Device administrator guide
Device administrators are assigned to users who need control over device lifecycle management, including enabling, disabling, deleting, and restoring devices. This role is often designated to users involved in ongoing device operations and support.
Suggerimento
To learn more about certificates, certificate issuance and renewals, see Certificates.
Before you begin:
Ensure that your Solution Administrator has already completed the following:
A device group is already created.
A certificate management policy has been created.
A CSV file containing device-specific details such as device name, description, and subject common name is present.
Sign in to DigiCert® ONE as a Device administrator.
In the DigiCert ONE, in the Manager menu (grid at top right), select Device Trust.
In the Device Trust Manager menu, select Certificate management.
Click Request certificate.
From the Request certificate dropdown, select Request single device certificate.
From the Device Group dropdown menu, select an appropriate device group.
From the Certificate management policy dropdown menu, select the certificate management policy associated with the device group.
On the Key generation type step:
Nota
The Key generation type option is displayed based on your selection of the Device group and the Certificate management policy.
I have the keypairs and will provide the CSRs or public keys in the request:
Upload a CSV file or a zipped CSV containing the device data. You can download the provided template for formatting guidance.
Key pairs will be generated server side by this application, and the private key and certificate will be included in response:
Select the Key generation type dropdown menu.
Provide a Common name for the certificate.
Optionally, provide an Organization name.
Click Add Value to provide an organization unit value (optional).
Provide a Description (optional).
Click Submit certificate request.
Download the certificate after successful submission of the certificate request.
Before you begin:
A device group is already created.
A certificate management policy has been created.
A CSV file containing device-specific details such as device name, description, and subject common name.
Sign in to DigiCert® ONE as a Device administrator.
In the DigiCert ONE, in the Manager menu (grid at top right), select Device Trust.
In the Device Trust Manager menu, select Certificate management.
Click Request certificate.
From the Request certificate dropdown, select Request single certificate.
From the Certificate management policy dropdown menu, select an appropriate policy.
On the Key generation type step:
Nota
The Key generation type option is displayed based on your selection of the Certificate management policy.
I have the keypairs and will provide the CSRs or public keys in the request:
Upload a CSV file or a zipped CSV containing the device data. You can download the provided template for formatting guidance.
Key pairs will be generated server side by this application, and the private key and certificate will be included in response:
Select the Key generation type dropdown menu.
Provide a Common name for the certificate.
Optionally, provide an Organization name.
Click Add Value to provide an organization unit value (optional).
Provide a Description (optional).
Click Submit certificate request.
Download the certificate after successful submission of the certificate request.
Operational certificates are short-lived x.509 certificates for device-service communication. These certificates have a short lifespan, can be revoked.
Sign in to DigiCert® ONE as a Device administrator.
In the DigiCert ONE, in the Manager menu (grid at top right), select Device Trust.
In the Device Trust Manager menu, select Certificate management.
Suggerimento
The Certificates table displays details of all the certificates issued on your account.
Select a required certificate from the list.
Select the vertical ellipses, and then select Revoke.
Select an appropriate Reason from the dropdown menu.
Optionally, provide a Description.
(Optional) Select the set revocation date in the past and select an appropriate date.
Click Revoke.
Perform the following steps to edit or modify a device name:
Sign in to DigiCert® ONE as a Device administrator.
In the DigiCert ONE, in the Manager menu (grid at top right), select Device Trust.
In the Device Trust Manager menu, select Device management > Devices.
Suggerimento
The Devices table displays details of all the devices issued on your account.
Select a required certificate from the list.
Select the vertical ellipses, and then select Edit.
Provide a new name for the device.
Click Update.
Perform the following steps to disable a device:
Sign in to DigiCert® ONE as a Device administrator.
In the DigiCert ONE, in the Manager menu (grid at top right), select Device Trust.
In the Device Trust Manager menu, select Device management > Devices.
Nota
The Devices table displays details of all the devices issued on your account.
Select a required certificate from the list.
Select the vertical ellipses, and then select Disable.
Optionally, add a comment as a valid reason to disable the device.
Click Disable device.