DigiCert KnowledgeBase - Technical Support-hero

Knowledge Base

How to install Client and SMIME certificate on IOS devices

Solution ID : GN040523182256
Last Modified : 10/21/2023

Client/SMIME certificates issued in MPKI8 (magnum) account.

Client/SMIME certificates issued in DC1 account.

 

Client/SMIME certificates issued in MPKI8 (magnum) account.

Client/SMIME certificate cannot be installed on IOS devices directly with normal installation method available in MPKI8 account. Certificates need to be installed on a PC then export with private key to form a *.pfx(p12) file. Email the *.pfx(p12) file to the IOS devices then follow the below instructions to install it.

  1. Email the certificate to the IOS devices
  2. Click the certificate file in the email attachment and choose iPhone/iPad to install it. 

  3. Profile Downloaded will show up, Click “Close”. 

  4. Go to Settings Profile Downloaded

  5. Click “Install”.  

  6. Enter Passcode (this is the Passcode of the IOS devices). 

  7. Click “Install”. 



  8. Enter Password (this is the password of the certificate *.pfx(p12) file). 




  9. Click "Done".  



  10. The certificate is now installed. 



  11. Once the certificate is installed, you must enable it for iOS mail. Go to Settings > Mail



  12. Click Accounts



  13. Select the mail account (Hotmail, Outlook, etc) from the list. 



  14. Select the email address under the account. 



  15. On the next screen, Click "Advanced". 


  16. Click "Sign" to turn on digital signing. 



  17. Enable "Sign" and select the SMIME certificate. 



  18. Return to the previous screen and select "Encrypt by Default" to turn on encryption. 



  19. On the next screen enable "Encrypt by default" and select the SMIME certificate. 



  20. Now both signing and encryption are enabled. 



  21. Open Mail App > compose a new message. There should be a padlock icon now. 


     
  22. In order to send and receive encrypted mail with someone else, you must exchange public keys with the other party.

 

Please follow the instructions from Apple to exchange the public keys.

https://support.apple.com/en-us/HT202345

 

Client/SMIME certificates issued in DC1 account.

Client/SMIME certificates issued in DC1 accounts can be installed on IOS devices directly by following the steps below.

  1. Open the Certificate installation email on your IOS device and click the installation link. 




  2. Verify the Certificate information and click "Next". 





  3. Click the highlighted button to copy the password. 




  4. The download button will become available, click on it. 




  5. On the pop-up window, click "Allow".  




  6. On the pop-up window, click "iPhone". 



  7. Profile download window will pop up, click "Close". 



  8. Go to Settings > Profile Downloaded



  9. On the Install Profile window, click "install". 



  10. Enter the Passcode (this is the Passcode of the IOS device). 



  11. On the Warning window, click “install”. 

       
  12. Enter Password (this is the password of the certificate *.pfx(p12) file) copied in step 3 




  13. Profile now Installed, click “Done”.  



  14. Your Profile will appear in the configuration profiles list. 



  15. Click the Profile to view the details. 



  16. Click “More Details” to view the certificate details.  



  17. Follow steps 11 -22 in MPKI8 section to setup the certificate in the Email app.