> For the complete documentation index, see [llms.txt](https://docs.scepman.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.scepman.com/ja/zheng-ming-shu-guan-li/static-certificates/mosyle.md).

# Mosyle

SCEPman を External CA として接続することで、Mosyle で証明書を発行します。デバイスは、SCEPman の静的インターフェースと登録済みのチャレンジ パスワードを使用して証明書を取得できます。

他の MDM ソリューションと SCEPman の統合に関する一般的な情報については、こちらをご覧ください [こちら](/ja/zheng-ming-shu-guan-li/static-certificates.md).

## Mosyle 連携を有効にする

Mosyle と SCEPman の連携は、以下の SCEPman アプリ設定で簡単に有効化できます:

{% hint style="info" %}
SCEPman App Service と Certificate Master は、App Service **が** 名前に「-cm」がないものを確認することで区別できます
{% endhint %}

|                                                                                                  設定                                                                                                  | 説明                                                                                                                                                                                                                 |                  Value                 |
| :--------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------: | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ | :------------------------------------: |
|                        [AppConfig:StaticValidation:Enabled](/ja/scepman-gou-cheng/application-settings/scep-endpoints/static-validation.md#appconfig-staticvalidation-enabled)                       | サードパーティ検証を有効にする                                                                                                                                                                                                    |   **true** 有効にするには **false** 無効にするには   |
|                [AppConfig:StaticValidation:RequestPassword](/ja/scepman-gou-cheng/application-settings/scep-endpoints/static-validation.md#appconfig-staticvalidation-requestpassword)               | <p>署名のために SCEPman に送信される証明書署名要求は、この安全な静的パスワードで認証されます<br><br><strong>推奨</strong>: このシークレットは <a href="/ja/scepman-gou-cheng/application-settings.md#secure-configuration-in-azure-key-vault">Azure KeyVault</a>.</p> |       *に保存し、32 文字のパスワードを生成してください*      |
|          [AppConfig:StaticValidation:ValidityPeriodDays](/ja/scepman-gou-cheng/application-settings/scep-endpoints/static-validation.md#appconfig-staticvalidation-validityperioddays) （任意）          | Mosyle 経由で発行された証明書を何日間有効にしますか                                                                                                                                                                                      |                   365                  |
| [AppConfig:StaticValidation:EnableCertificateStorage](/ja/scepman-gou-cheng/application-settings/scep-endpoints/staticaad-validation.md#appconfig-staticaadvalidation-enablecertificatestorage) （任意） | 要求された証明書を Storage Account に保存し、SCEPman Certificate Master に表示できるようにする                                                                                                                                              | ***true*** 有効にするには ***false** 無効にするには* |

{% hint style="info" %}
SCEPman の設定パラメータを追加または編集した後は、アプリサービスを再起動する必要があります。
{% endhint %}

## Mosyle の構成

### SCEPman ルート証明書

最初のステップとして、SCEPman のルート証明書を展開する必要があります。この CA 証明書は SCEPman の Web サイトからダウンロードしてください:

![SCEPman の Web サイト](https://114237723-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LoGejQeUQcw7lqnQ3WX%2Fuploads%2Fgit-blob-9170eb0435726398eb43f6fac8abd0d5f35e8cc4%2FSCEPmanHomePage%20\(1\)%20\(1\)%20\(1\)%20\(1\)%20\(1\)%20\(1\)%20\(1\)%20\(1\)%20\(1\)%20\(1\)%20\(1\)%20\(1\)%20\(2\)%20\(1\)%20\(2\).png?alt=media)

Mosyle で、管理に移動し、「**Multi-Cert Profile**」を新しいプロファイルタイプとして追加します（まだ存在しない場合）。

次に **新しいプロファイルを追加し、** このプロファイルの名前を選択してください。例: SCEPman Root CA。その後、次をクリックします **+ADD PROFILE** Profile Name の下で（下のスクリーンショットを参照）**,** 表示されたウィンドウで「証明書プロファイルの追加」を選択します。次に、すでにダウンロードした SCEPman のルート証明書を選択してアップロードし、Profile Name に SCEPman Root CA を追加して保存します。

![ルート CA プロファイルの追加](https://114237723-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LoGejQeUQcw7lqnQ3WX%2Fuploads%2Fgit-blob-b1a87554a9fcd9fced251a856bd7976601fa834a%2F2022-07-25%2009_56_09-Glueckkanja%20GAB%20and%201%20more%20page%20-%20Work%20-%20Microsoft%E2%80%8B%20Edge.png?alt=media)

![ルート CA をアップロード](https://114237723-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LoGejQeUQcw7lqnQ3WX%2Fuploads%2Fgit-blob-a87d5c4e48811609296cf9a99b2f5e43d9bd4c82%2F2022-07-25%2010_04_49-Window.png?alt=media)

次に、このプロファイルをデバイス/ユーザーに割り当て、保存します

![ルート CA プロファイルを保存](https://114237723-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LoGejQeUQcw7lqnQ3WX%2Fuploads%2Fgit-blob-9387a570f6fe9c4cd1447f31126b33ec41151706%2F2022-07-25%2010_07_23-Window.png?alt=media)

保存後、プロファイルの詳細を表示をクリックしてコンプライアンス状態を確認できます

![プロファイル配布状況](https://114237723-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LoGejQeUQcw7lqnQ3WX%2Fuploads%2Fgit-blob-ac4884821ea581415bcaea1afbffca4dc014c9ef%2F2022-07-25%2010_10_27-Window.png?alt=media)

### デバイス証明書

新しいプロファイルを追加し、プロファイル名として例: SCEPman Device Certificate を追加し、 **+ADD PROFILE、** 次に選択します **SCEP プロファイル** そして下記のように値を入力します

![SCEP プロファイルの構成](https://114237723-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LoGejQeUQcw7lqnQ3WX%2Fuploads%2Fgit-blob-561c37170b07a41faf043cff9eded597746bd3ca%2F2022-07-25%2011_41_51.png?alt=media)

![SCEP プロファイルの構成](https://114237723-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LoGejQeUQcw7lqnQ3WX%2Fuploads%2Fgit-blob-ee60a06b623abe7b415b374fe4e8037db5900a20%2F2022-07-25%2011_29_43.png?alt=media)

**プロファイル名:** プロファイルの名前を選択してください

**サーバー:** URL を選択

**URL:** SCEPman の URL の末尾に **/static** スクリーンショットのように末尾に追加します。この値は SCEPman のホームページの「Static MDM」付近からコピーすることもできます **Static MDM**

**サブジェクト：** 件名にどの変数を選ぶかは自由です。1つまたは複数の Relative Distinguished Name (RDN) を選択できます。なお、RDN は常に次で始まります **/** たとえば

`/CN=%DeviceName%` デバイス名用です。スクリーンショットの例では 3 つの RDN を追加しています。複数の CN も使用可能です。変数一覧は次をクリックして確認できます **使用可能な変数を表示** フィールドの上にあります。

**サブジェクト代替名** は任意です。

**チャレンジ:** SCEPman の設定で構成した 32 文字のチャレンジパスワードを追加します。 [「Mosyle 連携を有効にする」を参照](#enable-mosyle-integration)

**キーサイズ：** 2048

次の 2 つのオプションを有効にします「**署名に使用**」と「**暗号化に使用**」を有効にし、他のすべての設定は既定のままにします（スクリーンショットのように）。その後 **保存**

次に、このプロファイルをデバイス/ユーザーに割り当てる必要があります。その後 **保存**.

保存後、プロファイルの詳細を表示をクリックしてコンプライアンス状態を確認できます

![プロファイル配布状況](https://114237723-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LoGejQeUQcw7lqnQ3WX%2Fuploads%2Fgit-blob-94ac69b5cffff379d7efdcfd91a35dae79d1a6b7%2F2022-07-25%2011_55_57-Window.png?alt=media)


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://docs.scepman.com/ja/zheng-ming-shu-guan-li/static-certificates/mosyle.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
