Skip to main content

Request a device certificate

To perform this action, you must have a user role that contains the Device administrator permission.

This certificate will be associated with a device record.

  1. In the Device Trust Manager menu, go to Device management > Devices.

  2. Select the required device from the list for which you want to request the certificate.

  3. Go to More actions > Request a certificate.

  4. From the Certificate management policy list, select the policy associated with this device.

  5. On the Key generation type step, choose one of the available options:

    1. I have the keypairs and will provide the CSRs or public keys in the request:

      • Choose this option if you already have a key pair. You must upload a CSV file or a ZIP file containing the device data.

      • If needed, download the provided template to ensure the file is formatted correctly.

    2. Key pairs will be generated server side by this application, and the private key and certificate will be included in response:

      Choose this option if you want Device Trust Manager to generate the key pair for you.

    Suggerimento

    Key generation type behavior

    The Key generation type option is dynamically displayed based on the selected Device, Device group, and the associated Certificate management policy. Only the key generation methods that are supported by the chosen combination are presented to you.

  6. Provide a Common name for the certificate.

  7. Provide a Description (optional).

  8. Select Submit certificate request.

Suggerimento

Alternatively, you can also request a device certificate from the device details page.

What happens next

  • The certificate is issued and is associated with the device record

  • You can download the certificate from Device Trust Manager

  • If server-side key generation was selected (Key pairs will be generated on the server side by this application, and the private key and certificate will be included in response), the response also includes the generated private key.