Simple Certificate Enrollment Protocol (SCEP) is a Public Key Infrastructure protocol for enrolling certificates in a controlled environment. SCEP is based on existing PKCS#7 and PKCS#10 standards, and uses HTTP for transporting protocol messages. A PKI client uses SCEP for requesting a certificate signing or certificate renewal from Certification Authority (CA). SCEP can also be used to query existing certificates and certificate revocation lists. The SCEP Server test suite is designed for robustness testing of Certification Authority and Registration Authority (RA) implementations supporting SCEP protocol. The test suite acts as an evil PKI client sending anomalous SCEP requests to CA, possibly via RA.
Simple Certificate Enrollment Protocol
Plaintextrequest for querying CA certificate
Plaintext request for querying next CA capabilities
Plaintext request for querying next CA certificate
PKI-operation for certificate signing request
Periodical PKI-operation in polling state when signing is pending
PKI-operation for querying existing certificate from CA
PKI-operation for querying certificate revocation list from CA
PKI-operations
Encryption
Digest
Digest