Go to Resources > Certificate Management. The Certificate Management page is divided into four sections CA Trusted Root Certificates, Server and Intermediate Certificates, Matching Criteria for Clients, and Connecting with OSCP Responder.
Within this section update and download CA Trusted Root and Intermediate Certificates. For more information, see Manage CA Trusted Root Certificates in Universal ZTNA.
Select the client certificate attribute that Universal ZTNA should examine to detect the username (an email address). For more information, see Match Criteria for Clients.
Provide the OCSP responder server's URL or endpoint for checking the validity or revocation status of a specific digital certificate. For more information, see Connect with OCSP Responder.