Connect BlackBerry UEM to your organization's OpenTrust software
- On the menu bar, click Settings > External integration > Certificate authority.
- Click Add an OpenTrust connection.
- In the Connection name field, type a name for the connection.
- In the URL field, type the URL of the OpenTrust software.
- Click Browse. Navigate to and select the client-side certificate that BlackBerry UEM can use to authenticate the connection to the OpenTrust server.
- In the Certificate password field, type the password for the OpenTrust server certificate.
- To test the connection, click Test connection.
- Click Save.
- Create a user credential profile to send certificates from your PKI software to devices.
- When you use the UEM connection with OpenTrust software to distribute certificates to devices, there may be a short delay before the certificates are valid. This delay might cause issues with email authentication during the device activation process. To resolve this issue, in the OpenTrust software, configure the OpenTrust CA and set "Backdate Certificates (seconds)" to 180.
- If you make changes to your organization's OpenTrust software, verify that you update the URL for the OpenTrust connection in the management console. User credential profiles cannot be used to deliver certificates from OpenTrust if the URL is not valid.