Install the certificate connector
Perform the following steps to install the Intune certificate connector:You can install the Intune certificate connector on only the NDES server. You cannot install it on the server that hosts the CA.
1
In a web browser, go to https://intune.microsoft.com/https://intune.microsoft.com/ and log in by using an account that has both an Entra P1 or P2 license and an Intune license.
2
From the main page, go to Tenant Administration and select [ Connectors and Tokens ].
3
On the left toolbar at the bottom, locate and open [ Certificate Connectors ]. Select [ Add ].
4
In the Install the certificate connector pop-up window, select the [ Certificate Connector ] hyperlink to download.
5
On your NDES server, run the installer as Administrator. After it completes, select [ Open ].
Configure the certificate connector
Perform the following tasks to configure the Intune certificate connector:1
On the Welcome page, select [ Next ].
2
On the Features page, select all options and select [ Next ].
3
On the Service Account page, select [ Domain account ] and enter the credentials for the domain administrator Service Account. Select [ Next ].
4
On the Proxy page, enter any proxy information if required. Otherwise, select [ Next ].
You do not need to enter any AAD Proxy information here.
5
On the Prerequisites page, select [ Next ].
6
When prompted, log in to Azure AD by using a Global Administrator account with an Intune license and an Entra ID P1 (or P2) license.
7
After you log in, the installer continues. After it finishes, select [ Exit ].
8
To verify that the certificate connector installed properly, go to https://intune.microsoft.com/https://intune.microsoft.com/ and log in using an account with an Entra P1 or P2 license and an Intune license.
9
From the main page, go to Tenant Administration and select [ Connectors and Tokens ].
You should see your connector listed with an Active status.

