<!--
{
  "availability" : [
    "iOS: 17.0.0 -",
    "iPadOS: 17.0.0 -",
    "macCatalyst: 17.0.0 -",
    "macOS: 14.0.0 -",
    "tvOS: 17.0.0 -",
    "visionOS: 1.1.0 -",
    "watchOS: 10.0.0 -"
  ],
  "documentType" : "symbol",
  "framework" : "DeviceManagement",
  "identifier" : "/documentation/DeviceManagement/AssetCredentialCertificate",
  "metadataVersion" : "0.1.0",
  "role" : "Object",
  "symbol" : {
    "kind" : "Object",
    "modules" : [
      "Device Management"
    ],
    "preciseIdentifier" : "rmdm-declarations:AssetCredentialCertificate"
  },
  "title" : "AssetCredentialCertificate"
}
-->

# AssetCredentialCertificate

A reference to a PKCS #1 or PEM encoded certificate.

```
object AssetCredentialCertificate
```

## Discussion

Specify `com.apple.asset.credential.certificate` as the declaration type.

### Asset example

```json
{
    "Type": "com.apple.asset.credential.certificate",
    "Identifier": "EB13EE2B-5D63-4EBA-810F-5B81D07F5017",
    "ServerToken": "E180CA9A-F089-4FA3-BBDF-94CC159C4AE8",
    "Payload": {
        "Reference": {
            "DataURL": "https://example.com/asset-data/certificates/cert.pem",
            "ContentType": "application/pem"
        }
    }
}
```

## Topics

### Objects

[`AssetCredentialCertificateAuthenticationObject`](/documentation/DeviceManagement/AssetCredentialCertificateAuthenticationObject)

The server authentication details. If this key is absent, the default authentication type is MDM.

[`AssetCredentialCertificateReferenceObject`](/documentation/DeviceManagement/AssetCredentialCertificateReferenceObject)

The external reference. Ensure that the asset data uses a media type of `application/pkcs1` or `application/pem` to correctly identify the type of encoded certificate. If the asset data includes a `ContentType` sub-key, set it to the corresponding media type.



---

Copyright &copy; 2026 Apple Inc. All rights reserved. | [Terms of Use](https://www.apple.com/legal/internet-services/terms/site.html) | [Privacy Policy](https://www.apple.com/privacy/privacy-policy)