Deploy CA Certificate via MDM

Has anyone found a way to deploy a CA Certificate to all Postman users via MDM? We utilize Zscaler ZIA with SSL Inspection and need to add our certificate to Postman for all our users.

It depends on the MDM.

It should be the same process as deploying any other certificate through that MDM.

If its Intune or SCCM, then a quick Google search should provide the options.

Do you not already deploy certificates for other applications\purposes?

Hi Mike, yes we already use MDM to deploy the cert to Mac Keychain for other applications, but that does not seem to get picked up by Postman to be used within postman as the CA Certificate:

I don’t know the specifics, but the certs should be in some sort of certificate store and the first troubleshooting step would be to see how and if the certs are deployed to that store including any certification chains. You have personal and machine certificates on Windows 10, but I don’t know how it works on a Mac and what the differences might be.

A quick google search on Mac Keychain appears to be a intermediate application for quick access to certificates and passwords. It appears that it sits on top of the core certificate stores on the device.

Can you get it to work if you add the certificates manually?

Yes, it works manually with no problem. But with nearly 700 macs under management, we can’t manually manage certificates. Typically enterprise software allows you to push a managed configuration with the application that pre-configures the application according to your enterprise requirements. For example, we push a managed configuration with Zoom that binds the client to our domain and restricts logins to SSO only.

If it works with Postman when you deploy the certificate manually, then it sounds like the issue is with the MDM and how its pushing the certificates out, rather than Postman in particular.

Perhaps its a question better posed to a “Mac Keychain” support group\forum.

Hi Mike, I think you might be misunderstanding my request. The issue isn’t with the MDM as I haven’t pushed anything through the MDM. We would need to know how to configure the Managed Configuration file in order to attempt to push this. This is a “How To” not a “Troubleshooting” topic.

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.