Search…
Windows

Configurations Steps

  1. 1.
    Log in to your Azure portal
  2. 2.
    Navigate to Microsoft Intune and click Device and subsequently Configuration profiles
  3. 3.
    Then click Create profile
  4. 4.
    As Platform select Windows 10 and later
  5. 5.
    Search the Profile type templates for Wired network and select it
  6. 6.
    Click Create and provide a descriptive name and optional Description
  7. 7.
    fill out the Configuration settings as it suits your environment
  8. 8.
    Configure the Authentication Method to User if you want to use user-type certificates for authentication or Machine if you would like to use device-type certificates for authentication.
  9. 9.
    For EAP Type choose EAP-TLS
  10. 10.
    Next, as Certificate server names add the DNS name from your active RADIUS Server Certificate. This can be found by expanding the active Server Certificate and copying the SAN value.
  11. 11.
    For the Root certificates for server validation select the Trusted certificate profile you have previously created for the RADIUS Server Certificate.
  12. 12.
    Under Client Authentication select SCEP certificate as Authentication method
  13. 13.
    Finally, Client certificate for client authentication (Identity certificate) select the SCEP profile you would like to use for authentication.
All other settings can be configured according to your own needs and preferences
Last modified 15d ago
Export as PDF
Copy link
Edit on GitHub