Installing the Certificate to Use for Signing Purposes

Technical Articles

Solution
Application
Content Type
Technical Documentation
Utilities & Services
ft:locale
en-US
  1. Double-click the downloaded certificate to install it in your login keychain.
  2. In Keychain Access, double-click the certificate and inspect its trust settings:
    • If the certificate displays the message "This certificate is valid", it is successfully installed and is ready to be used for signing.
      Message for trusted certificate
      Note:

      If the computer the certificate is installed on is managed by the same Jamf Pro instance that created the certificate, trust should automatically be established.

    • If the certificate displays the message "[Certificate Name] certificate is not trusted", it is successfully installed but not trusted.
      Message for not trusted certificate
  3. Do the following to establish trust so the certificate can be used for signing:
    1. In Jamf Pro, navigate to Settings > PKI Certificates.
    2. In the Management Certificate Template pane, click Download CA Certificate.
    3. Double-click the certificate to install it to your System keychain.
    4. In Keychain Access, select and double-click the certificate to view its trust settings.
    5. Expand the Trust disclosure triangle if needed.
    6. Choose "Always Trust" from the When using this certificate pop-up menu:
      Certificate trust settings
    7. When prompted, enter your administrator credentials to modify the trust settings.
    8. Repeat step 2 to verify the certificate that you created is valid.