The MDMWS certificate profiles will be available in Entrust Certificate Services release 13.4.

Entrust PKI as a Service provides the following certificate profiles for MDM Web Service (MDMWS) enrollment with Certificate Enrollment Gateway.

Profile

Usages

mdmws-p12-digital-signature-key-encipherment

Digital signature and key encipherment, with PKCS #12 generation enabled (RSA-2048 key).

mdmws-p12-digital-signature

Digital signature, with PKCS #12 generation enabled (RSA-2048 key).

mdmws-p12-key-encipherment

Key encipherment, with PKCS #12 generation enabled (RSA-2048 key).

mdmws-p12-non-repudiation

Digital signature and non repudiation, with PKCS #12 generation enabled (RSA-2048 key).

Unless specified in an MDMWS request, these MDMWS certificate profiles have a 3-year duration. These MDMWS certificate profiles support the following extensions in the certificate requests.

Certificate request extension

OID

CertificatePolicies

2.5.29.32

ExtendedKeyUsage

2.5.29.37

ApplicationPolicies

1.3.6.1.4.1.311.21.10

SmimeCapabilities

1.2.840.113549.1.9.15

MSTemplateOID

1.3.6.1.4.1.311.21.7

MSTemplateName

1.3.6.1.4.1.311.20.2