riversidekid Posted July 12, 2013 Report post Posted July 12, 2013 Can I use a hosted PKI service (Verisign or InCommon) for SCCM to manage my internal Windows and Mac machines as well as my external Windows, Mac and mobile phones and tablets? In a lab I had set up a Windows CA and pushed certificates to each Windows device via GPO and I know I could import a cert from an external service before creating the first cert, but we do not want to run a CA at all. It looks as though we may be able to get Extended Validation Certificates for our SCCM site server, SCCM web based server etc and push those out to the workstations and devices, but I cannot find where this is actually supported. I beleieve we may have to go with something like Verisign/Symantec Managed PKI Service. The quick question is "Can we use a hosted EV Cert?" If not, what would it take to provide certs to each Windows machine via GPO and each non Windows machine? Thank you in advance! Quote Share this post Link to post Share on other sites More sharing options...