Skip to content

Integrate with Smallstep via SCEP w/ dynamic challenge #28488

@allenhouchins

Description

@allenhouchins
                    <key>SubjectAltName</key>
                    <dict>
                        <key>uniformResourceIdentifier</key>
                        <array>
                            <string>deviceid://%HardwareUUID%</string>
                        </array>
                    </dict>

Note: Smallstep needs to change the challenge time from 1 minute to 1 hour to match our NDES behavior/expectations.

  • UPDATE: @allenhouchins: This technically works today but the Smallstep user has to pick the Workspace ONE integration.
    • @noahtalerman: Sounds like some UX improvements can be made in both Fleet and Smallstep. Fleet could add a new "Smallstep" option and Smallstep could add a new "Fleet" option.
Image

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions