Deploying Certificates Without On-Premises NDES Using Microsoft Cloud PKI in Intune

Explore Our Microsoft Intune Training →

Introduction

Managing certificate-based authentication can be a headache, but Microsoft Intune simplifies the process with its Cloud PKI feature.

What is Microsoft Cloud PKI?

Cloud PKI is a service that replaces the need for on-premises NDES (Network Device Enrollment Service) in Intune. By using Cloud PKI, you can issue certificates to devices directly from the Intune admin center.

Setting Up Cloud PKI

To get started, navigate to the Tenant administration section in your Intune admin center and select PKI. From there, you can create a new issuing CA and configure your certificate profiles.

Issuing Certificates

Once you’ve set up your certificate profile, assign it to device groups within the Device configuration section. This will deploy the certificate to the devices in those groups.

Troubleshooting

If you encounter issues during deployment, check the device reports for any errors or failures. These reports can help you pinpoint and resolve any problems.

Benefits of Cloud PKI

By using Cloud PKI instead of a traditional on-premises CA with NDES, you can reduce overhead, improve scalability, and streamline your certificate management process within Intune.

Conclusion

If you’re an IT admin managing certificate-based authentication in your organization, consider Intune training to learn more about Cloud PKI and how it can help simplify your certificate management process.

Explore Our Microsoft Intune Training →

Written by Mohammed Akhter

Founder of ITP Training. 50,000+ students trained across 30+ countries in Microsoft endpoint and cloud security. Learn more →