IdExchange 1.9.1

InTune CA connection

Adding Intune CA connection to IDMS




1

Log in to IDMS and add Certificate Authority under System Connections

caconfig.PNG

2

Configuration Settings

Setting

Value

Certificate Authority

Microsoft Intune

Friendly Name

InTuneCa

DNS name

graph.microsoft.com

Group ID for Derived Credential Users

This is the group id of the group the approved users will be moved into. See step 3 from

Configuring the InTune Groups for Credential Delivery

Article

Tenant ID

the Azure Tenant ID

Client Secret

The client Secret code of the APP. (see app registration for more information)

Client ID

The Azure Client ID

Credential Policy Instruction

The CA policy set for IOS Smime

Certificate Authority

The friendly name of the IDMS Certificate Authority to be used for credentialing *Must match the name that was created in "Adding CA connection to IDMS" article.

SCEP Signer Certificate Serial Number

The serial number of the certificate that will be performing scep security transactions

User Name

Azure Directory user name with InTune and Directory permissions

Password

Azure Password.


Microsoft Intune.PNG

3

After the connection is created, click "Check" to verify the connection is successful. Expect result is "1 Successfull CA connection. Connection time: 2874 milliseconds." With no errors.


4

Assign this CA to the user's credential Type policy so it can be used in the derived credential process.