A question about third-party CA

Hello there,I am currently trying to build a zero trust network that covers same IoT devices using openziti. At first, everything went smoothly, but when I tried to use the tunneler on IoT devices, I have encountered a problem. I have created a third-party CA already, so how can I use the certificate and private key issued by this CA on IoT devices to automatically create a ziti identity when accessing?