Is SMC able to manage certificates on devices i.e. deliver certificates from the CA to managed devices?
This thread was automatically locked due to age.
Hi PJ,
sorry for the late reply.
In general, you can upload client and CA certificates manually to the SMC server and afterwards distribute them.
However, this could turn out a little bit "inconvenient" ;-)
To automatically create and distribute certificates signed from your CA, Sophos Mobile Control supports the "SCEP" or "NDES" protocol by Microsoft. Using this you can automattically request and create a certiifcate with the deployment of the SCEP profile.
Setting up an Microsoft NDES Server is described in the MS Technet.
Once that is up and running, you could enable it for SMC and create and distribute certificates via an iOS configuration profile.
Unfortunately, this is not supported for Android devices at the moment. This procedure only works forf iOS.
Best regards
Stefan