Is there anyone who has an tip on how we can register "PKI DNS Suffix" and Root CA thumbprint for devices that is not yet provisioned programmatic?
We need to have an tool that can set this programmatically without doing it manually by IT-personnel.
Scenario for this usage is during SCCM OS Deployment to prepare the Intel AMT device for provisioning with Intel EMA.
Any one has an idea on how this can be carried out without the need to enter the Intel MBEx BIOS manually?
You can use the USBFile.exe to make a BIN file. If placed on an USB Stick and activated in Bios you can configure Digest Password, Certificate or PKI DNS Suffix with booting from the USB Stick.
This was part of AMT_SDK_220.127.116.11 - I don't know where you can get it now but attached it with the sample BAT.