Target
- Customers starting to use Device Certificates
Purpose
- This article explains the list of tasks required before you can start using Device Certificates.
Notes
- Please check the required items according to your service and use case.
- The content of this article is based on the product as of November 2025 and is subject to change without notice.
Table of Contents
- Collect Device Information
- Check Exchange Online Modern Authentication Status (for Microsoft 365 customers only)
- Register Cybertrust DeviceiD Importer (for Chromebook customers only)
- Issue Device Certificates
Installing Device Certificates
- Install Device Certificates
- Check Device Certificate Installation Status
- Appearance
- Configure / Assign Access Policy Groups
Preparation
1. Collect Device Information
Collect the device information for the devices where Device Certificates will be installed.
2. Check Exchange Online Modern Authentication Status (for Microsoft 365 customers only)
3. Register Cybertrust DeviceiD Importer (for Chromebook customers only)
Issuing Device Certificates
1. Issue Device Certificates
Based on the device information collected in advance, issue Device Certificates from the Access Control Administration.
Installing Device Certificates
1. Install Device Certificates
Install the Device Certificates issued by the administrator on each device.
2. Check Device Certificate Installation Status
Confirm that Device Certificates have been successfully installed on each device.
Start Access Control
Configure Access Policy Templates
Create an Access Policy Template that allows access from Device Certificates.
[Access Control] Create / Edit Access Policy Templates
* If you want to add to an existing access condition, please edit the relevant template.Configure Access Policy Groups
Set the created Access Policy Template to an Access Policy Group.
[Access Control] Create / Edit Access Policy Groups
* If you have modified an existing Access Policy Template, this step is not required.
Please confirm that the applied template is correct.Assign Access Policy Groups
Assign the created Access Policy Group to users.
[Access Control] Assign Access Policy Groups to Users
* If Access Policy Groups are already configured, this step is not required.Display the certificate authentication button on the Access Control login screen.
[Access Control] Appearance
* The Appearance setting cannot be applied to only some users; it will be applied to all users.