Create a CA Settings

Create CA Setting enables the DevOps / CloudOps teams to create and configure CA Settings for their cluster based on the PKI policy defined for their clusters.

Prerequisites:

To create a CA Settings:

  1. Go to menu > KUBE+ > CLUSTER PKI > Issuer CA
    On the Issuer CA page, the created policies are displayed, if any.
  2. Click .
  3. On the Create CA Settings page, enter/select the policy information fields in the General Information section.
    Table 1. General Information - Field Description Table
    Field Description
    CA Settings Name* Enter a CA settings name.
    Select Cluster* Select a cluster which was onboarded (or) cluster where the cert-orchestrator is deployed and managed in the inventory.
    Select Policy* Select a required Cluster Policy associated to the cluster.
    Group Name* Select a Certificate Group and the respective CA Issuer associated to the Group.
    Type* Choose a specific CA Account and the specific profiles or attributes required to send the certificate signing requests to the Certificate Authority.
  4. On the Create CA Settings page, enter/select the policy information fields in the Certificate Authority Setting section.
    Table 2. Certificate Authority Setting - Field Description Table
    Field Description
    Certificate Authority* Select a preferred certificate authority from the dropdown list.
    CA Account* Select a preferred CA Account from the dropdown list.
    Connector Name* Select preferred clusters from the dropdown list.
    Category* Select a certificate group from the dropdown list.
  5. Click Generate CA Setting.
    Note:
    • To see the commands in the full screen view, click the .
    • To copy the command, click .
  6. Click Add to add the CA setting to the CA Setting Inventory list.