Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
tedauction
New Contributor III

Fortiauthenticator SCEP with MDM ?

Hello, we are trying to get SCEP certificate enrollment working between FortiAuthenticator and Google MDM (mobile device management).

We will push out a Google MDM wifi profile to all mobile devices requesting a SCEP certificate from FortiAuthenticator. It is not working for us and there is very little (if any) documentation on this.

Has anyone got FAC SCEP working with an MDM of any kind ?

Thank you kindly.

2 REPLIES 2
xsilver_FTNT
Staff
Staff

Hi,

not sure how it should be specific for MDM, but on FAC it should be as any other SCEP cert enrollment.

So components and config like SCEP template are supposed to be same.

Logging section should be helpful, also you can sniff CSRs sent to FAC as SCEP is supposed to be HTTP traffic by default. So have a look if you even received CSR on FAC and if the request did match to any enrollment template.

Tomas Stribrny - NASDAQ:FTNT - Fortinet Inc. - TAC Staff Engineer
AAA, MFA, VoIP and other Fortinet stuff

80211WiGuy

Hi xSilver,

I'm trying to figure this out now, quite some time after the original poster.  Is there anywhere on the FAC debug logs that we could check for these CSRs?  I'm not having any luck under "web server" and cant think of any other services listed that could be a match in https://facserver/debug.

Labels
Top Kudoed Authors