Consider a scenario where a Wi-Fi or VPN profile is pushed either via Microsoft System Center Configuration Manager or Microsoft Intune to a Windows Phone 10 device. The profile is configured to use SCEP profile – Certificate for authentication, and you can see the profile on device however it fails to connect.
If you experience this problem, most likely there is more than one certificate that’s present on the device and it has the same Enhanced Key Usage or Application Policy as in the certificate pushed via the SCEP profile. Fortunately there’s a pretty simple solution to this, and you can get all the details in this new post from Microsoft’s own Karan Rustagi:
J.C. Hornbeck, Solution Asset PM
Microsoft Enterprise Cloud Group