Droid_SCEP
Overview
• Droid_SCEP is a professional-grade Android application designed to simplify digital certificate management and secure credential provisioning within enterprise environments.
Core SCEP Capabilities
• Enables seamless requesting and polling of digital certificates from any standard Simple Certificate Enrollment Protocol (SCEP) server.
• Facilitates secure, automated generation and retrieval of client certificates to establish identity and device trust.
MDM and EMM Integration
• Supports centralized configuration through Mobile Device Management (MDM) and Enterprise Mobility Management (EMM) policies.
• Allows for silent, automated certificate enrollment and background renewals without user intervention when granted the CERT_INSTALL delegated scope.
• Acts as a certificate selection provider (private key mapping) under the CERT_SELECTION delegated scope, routing credentials based on "cert-to-app" rules configured via MDM/EMM policy.
Proactive Monitoring
• Tracks the validity and expiration status of all installed personal and enterprise certificates.
• Triggers automated, timely notifications to the system tray several days prior to certificate expiration, helping to prevent unexpected authentication failures.
Cryptographic Utilities
• Features a built-in tool for manual Certificate Signing Request (CSR) creation directly on the device.
• Includes a local file converter to seamlessly transform PEM-formatted keys and certificates into secure PKCS12 (.p12/.pfx) keystores.
Licensing and Source
• Developed as an open-source project to ensure security auditing, transparency, and collaboration.
• Distributed under the highly permissive MIT License, allowing organizations to adapt and modify the application as needed.
FAQ
Q: How does Droid_SCEP integrate with existing MDM or EMM platforms?
A: Droid_SCEP supports centralized configuration using Mobile Device Management (MDM) and Enterprise Mobility Management (EMM) policies. This allows IT administrators to deploy, configure, and enforce certificate settings across all corporate devices from a single management console.
Q: Is it possible to perform certificate enrollment without user intervention?
A: When granted the CERT_INSTALL delegated scope through your MDM or EMM policy, Droid_SCEP can silently enroll and renew certificates in the background without requiring any manual action from the end user.
Q: What is the CERT_SELECTION delegated scope used for in Droid_SCEP?
A: Under the CERT_SELECTION scope, Droid_SCEP acts as a certificate selection provider. It uses "cert-to-app" mapping rules defined in your MDM or EMM policy to automatically route specific certificates and private keys to the right applications.
Version History
v1.5——20 Aug 2026
Get certificates from a SCEP server and monitor the expiration Download the latest version of Droid_SCEP to enjoy new features and updates immediately!
*1.5
- improvements for background cert install (if managed via MDM)
- improvements for automated cert selection (if managed via MDM)
*1.4
Minor bug fixes and improvements. Install or update to the newest version to check it out!
*1.3
Minor bug fixes and improvements. Install or update to the newest version to check it out!
Ratings and reviews
There are no reviews yet. Be the first one to write one.