Configuring MDM IBM MaaS360 in PKIaaS
Configure a PKIaaS workflow to process MDM (Mobile Device Management) IBM MaaS360 enrollment requests with PKIaaS Certification Authorities.
To configure an MDM IBM MaaS360 workflow in PKIaaS:
-
Follow the steps described in Accessing your partitions to log into the PKIaaS interface as a user with any of these roles:
-
Click Enrollment Protocols in the sidebar.

-
Click Create.
-
Configure the following values in the Create Protocol Config dialog.
Field Value Type Select MDM IBM MaaS360 Protocol Configuration Identifier Enter a unique identifier for the new configuration in your PKI. This identifier: Must be 2-18 characters long, can only include lowercase letters, numbers, hyphens (’-’), and underscores (’_’). Description Enter an optional description of the protocol purpose. CA Identifier Select an issuing subordinate authority with profiles of the mdmws group. 
-
Click Create.
-
In the confirmation window, select the Digital IDs tab.

-
Click CREATE.
-
Configure the following values in the Digital identifier dialog.
Field Value Digital ID Enter a unique name of the new digital identifier. Parent DN Enter the parent Distinguished Name (DN) for building the RDN of a certificate. This value is appended to the end of the Subject DN after the RDN Format variables have been processed. RDN Format Enter the Relative Distinguished Name (RDN) format to build certificate Subject Names. CA Identifier Select an issuing subordinate authority with profiles of the mdmws group. Profile ID Select the mdmws profile to process the enrollment requests. 
-
Click Create.
-
Copy the URLs under the Web Service URL and SCEP URL fields of the confirmation dialog.

-
Select the Credentials tab.

-
Click CREATE.
-
In the Create MDM Credentials dialog, enter a username that is 2-18 characters long and only includes lowercase letters, numbers, hyphens (’-’), and underscores (’_’).

-
Click Create.
-
Copy the Password value displayed in the confirmation dialog.

⚠ As stated in the confirmation dialog before leaving this page, Entrust PKIaaS will not display the credential password again.