Android
Last updated
Last updated
Log in to Microsoft Intune
Navigate to Devices and subsequently Configuration profiles
Then click Create > New policy
As Platform select your Android device type
Search the Profile type templates for Wi-Fi and select it
Click Create and provide a descriptive name and optional Description
As Wi-Fi type select Enterprise
Enter your SSID
As EAP type choose EAP - TLS
Next, as Radius server name add the
Subject Alernative Name (SAN)
and Common Name (CN)
of your active RADIUS Server Certificate . Those properties can be found by expanding the active server certificate and copying the relevant values. Please consider, that the common name is case-sensitive.
11. For the Root certificates for server validation select the Trusted certificate profile you have previously created for the RADIUS Server Certificate.
12. under Client Authentication select Certificates as Authentication method
13. Finally, under Certificates select the SCEP profile you would like to use for authentication.
All other settings can be configured according to your own needs and preferences.
Some Android kiosk devices require a value for Identity privacy (outer identity). Please consider this when you are having issues authenticating against the WiFi network with such devices.
See Troubleshooting.