Skip to main content

Configure and test SCEP

Configure the DigiCert​​®​​ Trust Lifecycle Manager and CA Manager applications to be able to enroll for a certificate via the Simple Certificate Enrollment Protocol (SCEP).

DigiCert​​®​​ Trust Lifecycle Manager’s SCEP protocol implementation is based on IETF’s RFC8894 SCEP standard.

  • For backwards compatibility, the renewal message type is optional, so that it can support older versions of the SCEP protocol where this type is not defined.

  • It supports both HTTP and HTTPS.

  • The SCEP service currently supports the below operations, which are returned as a response to the GetCACaps operation:

    • POSTPKIOperation

    • Renewal

    • SHA-512

    • SHA-256

    • SHA-1