Configure SCEP in SureMDM
To configure the user certificate through SCEP in SureMDM, follow these steps:
Navigate to SureMDM Web Console > Settings (icon located at the top right of the screen) > Account Settings > Certificate Management.
Configure the following Certificate settings and click Save.
| Settings | Description |
|---|---|
| Certificate Management Method | Select SCEP |
| Connection Type | On-premise connector |
| CA Server Address | SCEP URL (Refer to e.iii under SCEP configurations sectigo Configurations.) |
| Certificate Template | Provide the cert template name. |
| Certificate Renewal Period | Select the time to renew the CA certificate. |
| Common Name Wild Card | Use the drop-down menu to select the CN Type and enter the Common name in the corresponding data entry field if the Common Name Wildcard/values. To fetch values from the device, we are using custom wildcard values. For example, Principal Name \= %upn%, RFC822 Name= %emailaddress% Supported wildcards for CN are: 1. PRINCIPAL NAME 2. RFC822 NAME 3. REGISTERED ID 4. DIRECTORY NAME 5. $devicename$ 6. DNS NAME 7. IP ADDRESS 8. GUID 9. URL 10. SID |
| Subject Alternate Name Wildcard | Use the drop-down menu to select the SAN Type and enter the Common name in the corresponding data entry field if the Common Name Wildcard/values. To fetch values from the device, we are using custom wildcard values. For example, Principal Name \= %upn%, RFC822 Name= %emailaddress% Supported wildcards for SAN are: 1. PRINCIPAL NAME 2. RFC822 NAME 3. REGISTERED ID 4. DIRECTORY NAME 5. $devicename$ 6. DNS NAME 7. IP ADDRESS 8. OTHER NAME 9. GUID 10. URL 11. SID |
| Challenge Type | Static or Dynamic |
| User Name | The username of the account to communicate with the certificate authority. |
| Password | The password of the account to communicate with the certificate authority. |