ProvisionManagedClientCertificateForUser is not available in Admin console for Chrome on iOS
Hello,
I am trying to configure managed client certificate support for Chrome on iOS using Chrome Enterprise Core.
My environment is:
-
Chrome Enterprise Core is enabled
-
Chrome for iOS version 151.0
-
“Apply supported user settings to Chrome on iOS” is enabled
-
The user is signed in to Chrome with a managed Google Workspace account
-
I am checking: Devices → Chrome → Settings → User & browser settings
According to the Chrome Enterprise policy documentation, ProvisionManagedClientCertificateForUser supports Chrome on iOS and iPadOS starting with version 147.
The Chrome Enterprise release notes also state that administrators should configure the following policies:
-
ProvisionManagedClientCertificateForUser
-
ProvisionManagedClientCertificateForBrowser
-
AutoSelectCertificateForUrls
However, ProvisionManagedClientCertificateForUser and ProvisionManagedClientCertificateForBrowser do not appear in the Google Admin console. I searched using both the English policy names and the localized policy descriptions. I also cleared all filters and checked the recently added settings.
I confirmed the same behavior in more than one Google Workspace tenant.
Could someone please clarify the following?
-
Has managed client certificate support for Chrome on iOS been generally rolled out?
-
Is this feature limited to selected tenants or Trusted Tester participants?
-
Is Chrome Enterprise Premium or another license required?
-
Are there additional prerequisites before these policies appear in the Admin console?
-
Can Microsoft Cloud PKI, Intune SCEP, or an on-premises CA be used as the certificate authority?
-
Is there an official end-to-end configuration guide for this feature?
Official policy reference:
https://chromeenterprise.google/policies/provision-managed-client-certificate-for-user/
Chrome Enterprise release notes:
https://support.google.com/chrome/a/answer/7679408?hl=en
Thank you.
