Prerequisites
- Full Admin user role. For more information, see Manage Accounts.
- Endpoint device integration requires devices provisioned by an on-premise Active Directory domain controller (DC) and Cisco AD Connector version 1.14.4 or newer. For more information, see Connect Active Directory to Secure Access and Configure Updates on AD Connectors .
- A configured machine tunnel applied to a VPN profile. For more information, see Manage Machine Tunnels.
- Important: Make a note of the primary attribute for Active Directory certificate-based authentication. For more information, see Authentication for Machine Certificate.