“Key Attestation now extends support for Smart Card Key Storage Providers, Network Device Enrollment Service (NDES), and Online Certificate Status Protocol (OCSP). It leverages the existing endpoint identity information stored in Active Directory (AD) for certificate registration, eliminating the need for redundant registration processes.

Additionally, administrators can configure AD Group Policies to govern certificate access for users and machines based on predefined criteria. This enables automated certificate provisioning and streamlines the certificate lifecycle management process.”