Add a new SCEP payload configuration to an existing profile

Open in ChatGPT Open in ChatGPT to ask questions about this page
Open in Claude Open in Claude to ask questions about this page
Copy as MarkdownCopy this page as markdown to use with AI assistants
View as Markdown Open this page as markdown in a new tab

To create Mac SCEP policy

Request URL

https://{server-hostname}:8383/api/v1/mdm/profiles/{profile_id}/payloads/macsceppolicy

Scope

MDMDeviceMgmt.CREATECopied!

Header

Authorization: d92d4xxxxxxxxxxxxx15f52

Request Parameters

- Request Headers

Content-TypestringMandatory
application/jsonapplication/jsonCopied!
AcceptstringMandatory
application/jsonapplication/jsonCopied!

- Path Parameters

profile_idstringMandatory

Unique identifier of the profile. Obtain from the Create Profile or Get Profiles response

- Request Body

application/json
JSON Object
Hide Sub-Attributes
scep_config_idlongMandatory

SCEP template configuration ID. First create a SCEP server using Add SCEP Server, then create a template using Add SCEP Template to obtain this ID

key_is_extractablebooleanOptional

Whether the private key can be extracted from the keychain. When false, the key is non-exportable for enhanced security. Default: true

allow_all_apps_accessbooleanOptional

Whether all apps on the device can access the SCEP certificate and private key in the keychain. Default: false

Sample Request

Curl
Java
Python
Deluge
PowerShell
Copied!
curl --request POST \
  --url https://appdomain/api/v1/mdm/profiles/{profile_id}/payloads/macsceppolicy \
  --header 'Accept: application/json' \
  --header 'Authorization:  d92d4xxxxxxxxxxxxx15f52' \
  --header 'Content-Type: application/json' \
  --data '{"allow_all_apps_access":false,"scep_config_id":1,"key_is_extractable":true}'

Sample Request Body

Add SCEP payload to the profile

Copied!
  {
    "allow_all_apps_access": false,
    "scep_config_id": 1,
    "key_is_extractable": true
  }
                
Show full

Response Parameters

- HTTP code 200

Response Body - application/json
JSON Object
Hide Sub-Attributes
payload_idlong

Unique identifier for the created payload item

scep_config_idstring

SCEP template configuration ID. First create a SCEP server using Add SCEP Server, then create a template using Add SCEP Template to obtain this ID

key_is_extractableboolean

Whether the private key can be extracted from the keychain. When false, the key is non-exportable for enhanced security. Default: true

allow_all_apps_accessboolean

Whether all apps on the device can access the SCEP certificate and private key in the keychain. Default: false

Possible Response Codes

200HTTP code

Sample Response: HTTP 200

SCEP payload successfully added

Copied!
  {
    "payload_id": 9007199254741000,
    "allow_all_apps_access": false,
    "scep_config_id": 1,
    "key_is_extractable": true
  }
                
Show full

Duration: 1 minute | Threshold: 30 | Lock period: 5 minutes

Duration - Time window for the threshold.
Threshold - Number of API calls allowed within the specified duration.
Lock Period - Wait time before consecutive API requests.