Server Trust
This is only required if you are using a RADIUS server certificate that was issued by a CA that your clients do not already trust. For example, this is not needed if you are bringing your own server certificate issued by SCEPman.
Part 1: Download the RADIUS Server Certificate
When downloading the Server certificate, use only the green-marked certificate. This will download the root CA certificate of the issuing CA.
Part 2: Adding a Trusted Certificate Profile for your Endpoint Devices
Ensure, you have reviewed Part 1.
Log in to Microsoft Intune
Navigate to Devices and subsequently Configuration profiles
Then click Create > New policy
Select the correct Platform for your device
Search the Profile type templates for Trusted certificate and select it
Click Create and provide a descriptive name and optional Description
In the second step, upload the *.cer file containing the RADIUS server certificate/trusted root the server certificate was signed with.
Last updated