Create a user credential profile to use Entrust smart credentials on devices
- BlackBerry Dynamics apps on iOS devices.
- BlackBerry Dynamics apps on Android devices other than Samsung Knox Workspace devices.
- Apps on Android Enterprise devices that use certificates for signing, encryption, and identity authentication, such as BlackBerry Hub and supported web browsers.
- Apps on Samsung Knox Workspace devices that use certificates for signing, encryption, and identity authentication, such as the Samsung native email client and supported web browsers.
BlackBerry UEM doesn't support key history for derived smart credentials.
- Connect BlackBerry UEM to your organization’s Entrust IdentityGuard server to use smart credentials.
- Create a CA certificate profile to send the Entrust CA certificate to devices and assign the profile to the same users or groups that this user credential profile will be assigned to.
- Assign the profile to user accounts and user groups.
- After a device receives the profile, users must log in to the Entrust IdentityGuard Self-Service Module to activate their smart credential and use the UEM Client to scan the QR code presented by the Entrust IdentityGuard Self-Service Module to add the smart credential to the device.
- To remove an Entrust smart credential from a device, the user should deactivate the smart credential in the UEM Client before you unassign the profile or remove the certificate.