We have a very strange issue happening with one of the enterprise apps we use. Whenever the trust profile is installed, this particular app gets an invalid certificate error. With the trust profile removed, it works fine. We unchecked the option to require the trust profile on the server and the devices that we enroll through the web browser work perfect...our iOS profile is signed by a third-party. However, most of our devices are enrolled through DEP and the trust profile is still installed on those devices. Is there not a way to prevent the trust profile from being installed on those devices as well?