SCEP enrollment
BigFix MCM supports certificate management and certificate-based authentication through Simple Certificate Enrollment Protocol (SCEP). SCEP is the fastest and most secure way to provision certificates to all your MCM-managed devices. With SCEP, IT Admins can automate issuing certificates to the endpoints to provide access to corporate Wi-Fi, VPN, and secure e-mail through encryption.
- Deploy a Policy Group with default SCEP policy on to the MDM server.
- Enroll a Windows device
Result
- Enrolment is successful. It invokes the SCEP certificate.
- User can see the certificate in certmgr.msc
- The certificate name is created using the logged in user name.
-
Login to the enrolled device, run the
"certmgr.msc"
cmd, and navigate to the Personal > Certificates. -
You can see that the certificate is created with the logged in user name.
-