Configuring an External CA in Jamf Pro

Technical Articles

Solution
Application
Content Type
Technical Documentation
Utilities & Services
ft:locale
en-US

  1. In Jamf Pro, click Settings in the sidebar.
  2. In the Global section, click PKI certificates .
  3. Click Management Certificate Template.
  4. Click External CA.
  5. Check Enable Jamf Pro as SCEP Proxy for configuration profiles.
  6. Enter the base URL for the SCEP server.
    Note:

    If you are using Jamf Cloud and want to establish communication over HTTPS to your SCEP server, you must use a third-party SSL certificate. If you are using an on-premise Jamf Pro server and an on-premise CA, ensure the server is trusted through the Java CA certificates.

  7. Enter a name for the instance.
  8. (Optional) Enter a subject. You can also enter the subject in the configuration profile.
  9. Choose "Dynamic-Microsoft CA" from the Challenge Type pop-up menu, and then enter the required information.