SCEP enrollment

BigFix MCM supports certificate management and certificate-based authentication through Simple Certificate Enrollment Protocol (SCEP). SCEP is the fastest and most secure way to provision certificates to all your MCM-managed devices. With SCEP, IT Admins can automate issuing certificates to the endpoints to provide access to corporate Wi-Fi, VPN, and secure e-mail through encryption.

  1. Deploy a Policy Group with default SCEP policy on to the MDM server.
  2. Enroll a Windows device

Result

  • Enrolment is successful. It invokes the SCEP certificate.
  • User can see the certificate in certmgr.msc
  • The certificate name is created using the logged in user name.
    • Login to the enrolled device, run the "certmgr.msc" cmd, and navigate to the Personal > Certificates.

    • You can see that the certificate is created with the logged in user name.