Microsoft Intune MDM ソリューション向けDigiCert® 統合ガイド

Similar documents
Mobilelron® Virtual Smartphone Platform 向けDigiCert® 統合ガイド

Cisco® ASA シリーズルーター向けDigiCert® 統合ガイド

ISE の BYOD に使用する Windows サーバ AD 2012 の SCEP RA 証明書を更新する

- 2 Copyright (C) All Rights Reserved.

Oracle Identity Managementの概要およびアーキテクチャ

相続支払い対策ポイント

150423HC相続資産圧縮対策のポイント

ハピタス のコピー.pages

Copyright 2008 All Rights Reserved 2

1. PKI (EDB/PKI) (Single Sign On; SSO) (PKI) ( ) Private PKI, Free Software ITRC 20th Meeting (Oct. 5, 2006) T. The University of Tokush

untitled

/02/ /09/ /05/ /02/ CA /11/09 OCSP SubjectAltName /12/02 SECOM Passport for Web SR

Windows Oracle -Web - Copyright Oracle Corporation Japan, All rights reserved.

/07/ /10/12 I

untitled

Copyright 2008 NIFTY Corporation All rights reserved. 2

初心者にもできるアメブロカスタマイズ新2016.pages

untitled

Oracle Change Management Pack, Oracle Diagnostics Pack, Oracle Tuning Packインストレーション・ガイド リリース2.2

42

Copyright 2006 KDDI Corporation. All Rights Reserved page1

Copyright All Rights Reserved. -2 -!

2

<Documents Title Here>

untitled

<Documents Title Here>

IPA:セキュアなインターネットサーバー構築に関する調査

<%DOC NAME%> (User Manual)

Oracle8 Workgroup Server for Windows NTインストレーション・ガイド,リリース8.0.6

Microsoft Word - 最終版 バックせどりismマニュアル .docx

! Copyright 2015 sapoyubi service All Rights Reserved. 2

2

2

new_logo.eps

Part 1 IT CPU IT IT 1998 Windows NT Server 4.0, Terminal Server Edition 1 Windows Based Terminal WBT Windows CE 1 100Mbps 1Gbps LAN OS 1 PC 1 OS 2

dekiru_asa

Oracle Application Server 10g(9

Releases080909

Copyright Qetic Inc. All Rights Reserved. 2

- 2 Copyright (C) All Rights Reserved.

untitled

interop.book



3. RIR 3.1. RIR Regional Internet Registry APNIC Asia Pacific Network Information Centre RIR RIPE NCC Réseaux IP Européens Network Coordination Centre

how-to-decide-a-title

iPhone Configuration Utility

<Documents Title Here>

untitled

Configuring_01

署名ツール検証報告書

<Documents Title Here>

WP_8021X Authentication_21MAY2012

健康保険組合のあゆみ_top

リバースマップ原稿2

Systemwalker IT Service Management Systemwalker IT Service Management V11.0L10 IT Service Management - Centric Manager Windows

Insert VERITAS™ White Paper Title Here

Copyright 2010 Sumitomo Mitsui Banking Corporation. All Rights Reserved.

keysql42_usersguide

(Veritas\231 System Recovery 16 Monitor Readme)

Aventail EX-2500/1600/750 STv(Ver.8.9) Sep 2007 c 2007 SonicWALL,Inc. All rights reserved.

電子メールのセキュリティ

20 180pixel 180pixel Copyright 2014 Yahoo Japan Corporation. All Rights Reserved.

TOSHIBA TEC CORPORATION All rights reserved

iPhone/iPad/Android(TM) とベリサイン アイデンティティプロテクション(VIP)エンタープライズゲートウェイとの組み合わせによるL2TP+IPsecのワンタイムパスワード設定例

IT Office 365 Microsoft Office 365 IT Office 365 IT Microsoft Office 365 IT WiPro WiPro Technologies Microsoft SharePoint 2IT Office 365 TechTarget

untitled

new_logo.eps

 


One Core, One Windows Windows Xbox 360 Xbox One Windows 8 Windows 8.1 OS Windows Phone 8.1 Windows Phone 8 OS OS Devices + IoT Adaptive User Interface


rzat10pdf.ps

untitled

Juniper Networks Corporate PowerPoint Template

KeySQL for Microsoft Windows 6.0 : B Copyright 2006, Oracle Corporation. All rights reserved. Printed in Japan. * Oracle Corporation Oracle Co

untitled

やよいの顧客管理

弥生給与/やよいの給与計算

弥生 シリーズ

弥生会計 プロフェッショナル/スタンダード/やよいの青色申告

弥生会計/やよいの青色申告

弥生会計 ネットワーク/プロフェッショナル2ユーザー


第3 章 電子認証技術に関する国際動向

Microsoft Enterprise Mobility License

.Net CryptoAPI 機能と利用法

ネットワーク設定マニュアル(Windows Vista編)

Copyright 2008 QSR International Pty Ltd. ABN All rights reserved. NVivo QSR ( ) QSR International Pty Ltd. Microsoft.NET SQL Server W

PLQ-20 取扱説明書 詳細編

untitled

TM-P20 ソフトウェアユーザーズマニュアル

2016 TOSHIBA TEC CORPORATION All rights reserved

AirMac ネットワーク for Windows

いま本文ー校了データ0822.indd

Hitachi Storage Adapter -Hitachi Storage Adapter for VMware vCenter- サポートマトリックス

Web Microsoft 2008 R2 Database Database!! Database 04 08


untitled

P15 P211 1 P1 P4 P2 P3 P4 P17

1000 Copyright(C)2009 All Rights Reserved - 2 -

Transcription:

Microsoft Intune MDM DigiCert 2018 7 31

Microsoft Intune MDM DigiCert : 2018 7 31 Copyright 2018 DigiCert, Inc. All rights reserved. DigiCert DigiCert DigiCert, Inc. Symantec Norton Symantec Corporation DigiCert, Inc. DigiCert, Inc. FAR 12.212 Commercial Computer Software - Restricted Rights FAR Section 52.227-19 Rights in Commercial Computer Software or Commercial Computer Software Documentation DFARS 227.7202 104-0061 6 10 1 GINZA SIX 8 03-4560-3900 https://www.digicert.co.jp JPN-DIV-MPKI@digicert.com 2

...4...5...6 Intune...7 RA...8 Microsoft Intune Certificate Connector... 10... 12 DigiCert PKI... 12 Intune... 14 Intune... 15... 15... 16 3

Microsoft Intune Office Microsoft Intune DigiCert PKI Platform DigiCert PKI Platform PKI Microsoft Intune DigiCert PKI Platform 8.17.x 1. Microsoft Intune RA 2. Intune DigiCert PKI Platform Microsoft Intune 3. Intune 4. Intune 4

1. 2. RA 3. Microsoft Intune 4. DigiCert PKI 5. Intune 6. Intune 7. 8. 5

DigiCert PKI DigiCert PKI Platform DigiCert PKI Manager Microsoft Intune Microsoft Intune NDES 6

Intune Intune Certificate Connector Microsoft Windows Server 2012 R2 Microsoft Windows Server 2008 R2 Microsoft.NET Framework 3.5 ASP.NET Microsoft Intune 7

RA CSR DigiCert PKI Manager RA PKI RA Intune DigiCert PKI Platform CA RA Intune RA RA RA RA RA https://knowledge.digicert.com/ja/jp/solution/ SO29805.html CSR 1. Intune NDES certreq.inf 2. certreq.inf [NewRequest] Subject = CN=Registration Authority KeySpec = 1 KeyLength = 2048 Exportable = FALSE MachineKeySet = TRUE PrivateKeyArchive = FALSE UserProtected = FALSE UseExistingKeySet = FALSE ProviderName = Microsoft RSA SChannel Cryptographic Provider ProviderType = 12 RequestType = PKCS10 KeyUsage = 0xa0 HashAlgorithm = sha256 ;-------------------------------------- --------- CSR certreq.exe -new certreq.inf racertificate.req racertificate.req CSR CSR DigiCert PKI Manager RA 3. racertificate.req DigiCert PKI Manager 8

DigiCert PKI Manager RA 1. racertificate.req 2. DigiCert PKI Manager RA 3. CSR 4. RA-certificate. p7b 5. RA-certificate.p7b NDES RA RA 1. RA certreq -accept -machine RAcertificate.p7b 2. certutil certutil -store MY RA 9

Microsoft Intune Certificate Connector Intune Certificate Connector RA Intune Certificate Connector Microsoft Intune Intune Certificate Connector RA Intune MPKI RA Intune RA RA 1. certutil -store MY 2. RA 3. Cert Hash 1. NDESConnectorSetup.exe 2. PFX Distribution PFX 4. Cert Hash 91 6c 8d 18 47 0a ad 55 db cf a3 6b 0f 5c fe 61 88 916c8d18470aad55dbcfa36b0f5cfe6188 Cert Hash 10

DigiCert PKI Platform RA 1. %ProgramFiles%\Microsoft Intune\NDESConnectorSvc\NDESConnector.exe. config 2. RACertThumbprint Cert Hash Cert Hash 916c8d18470aad55dbcfa36b0f5cfe6188 3. 4. services.msc 5. Intune Connector Service 6. Intune 1. %ProgramFiles%\Microsoft Intune\ NDESConnectorUI\NDESConnectorUI.exe NDES 2. Enrollment Sign In 3. Intune 4. Sign In Successfully enrolled 5. NDES 11

DigiCert PKI Platform Intune DigiCert PKI Platform Intune OID DigiCert PKI DigiCert PKI Platform 1. DigiCert PKI Platform 2. DigiCert PKI Manager 4. 5. Client Authentication 1. 2. PKI Web 3. Subject DN (CN) firstname lastname 3. Intune Web 1. 12

2. 4. 5. OID OID PKIManagerCertificateProfileOID 3. : CN : Web : 13

Intune DigiCert PKI Manager Intune 1. Intune Device configuration 1. DigiCert PKI Manager CA 2. Name Description 3. 4. Trusted certificate 5. DigiCert PKI Manager OK 2. CA 3. 6. Device Configuration Assignments 14

Intune Intune 1. Intune Device Configuration 2. Settings Configure Profile type PKCS certificate Certificate authority (production) https://pki-ws.symauth.com Certification authority name Symantec Certificate template name PKIManagerCertificateProfileOID DigiCert PKI Manager OID 3. OK 4. Device Configuration Assignments 1. Microsoft Intune Company Portal 2. Intune 3. 15

Microsoft Network Device Enrollment Services NDES Microsoft Intune DigiCert PKI DigiCert PKI pki-ws. symauth.com Intune Microsoft NDES NDES Intune : %ProgramFiles%\Microsoft Intune\ NDESConnectorSvc\Logs\* NDES DigiCert PKI Platform : %ProgramFiles%\Microsoft Intune\ PfxRequest\* 80 443 https 443 Intune https 443 Intune Certificate Connector NDES PFX 2018 DigiCert, Inc. All rights reserved.digicert DigiCert, Inc. 16