NDES Integration Guide
CertSecure Manager allows you to track NDES certificates for Microsoft ADCS, giving visibility into certificates issued through the Network Device Enrollment Service alongside the rest of your certificate inventory.
Step 1: Connect the Issuing CA
- Ensure the Issuing CA associated with your NDES server is connected to CertSecure Manager and that all certificates are in sync.
Step 2: Open the NDES Utility
- Go to: Utilities → NDES.
Step 3: Start NDES Enrollment
- Click Enroll NDES in the top right.
Step 4: Configure the NDES Server
- Certificate Authority: choose the CA connected in Step 1.
- NDES Name: a name to identify this NDES instance.
- URI: the same domain name as the ADCS instance (e.g. ndes.certsecure.com if the ADCS domain is certsecure.com); the specific URI is assigned by ADCS. Make sure the URI is reachable from the backend.
Note: The NDES URI must be network-reachable from the CertSecure Manager backend, or certificate sync and enrollment tracking will fail.
