Contact one of the vendors whose root certificate hashes are built into the Intel AMT firmware. A list of the hashes should be provided by the platform vendor. You can also see the hashes by logging into the MEBx of an Intel AMT computer.
Go to the certificate vendor's Web site, submit the certificate request (CSR) that you prepared and purchase an SSL certificate.
Save the acquired certificate on the OOB site server computer (by default, the Notification Server computer) into a text file with a .cer extension.
To install the certificate into the current user certificate store
Logon to the OOB site server computer (by default, the Notification Server computer) using the Application Identity Account.
For more information about the Notification Server's Application Identity account, see the Symantec Management Platform User Guide.
Double-click the .cer file to open the certificate.
Click Install Certificate and follow the wizard.
In the wizard, click Automatically select the certificate store based on the type of certificate.
The certificate must be installed into the Certificates - Current User > Personal > Certificates store. To view this certificate, add the Certificates - Current User snap-in to the Microsoft Management Console.
Enable the Remote Configuration feature in Out of Band Management Component.