Hi
I'm using FAC as a SP and ADFS as an IDP. The idea is to have BYOD accessing cloud resource to be trusted. The cert generated by FAC will be the 2nd factor auth, with AD creds being 1st. Users with their own device will register on a portal, and that cert request will have to be approved by a manager and then the user's device can then, via SCEP grab the signed cert.
The device certificate self-enrollment page (Authentication-->Self-service portal-->Device Self-enrollment) requires a SCEP enrollment template, and there is no documented steps I can find on how to create this template.
also, what is the url for self registration ?
User | Count |
---|---|
2627 | |
1400 | |
810 | |
672 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.