Skip to main content
Skip table of contents

SCEP Relay Service

The SCEP Relay Service allows the MDM, IDMS, and device to create and deliver certificates to the device without firewall changes. Using the SCEP Relay Service, certificates can be automatically delivered to the user's device without firewall changes.

How it works

The SCEP Relay Service is installed on a server (typically cloud based) that the MDM can access. The MDM then sends the SCEP request to the Scep Relay service. The IDMS then retrieves this request, processes the request, and sends the certificate. The Scep Relay sends the certificate to the MDM which then sends the certificate to the phone.

Steps:

  1. MDM Instructions device to generate keypair
  2. Phone sends public key to MDM
  3. MDM formats into a SCEP Request
  4. MDM sends SCEP Request to SCEP Relay
  5. IDMS Retrieves the SCEP request
  6. IDMS uploads the certificate to SCEP Relay
  7. SCEP relay returns certificate to MDM

Installation Requirements

ComponentDetail
Operating SystemWindows 2016/2019
RAM4 Gig
.NET4.8
Application ServerInternet Information Services
CertificatesSSL Certificate
Ports443 (A custom SSL port can also be used)

IIS Manager View After Scep Relay service is installed

JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.