Install SIA Proxy MITM certificate

If ​SIA​ Proxy is enabled, you need to distribute the trusted man-in-the-middle (MITM) root certificate authority (CA) certificate that you generated in ​SIA​ (​ZTC certificate) to mobile devices in your network.

📘

If you activated a subordinate certificate to ​SIA​ (non-​​Akamai​ certificate), certificate distribution is only necessary if the devices in your network are not already configured with the root certificate.

Before you begin

Create a SIA Proxy MITM certificate

Android

Follow these steps to install the certificate on an Android device.

  1. Download your certificate.
  2. Transfer the .pem certificate to the mobile device.
  3. On your mobile device, go to Settings > Security > Encryption & credentials > Install a certificate

📘

Depending on your device, this setting may be located elsewhere. Refer to your device’s manual. You can also use the Settings app’s search feature. Type Certificate and look for CA Certificate.

  1. Tap CA Certificate.
  2. You may see a warning about security risks - this is normal when installing certificates.
  3. Locate and select your .pem file.
  4. Follow the prompts to complete installation.
  5. You may need to enter your device PIN or password to proceed.
  6. After the process is complete, restart the ​Zero Trust Client​ app.

iOS and iPadOS

Follow these steps to install the certificate on an iPhone or iPad.

  1. Download your certificate.
  2. Transfer the .pem certificate to the iPhone.
  3. On the iPhone, open the Files app and tap the .pem certificate.
    A Profile Downloaded notification appears. Tap Close.
  4. Go to Settings.
  5. At the top, tap Profile Downloaded.
  6. Check if the certificate name and details are correct and tap Install.
  7. Enter your passcode.
  8. Tap Install to confirm.
  9. Tap Install again in the popup to continue.
  10. The certificate is now installed. Tap Done.
  11. Go back to Settings and tap About.
  12. Scroll down to the bottom and tap Certificate Trust Settings.
  13. Find your CA certificate and enable full trust for the root certificate.
  14. In the confirmation popup, tap Continue.
  15. Restart the ​Zero Trust Client​ app.