi, or other resources, a device needs a root or intermediate CA certificate.

Overview of the Certificate Connector for Microsoft Intune.Įxport the root certificate from the Enterprise CA.Intune requires you to run AD CS with an Enterprise Certification Authority (CA), not a Standalone CA.Īn exported copy of your root certificate from your Enterprise CA.Ĭertificate Connector for Microsoft Intune:įor information about the certificate connector, see:
