I have an Azure tenant, in which I want to create a root CA and an issuing CA. I want to use the CAs as a source for Intune to issue certificates to client devices so that the clients can autheticate throuugh Meraki APs (916x). I know Meraki pretty well, I can create CAs (root and Issuing) in Azure/Intune, but I'm unclear hpw, having deployed the CAs, how I use Intune to load the certificates from the CAs to the clients or how I use the certificates to support .1x (EAP/TLS) client authentication.
 
Are there any good written or video descriptions of the process that I can refer to?
 
Thanks