Hi @ all,
I planned to use Intel AMT on the Clients to enable an Out of Band Management.
But unfortunately i didn't found all the answers for my questions. It will be implemented in an Microsoft server environment with AD, WSUS, SCCM etc.
Which component will deploy the certificates to the AMT-Clients, does the Certificates will be deployed by the SCCM or by the normal Certificate Server.
Maybe anyone of you could explain me, how the certificates will find their way to the AMT-Clients
Thanks in Advance
(Sorry for my English)
In this scenario that you explained, SCCM act as a proxy between AMT-clients and your internal CA to issue TLS certificates. However, I would like to to advise you that exist a compatibility issue for provisioning *only*, between AMT 9 and beyond with SCCM - What I would recommend you is use http://www.intel.com/content/www/us/en/software/setup-configuration-software.html Intel SCS for provisioning, it won't affect SCCM capability to manage these AMT-client machines - you can use this https://downloadcenter.intel.com/Detail_Desc.aspx?DwnldID=24010 add-on for integration.
You will also found further documentation about this process in User Guides with these components and do not hesitate to send us your questions/doubts.