Custom Certificate Templates

This document describes how to create a custom Active Directory certificate template on a Windows server and then configure the HYPR Workforce Access client application to use the certificate when a user registers or authenticates on a workstation. There are three main steps in this process:

Create a Certificate Template on the Server
Issue the Certificate Template on the Server
Configure HYPR to Use the Certificate on the Workstation

Before you begin, verify that:

  • Active Directory Certificate Services are deployed within the domain
  • Your account on the Windows server has privileges to modify the Certificate Authority settings
  • The HYPR Workforce Access client application is already installed on the workstation

Create a Certificate Template on the Server

  1. Log into the Windows server that performs the Certificate Authority role, either directly or via a remote desktop client.
  2. Open the Microsoft Management Console (MMC).
  3. In the console, select File>Add/Remove Snap-in…
  1. Add Certificate Templates to the list of selected snap-ins in the Console root.
  1. Open the Certificate Templates snap-in, right-click on the Smartcard User template, and select Duplicate Template.
  1. Change the name of the created certificate template (e.g. `HYPRMacOSAuthentication).

Issue the Certificate Template on the Server

  1. On the Windows Server, open the Certification Authority console.
  2. In the left navigation pane, right-click on the machine name and select Properties.
  1. Go to the Policy Module tab, click the Properties... button, and make sure the "Follow the settings in the certificate template, if applicable. Otherwise, automatically issue the certificate" option is checked for Request Handling.
  1. Back in the left navigation pane, right-click on Certificate Templates and select New>Certificate Template to Issue.
  1. In the Enable Certificate Templates list, locate the HYPR certificate template you created above. Highlight the template name and click OK to publish it.

Configuring HYPR to utilize the created Certificate Template

You will need to specify the name of the created certificate template in the HyprOneService.plist file when the certificate template was created.

Step-by-step guide

  1. Open the HyprOneService.plist file
  2. Set CertificateTemplate to the name of your certificate template
  1. Save changes
  2. Restart the computer to apply changes

Updated 27 days ago

Custom Certificate Templates


Suggested Edits are limited on API Reference Pages

You can only suggest edits to Markdown body content, but not to the API spec.