After your activate your Cloud Identity Engine tenant,
install and configure a Cloud Identity agent to communicate with
your on-premises Active Directory or OpenLDAP-based directory, then
generate a certificate to authenticate communication between the
agent and the Cloud Identity Engine.