Skip to main content

Certificates

Certificates are used to authenticate, communicate, and release company resources more securely. The authentication process occurs between the certificate authority and the device.

Some resources used are:

  1. EAP-type wireless network authentication, where you can determine a certificate for network connection instead of a plain text password.

  2. Signature assignment for third-party applications in the environment, so applications that request authentication through certificates are authenticated automatically without relying on a user choice on the device.

There are several ways to use it, and we will guide you on the initial configuration within the Pulsus environment.

Prerequisites:

  • Management: Device Owner, Fully Managed, COPE, or BYOD;

  • Android: 5.0 or higher;

  • Pulsus Agent: 3.9.44 or higher;

  • Plan: Inventory Plus.

We use two types of certificates:

  1. Authority Certificates (CA) - Starting from the Inventory Plus plan:

    • A Certificate Authority is a trusted entity that issues digital certificates to authenticate the identity of users, servers, devices, etc.

    • The CA acts as a trusted third party, verifying the applicant's identity before issuing a digital certificate.

    • The digital certificate issued by the CA contains the holder's public key and information about the CA, including its digital signature.

  2. Identity Certificates (IC) - PRO Plan:

    • Identity Certificates are actually digital certificates issued by the Certificate Authority (CA).

    • These certificates contain the holder's public key, identity information, and are digitally signed by the CA to ensure the certificate's integrity.

    • Identity certificates are used to authenticate the identity of an online entity (user, server, device, etc.) and establish secure communications.

To use the Identity certificate, you must have a prior registration with the Entrust Certifier. This registration will provide you with data that you must enter into the Pulsus environment.

If you already have this access, follow our step-by-step guide.

Log into your environment and click on Configurations, select the desired configuration, and then click on > Certificates.

Click on Add Certificates and choose the type you would like to install.

When clicking on CA, you must already have the certificate (.pem) previously downloaded to your computer.

As for the CI - Certificate of Identity, you must enter the Entrust data.

After entering the Entrust data, you must add the parameters to generate the certificates.

As soon as you add the information, click on Create Template, the certificate will be sent and will be ready for use.

It will appear in the list, as shown in the image.

To remove the certificate, just click on options.

Did this answer your question?