Next you need to configure the request template, which is used to determine what goes in the subject field, the key length, and the private key usage.

Perform the following steps to configure the request template.

  1. Navigate to Devices > Certificates > Certificate Authorities. Select the Request Templates tab. Select Add. The Add/Edit certificate template page displays.

  2. Enter the following information pertaining to your request template.


    Field description


    The friendly name given to the request template defined in Workspace ONE UEM.


    An optional field you can use to describe the details, usages, etc. of the request template.

    Certificate Authority

    The certificate authority you defined previously.

    Subject Name

    The subject given to device when it generates its key pair. Use the lookup value button to the left of the field for dynamic values.

    Private Key Length

    The length of the key pair to be generated.

    Private Key Type

    This tells the device what the private key is to be used for.

  3. For SAN Type, select Add to include one or more Subject Alternate Names with the template. This is used for additional unique certificate identification. In most cases, this needs to match the certificate template on the server. Use the drop-down menu to select the SANn Type and enter the subject alternate name in the corresponding data entry field. Each field supports lookup values. Email Address, User Principal Name, and DNS Name are supported by SCEP templates by default, and Workspace ONE UEM recommends that you use them.

  4. Select Save.