- Home
- IAM
- Certificate Lifecycle Management
- Smallstep ACME Device Attestation
Smallstep ACME Device Attestation
IETF-standard hardware-bound device identity & cert enrollment via ACME DA.

Smallstep ACME Device Attestation
IETF-standard hardware-bound device identity & cert enrollment via ACME DA.
Go Beyond the Directory. Track the Entire Market.
Monitor competitor funding, hiring signals, product launches, and market movements across the whole industry.
Smallstep ACME Device Attestation Description
Smallstep ACME Device Attestation (ACME DA) is a certificate-based device identity solution built on the ACME Device Attestation standard, co-developed by Smallstep and Google at the IETF. It is designed as a modern replacement for SCEP (Simple Certificate Enrollment Protocol), which is over 20 years old and lacks strong proof-of-device identity guarantees. ACME DA uses hardware co-processors (secure elements) for attestation and key binding, cryptographically tying device credentials to physical hardware. This prevents credential theft and exfiltration by ensuring that private keys cannot leave the device. The approach goes beyond user identity verification to establish verified device identity as part of a Zero Trust enforcement model. The platform supports certificate-based authentication across multiple operating systems, including macOS, iOS, Windows, Android, and Linux, enabling consistent cross-platform device identity management. It supports zero-touch provisioning for new devices and provides mechanisms for certificate renewal and revocation. ACME DA is positioned to replace or integrate with existing PKI infrastructure (such as ADCS, Vault PKI, and AWS PCA). It is applicable to enterprise fleet management, BYOD environments, compliance enforcement, and protection against credential-based attacks including phishing and hardware-level threats. The solution also covers AI and MCP workflows by binding access to verified hardware.
Smallstep ACME Device Attestation FAQ
Common questions about Smallstep ACME Device Attestation including features, pricing, alternatives, and user reviews.
Smallstep ACME Device Attestation is IETF-standard hardware-bound device identity & cert enrollment via ACME DA. developed by Smallstep. It is a IAM solution designed to help security teams with Certificate Management, Device Security, Zero Trust.
FEATURED
Fix-first AppSec powered by agentic remediation, covering SCA, SAST & secrets.
Cybercrime intelligence tools for searching compromised credentials from infostealers
Agentless cloud security platform for risk detection & prevention
Fractional CISO services for B2B companies to build security programs
POPULAR
Real-time OSINT monitoring for leaked credentials, data, and infrastructure
A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.
AI security assurance platform for red-teaming, guardrails & compliance
TRENDING CATEGORIES
Stay Updated with Mandos Brief
Get strategic cybersecurity insights in your inbox