Closed roperzh closed 1 month ago
QA Notes:
I was able to create the key pair and start my server using the instructions mentioned above. I successfully enrolled my host and turned on mdm.
I was able to push a config profile to the host and send an mdm command successfully.
Custom keys in use, Fleet adapts, certifies truth, Safeguarding each host.
Fleet version: 4.56.0
💥 Actual behavior
🧑💻 Steps to reproduce
1. Create a keypair that reproduces the issue
First, create a file
openssl.conf
with this content:Afterwards, create the keypair by running:
2. Configure Fleet to use the keypair as the SCEP keypair
mdm_config_assets
table is emptyFLEET_MDM_APPLE_SCEP_CERT_BYTES
to the value ofcertificate.pem
FLEET_MDM_APPLE_SCEP_KEY_BYTES
to the value ofprivatekey.pem
3. Try to turn on MDM for a host
Try to turn on mdm for a host