iOS/iPadOS & macOS

This guide is applicable for both scenarios: using user- or device-type certificates for WiFi authentication.

Configuration Steps

  1. Navigate to Devices and subsequently Configuration profiles

  2. Then click Create > New policy

  3. As Platform select iOS/iPadOS or macOS

  4. Search the Profile type templates for Wi-Fi and select it

  5. As Profile type select Wi-Fi

  6. Click Create and provide a descriptive name and optional Description

  7. As Wi-Fi type select Enterprise

  8. Enter your SSID. The Network name can assume the same name.

  9. Select the applicable Security type (iOS/iPadOS only)

  10. Then for EAP type choose EAP - TLS

  11. Next, as Certificate server names add the

    • Subject Alernative Name (SAN)

    • and Common Name (CN)

    of your active RADIUS Server Certificate. Those properties can be found by expanding the active server certificate and copying the relevant values. Please consider, that the common name is case-sensitive.

  12. For the Root certificates for server validation select the Trusted certificate profile you have previously created for the RADIUS Server Certificate.

  13. Under Client Authentication select Certificates as Authentication method

  14. Finally, under Certificates select the SCEP profile you would like to use for authentication.

All other settings can be configured according to your own needs and preferences.

Last updated