"Trusted certificates" section in Network Payload

tmclean
New Contributor

Hi there

A quick question, hopefully.

We have a new config that has been pushed to some users to test new APs and a new SSID. A couple of them have not connected automatically to the new SSID, despite valid certs etc in the payload and having successfully appeared in the keychain.

In the config, there is a "trusted certificate" area, under the Trust section in 802.1x settings

So a couple of questions-

Any idea why some users didn't connect automatically despite the profile being there, and some people connected just fine?

Can someone please explain what the "trusted certificates" does? If the user tries to connect manually to the SSID, they choose the cert to connect with, and then they have the pop up from Apple to say to confirm trust etc.

The certs in the wifi part of the network config are ticked, so I would have thought there would be nothing to do- but some users are still being requested for manual authentication / connection.

1 REPLY 1

BGhilardi
New Contributor III

You must have the trusted authority's certificate, the certificate for exchanging with the Radius, and the computer's identification certificate provided by the PKI.
One way to understand what's going on would be to look in the computer's logs; you'll probably find the answer to your question.