Skip to main content
Question

Use external Certificate Authority for Casper MDM

  • April 25, 2012
  • 1 reply
  • 5 views

Forum|alt.badge.img+1

Hello all,

I try to use an external CA like EJBCA or Windows 2008 Enterprise CA. All the time I set up external CA under Public Key Infrastructure all seems to be fine, but when I enroll by URL an error message appears on my iPad 3. The error message shows “Profile can’t be installed” or “Profile is invalid”.
The enrollment process finished successfully when I used built-in CA but I need
another external CA.

I already used same settings as set up in PKI in the SCEP section of a mobile device profile. All works fine.
Therefore, I can’t figure out where is the problem. I also restart Tomcat every time when I have changed these settings.

In my opinion, some settings should be wrong but in the Casper documentation I couldn’t find the answer.

So, I would be happy when anyone can tell me which settings are correct when I use EJBCA or Windows CA?

1 reply

John_Wetter
Forum|alt.badge.img+33
  • Hall of Fame
  • April 30, 2012

That sounds like you might want to give support a call to work through your specific setup with them. My guess is that a certificate isn't matching a private tore on a server so it's getting bounced out...