automatic certificate installation on samsung android enterprise device?

MS
Michael Schirra
Universitätsklinikum des Saarlandes

Hi @all,

we automatically issue client certificates for our WLAN authentication via SCEP. However, on Samsung's Android Enterprise devices (xCover 5 with Android 11), these certificates are only transferred and not installed. The certificates are only installed when a device password is set. 
Since the device password is unfortunately not an option, I am looking for a way to install the certificates automatically. 

Are there any ideas here?

Many thanks in advance

Translated with www.DeepL.com/Translator (free version)

3 years ago
Android
ANSWERS
JD
John Doe
3 years ago

Ive tried to achieve the same, but all my efforts failed.

I think this is just how android works from a security perspective, to unlock the credential store there has to be atleas a pin set.

What you could do is if you are using a lockdown anyways to just set a standard pin on all devices i.e. "0000" 

D
DRMOD@SOTI
3 years ago

Hi Michael,

 

Thanks for your post.

You can follow the recommendation by John Doe.

One of the requirements for using SCEP for certificates is set a password. This is for security reasons. I would suggest you to contact your OEM or certificate authority and confirm with them.

 

While looking for more information about this topic I found this article that maybe informative for your case.
https://docs.microsoft.com/en-us/mem/intune/protect/certificates-scep-configure#pin-requirement-for-android-enterprise

 

Hope this helps, please let us know any updates.

 

Regards.