
Hello everyone,
we are currently trying to set up an iOS device (iPhone) with a shared hardware station. As you surely know there is an SSL certificate needed for communication between the two devices.
We first tried to connect an MPOS with our Shared Hardware Station which worked. We used three self signed SSL certificates with the pc name of the shared hardware station as domain name for this: 1x Trusted Root Certificate (File Extension: .cer), 1x Client Authentication Certificate (File extension: .pfx), 1x Server Authentication Certificate (File extension: .pfx)
Microsoft told us that self signed certificates can not be used with iOS devices. That´s why we were told to use a "real" certificate.
As we approached several certificate dealers, they told us that we cannot use a local host as certificate domain (see screenshot below).
So we are now stuck with several questions:
Thank you very much for your help! Any information is highly appreciated!
Hi Michael,
This is a very complex answer with a lot of variables.
1. Which certificate do we need to purchase?
A. One that is issued by a Certificate Provider
2. Do we need a web host certificate?
A. No, you can use Personal or Web hosting. As long as the certificate is capable of key exchange.
3. Which domain should we use for the shared hardware station?
A. Your domain name. Note this must end in a valid public domain space, such as .com, .net, .edu, etc. .LOCAL not a public domain space and as such SSL Certificate providers will not issue certs to this space as there is no way to validate each request to this space is unique.
4. Do we need only one certificate or also three certificates ( Trusted Root Certificate, Client Authentication, Server Authentication)
A. This depends on how the certificate is issued to you and who issue the certificate. You might be able to use just one certificate or you might have to also include an intermediate certificate authority cert too.
5. Do we have to install the certificates only on the iOS devices or also on the shared hardware station?
A. If the certificate is issued by a trusted Certificate Authority, then the certificate only has to be installed on the Hardware Station. Anything else requires you to install a certificate on both places in order to trust the certificate.
6. Is there a detailed guide on how to install the certificates on iOS devices?
A. Please check with Apple Support on this request.
Hopefully this helps.
Todd Berger
Support Escalation Engineer / Microsoft Dynamics 365 Commerce
North America Customer Services and Support