Fortinet black logo

New Features

Add basic and certificate authentication for Workspace ONE MDM integration 7.2.2

Add basic and certificate authentication for Workspace ONE MDM integration 7.2.2

This feature enhances the EMS integration with Workspace ONE to include basic and certificate-based authentication in addition to OAuth 2.0.

To configure EMS Workspace ONE integration with basic authentication:
    1. Create the API key on the Workspace ONE console:
      1. On the Workspace ONE UEM console, go to Groups & Settings > All Settings > System > Advanced > API > REST API.
      2. Click Add.
      3. In the Service field, configure a desired service name.
      4. From the Account Type dropdown list, select Admin.
      5. The API Key field populates with the API key. Copy this value as you must enter it on the EMS GUI in the API Key field.

  1. In EMS, go to System Settings > MDM Integration.
  2. From the Vendor dropdown list, select VMWare Workspace One UEM.
  3. In the Site URL field, enter the site URL.
  4. In the Smart Group Name field, enter the smart group name. You can create a smart group on the Workspace ONE console by going to Groups & Settings > Groups > Assignment Groups.
  5. For Authorization Type, select Basic Auth.
  6. In the API Key field, enter the key that you copied.
  7. In the Username and Password fields, enter your Workspace ONE credentials.
  8. Click Test Connection, then Save.

To configure EMS Workspace ONE integration with certificate-based authentication:
  1. Create an admin user account with certificate authentication:
    1. On the Workspace ONE UEM console, go to Accounts > Administrators > List View > Add > Add Admin > Basic. Click Next.
    2. Configure the user information as desired. Click Next.
    3. Add Console Administrator as the user role. Click Next.
    4. Skip the Details page. Click Next.
    5. In the Settings page, for Authentication, select Certificates.
    6. In the Certificate Password field, configure the desired password. Click Save.
  2. After Workspace ONE creates the user, select the user from the admin user list and go to the Settings page. Export the certificate by providing the password that you defined.
    1. Create the API key on the Workspace ONE console:
      1. On the Workspace ONE UEM console, go to Groups & Settings > All Settings > System > Advanced > API > REST API.
      2. Click Add.
      3. In the Service field, configure a desired service name.
      4. From the Account Type dropdown list, select Admin.
      5. The API Key field populates with the API key. Copy this value as you must enter it on the EMS GUI in the API Key field.

  3. Configure the integration in EMS:
    1. In EMS, go to System Settings > MDM Integration.
    2. From the Vendor dropdown list, select VMWare Workspace One UEM.
    3. In the Site URL field, enter the site URL.
    4. In the Smart Group Name field, enter the smart group name. You can create a smart group on the Workspace ONE console by going to Groups & Settings > Groups > Assignment Groups.
    5. For Authorization Type, select Certificate.
    6. In the API Key field, enter the key that you copied.
    7. In the Certificate field, provide the certificate that you exported from the Workspace ONE console.
    8. In the Password field, enter the password that you configured.
    9. Click Test Connection, then Save.

Add basic and certificate authentication for Workspace ONE MDM integration 7.2.2

This feature enhances the EMS integration with Workspace ONE to include basic and certificate-based authentication in addition to OAuth 2.0.

To configure EMS Workspace ONE integration with basic authentication:
    1. Create the API key on the Workspace ONE console:
      1. On the Workspace ONE UEM console, go to Groups & Settings > All Settings > System > Advanced > API > REST API.
      2. Click Add.
      3. In the Service field, configure a desired service name.
      4. From the Account Type dropdown list, select Admin.
      5. The API Key field populates with the API key. Copy this value as you must enter it on the EMS GUI in the API Key field.

  1. In EMS, go to System Settings > MDM Integration.
  2. From the Vendor dropdown list, select VMWare Workspace One UEM.
  3. In the Site URL field, enter the site URL.
  4. In the Smart Group Name field, enter the smart group name. You can create a smart group on the Workspace ONE console by going to Groups & Settings > Groups > Assignment Groups.
  5. For Authorization Type, select Basic Auth.
  6. In the API Key field, enter the key that you copied.
  7. In the Username and Password fields, enter your Workspace ONE credentials.
  8. Click Test Connection, then Save.

To configure EMS Workspace ONE integration with certificate-based authentication:
  1. Create an admin user account with certificate authentication:
    1. On the Workspace ONE UEM console, go to Accounts > Administrators > List View > Add > Add Admin > Basic. Click Next.
    2. Configure the user information as desired. Click Next.
    3. Add Console Administrator as the user role. Click Next.
    4. Skip the Details page. Click Next.
    5. In the Settings page, for Authentication, select Certificates.
    6. In the Certificate Password field, configure the desired password. Click Save.
  2. After Workspace ONE creates the user, select the user from the admin user list and go to the Settings page. Export the certificate by providing the password that you defined.
    1. Create the API key on the Workspace ONE console:
      1. On the Workspace ONE UEM console, go to Groups & Settings > All Settings > System > Advanced > API > REST API.
      2. Click Add.
      3. In the Service field, configure a desired service name.
      4. From the Account Type dropdown list, select Admin.
      5. The API Key field populates with the API key. Copy this value as you must enter it on the EMS GUI in the API Key field.

  3. Configure the integration in EMS:
    1. In EMS, go to System Settings > MDM Integration.
    2. From the Vendor dropdown list, select VMWare Workspace One UEM.
    3. In the Site URL field, enter the site URL.
    4. In the Smart Group Name field, enter the smart group name. You can create a smart group on the Workspace ONE console by going to Groups & Settings > Groups > Assignment Groups.
    5. For Authorization Type, select Certificate.
    6. In the API Key field, enter the key that you copied.
    7. In the Certificate field, provide the certificate that you exported from the Workspace ONE console.
    8. In the Password field, enter the password that you configured.
    9. Click Test Connection, then Save.