Enable Certificate Based Authentication for Websites in SOTI Surf

Publish Date: 18-Mar-2025 Last Modified Date: 27-Aug-2025 SOTI MobiControl
1451 0

Summary

How to configure auto selection of a certificate for a domain from the Web Console, to ensure the user is not prompted to select the certificate when accessing a URL from a SOTI Surf device.

Related SOTI ONE Platform Products

SOTI MobiControl

Related Device OS

Android Enterprise

Environment

SOTI MobiControl 2024.0.0 or above.

Configuration tested on :

1. Samsung SM G990E OS 12 enrolled as Samsung ELM

2. Google Pixel, OS 10  enrolled as Work Managed

3. Samsung SM T510 OS 11 enrolled as Work Managed

4. Samsung SM G990E OS 12 enrolled as Work Profile

5. Samsung SM-T547U OS 11 enrolled as COPE

6. Zebra OS 7 enrolled as Work Managed

Process Description

The configuration below can be sent in one profile with the Certificate and SOTI Surf  payload or can be sent separately.

1. Create a Configuration Profile: Include the following payloads in the profile:

    a. Certificate Payload:

           Ensure the required security certificates are configured for authentication. 

 

certificate upload

    b. SOTI Surf Payload:

           Add the designated URL under the "Configure Catalog" section.

configure catalog

           Enable the Certification Authority to support certificate-based authentication. Define the authentication mechanism for secure access. 

certificate authority

2. Deploy the Profile: Assign and push the configured profile to the enrolled device through the MDM console.

Verification and Validation

Navigate to the preconfigured URL in the device. SOTI Surf should automatically authenticate the website using the deployed certificate on that URL.

Was this helpful?