Adding a profile for trusted certificates in VMware Workspace ONE

Profiles with the User Profile context do not support uploading certificates to the Trusted Root certificate store. Therefore, you must create a profile with the Device Profile context and the following settings.

When creating a Workspace One profile with the User Profile context, assign them to the same Smart Group. This way, the devices managed by the user profile will trust the CA certificate chain of the device profile.

To add a device profile in Workspace One

  1. In Workspace One, navigate to Resources > Profiles & Baselines > Profiles.

    images/download/attachments/209514800/image-2023-7-27_14-36-50-version-1-modificationdate-1692163696534-api-v2.png
  2. In the content pane, click Add > Add Profile.

  3. Follow the wizard pages described below.

Add Profile

Click on the name of the platform running the enrollment device.

images/download/attachments/209514800/image-2023-7-27_14-39-17-version-1-modificationdate-1692163696746-api-v2.png

Select Device Type

Click on the type of enrolled device.

images/download/attachments/209514800/image-2023-7-27_14-41-27-version-1-modificationdate-1692163696786-api-v2.png

Select Context

Click on Device Profile to enroll devices.

images/download/attachments/209514800/image-2023-7-27_14-43-43-version-1-modificationdate-1692163696815-api-v2.png

General

Click General in the sidebar menu to configure the following settings in the content pane.

Field

Value

​Name

Enter a name for the profile.

Smart Group

Select the smart group containing the managed users or devices.

images/download/attachments/209514925/image-2023-7-26_10-41-57-version-1-modificationdate-1692247624686-api-v2.png

Credentials

Click Credentials in the sidebar menu to configure the user credentials.

Field

Value

Credential Source

Select Defined Certificate Authority.

Certificate

Upload separately the certificates of the root and issuing CAs.

Certificate Store

Select Trusted Root.