Skip to main content

Configure SCEP in SureMDM

To configure the user certificate through SCEP in SureMDM, follow these steps:

  1. Navigate to SureMDM Web Console > Settings (icon located at the top right of the screen) > Account Settings > Certificate Management.

  2. Configure the following Certificate settings and click Save.

SettingsDescription
Certificate Management MethodSelect SCEP
Connection TypeOn-premise connector
CA Server AddressSCEP URL (Refer to e.iii under SCEP configurations sectigo Configurations.)
Certificate TemplateProvide the cert template name.
Certificate Renewal PeriodSelect the time to renew the CA certificate.
Common Name Wild CardUse the drop-down menu to select the CN Type and enter the Common name in the corresponding data entry field if the Common Name Wildcard/values.
To fetch values from the device, we are using custom wildcard values. For example, Principal Name \= %upn%, RFC822 Name= %emailaddress%
Supported wildcards for CN are:
1. PRINCIPAL NAME
2. RFC822 NAME
3. REGISTERED ID
4. DIRECTORY NAME
5. $devicename$
6. DNS NAME
7. IP ADDRESS
8. GUID
9. URL
10. SID
Subject Alternate Name WildcardUse the drop-down menu to select the SAN Type and enter the Common name in the corresponding data entry field if the Common Name Wildcard/values.
To fetch values from the device, we are using custom wildcard values. For example, Principal Name \= %upn%, RFC822 Name= %emailaddress%
Supported wildcards for SAN are:
1. PRINCIPAL NAME
2. RFC822 NAME
3. REGISTERED ID
4. DIRECTORY NAME
5. $devicename$
6. DNS NAME
7. IP ADDRESS
8. OTHER NAME
9. GUID
10. URL
11. SID
Challenge TypeStatic or Dynamic
User NameThe username of the account to communicate with the certificate authority.
PasswordThe password of the account to communicate with the certificate authority.