- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
11-30-2021 06:18 AM
I want to set up SCEP enrollment on the firewalls so I don't have to manually update each device cert every year. Ideally I don't want to run my own Certificate management server internally. Can anyone recommend a PKI CA that supports SCEP directly for managing and issuing certificates, I have had a good look round, and I seem to keep being steered towards various PKI systems to manage enterprise certs, which is not what I want.
I use Panorama to manage the devices, so ideally I would set up the SCEP enrollment with the device hostname and SANs as a template variable. Hopefully the devices should then be able to auto renew. Anyone managed to do this without an internal Cert management server?