Deployment architecture

The following diagram illustrates the deployment architecture for integrating BigFix MCM with the certificate enrollment infrastructure. It shows the key components involved in the certificate enrollment workflow, including Active Directory, Microsoft Certificate Authority (CA), Network Device Enrollment Service (NDES), NDES Proxy, LDAP Proxy, and BigFix components.

The architecture also highlights the communication paths between these components and the network interfaces used for certificate enrollment operations. BigFix interacts with the certificate infrastructure through the NDES Proxy for SCEP-based certificate requests and the LDAP Proxy for directory queries to Active Directory.

This architecture provides a secure and scalable approach for enabling device certificate enrollment through SCEP in a BigFix MCM deployment.
Deployment architecture