Manage certificates
Certificate management defines how certificates, including bootstrap certificates and operational certificates, are issued, renewed, and revoked for devices. It outlines the protocols for certificate management policies, certificate requests, keypair generation methods, and the use of certificate profiles and issuing CAs.
Topic | Description |
|---|---|
Create and manage certificate templates that define the certificate format, subject information, and extensions used during certificate issuance. | |
Configure certificate profiles to define how devices request and receive certificates by combining templates, issuing CAs, and enrollment settings. | |
Create certificate management policies to control how bootstrap and operational certificates are requested, issued, renewed, and managed throughout their lifecycle. | |
Request, import, download, and revoke bootstrap and operational certificates to establish and maintain trusted identities for your devices. | |
Manage issuing certificate authorities (ICAs), associate them with certificate management policies, and assign them to divisions for certificate issuance. | |
Use Registered values to validate certificate requests against predefined rules and approved values before certificates are issued. | |
Use OCSP groups to organize certificates for revocation validation and efficiently manage certificate status checks across your deployment. | |
Use Trust bundles to create and manage collections of trusted root and intermediate CA certificates that devices and applications use to verify certificate trust. | |
Configure and issue specialized certificates for industry-specific use cases, including C2PA claim signing, CSA Matter, and Intermediate certificate authorities. |
What's Next
Begin configuring your certificate settings by creating the required templates, profiles, and policies, or use the guided workflow to complete the configuration through a single step-by-step experience.