Skip to content

Commit 469aab5

Browse files
authored
Formating changes
1 parent ecc6495 commit 469aab5

1 file changed

Lines changed: 20 additions & 24 deletions

File tree

memdocs/intune/protect/certificates-profile-scep.md

Lines changed: 20 additions & 24 deletions
Original file line numberDiff line numberDiff line change
@@ -57,30 +57,26 @@ Devices that run Android Enterprise might require a PIN before SCEP can provisio
5757

5858
SCEP certificate profiles for the *Fully Managed, Dedicated, and Corporate-Owned Work Profile* profile have the following limitations:
5959

60-
a. Under Monitoring, certificate reporting isn't available for **Device Owner** SCEP certificate profiles.
61-
62-
b. You can't use Intune to revoke certificates that were provisioned by SCEP certificate profiles for **Device Owner**. You can manage revocation through an external process or directly with the certification authority.
63-
64-
c. For Android Enterprise dedicated devices, SCEP certificate profiles are supported for Wi-Fi network configuration, VPN, and authentication. SCEP certificate profiles on Android Enterprise dedicated devices aren't supported for app authentication.
65-
66-
For **Android (AOSP)**, the following limitations apply:
67-
a. Under Monitoring, certificate reporting isn't available for **Device Owner** SCEP certificate profiles.
68-
b. You can't use Intune to revoke certificates that were provisioned by SCEP certificate profiles for **Device Owners**. You can manage revocation through an
69-
external process or directly with the certification authority.
70-
c. SCEP certificate profiles are supported for Wi-Fi network configuration. VPN configuration profile support is not available. A future update may include
71-
support for VPN configuration profiles.
72-
d. The following 3 variables are not available for use on Android (AOSP) SCEP certificate profiles. Support for these variables will come in a future update.
73-
· onPremisesSamAccountName
74-
· OnPrem_Distinguished_Name
75-
· Department
76-
77-
NOTE: **Device Owner** is equivalent to Corporate Owned devices. The following are considered as Device Owner:
78-
• Android Enterprise - Fully Managed, Dedicated, and Corporate-Owned Work Profile
79-
• Android AOSP
80-
o User-affinity
81-
o User-less
82-
83-
![image](https://user-images.githubusercontent.com/49950578/191582773-3066ebcd-374c-4353-bdfe-6013122c5369.png)
60+
1. Under Monitoring, certificate reporting isn't available for **Device Owner** SCEP certificate profiles.
61+
1. You can't use Intune to revoke certificates that were provisioned by SCEP certificate profiles for **Device Owner**. You can manage revocation through an external process or directly with the certification authority.
62+
1. For Android Enterprise dedicated devices, SCEP certificate profiles are supported for Wi-Fi network configuration, VPN, and authentication. SCEP certificate profiles on Android Enterprise dedicated devices aren't supported for app authentication.
63+
64+
For **Android (AOSP)**, the following limitations apply:
65+
66+
1. Under Monitoring, certificate reporting isn't available for **Device Owner** SCEP certificate profiles.
67+
1. You can't use Intune to revoke certificates that were provisioned by SCEP certificate profiles for **Device Owners**. You can manage revocation through an external process or directly with the certification authority.
68+
1. SCEP certificate profiles are supported for Wi-Fi network configuration. VPN configuration profile support is not available. A future update may include support for VPN configuration profiles.
69+
1. The following 3 variables are not available for use on Android (AOSP) SCEP certificate profiles. Support for these variables will come in a future update.
70+
- onPremisesSamAccountName
71+
- OnPrem_Distinguished_Name
72+
- Department
73+
74+
> [!NOTE]
75+
> **Device Owner** is equivalent to Corporate Owned devices. The following are considered as Device Owner:
76+
> - Android Enterprise - Fully Managed, Dedicated, and Corporate-Owned Work Profile
77+
> - Android AOSP
78+
> - User-affinity
79+
> - User-less
8480
8581
4. Select **Create**.
8682

0 commit comments

Comments
 (0)