DigiCert CA

Prerequisites

The prerequisites for configuring DigiCert CA account in AppViewX are as follows:
  • A DigiCert CertCentral Account with Administrator role Access.
  • An API Key configured in Digicert with required permissions to make API Requests from AppViewX.
  • AppViewX server should either have internet access or have a proxy configured in AppViewX general settings.

Configuring Digicert

  1. Go to (Menu) > SIGN+ > ADMINISTRATION > Certificate Authority.
  2. From the displayed CA, Select DigiCert.
    The DigiCert home page is displayed.
  3. Click the Configure Now button or +Add icon from the middle or top-right of the page respectively.
    The DigiCert configuration page is displayed.
  4. Update the following details in the General Information section as described in the table:
    Table 1. General Information - Field Description Table
    Fields Description
    *CA Account name A unique name to identify the CA setting. Note: No special characters other than ‘.’, ‘-’,’_’ are allowed. Names should not start with special characters.
    *Purpose/Usage Certificate Type for which CLM actions will be enabled.

    Example: Server, Client

    Proxy Required Enable this field if the CA communication needs to happen via Proxy. The proxy details configured in general settings will be used for communication.
    Data Center (AppViewX's CA agent) Select the data center through which the CA communication needs to happen.
    *: Mandatory fields
  5. Update the following details in the CA Configuration section as described in the table. These fields are necessary for invoking the Digicert CA APIs for Certificate Management:
    Table 2. CA Configuration - Field Description Table
    Fields Description
    *Base URL This URL will contain just the hostname of the Digicert CA instance. For example, <https://www.digicert.com>
    Note: vendorSpecificSettings.url - invalid URL.
    *Credential Type Select the type of credential as desired from the dropdown list. The available options are,
    • Manual EntryCredential
    • List - CyberArk.
    *Credential List Select the required credential from the dropdown list.
    Note: This field will be enabled if the Credential Type is selected as Credential List - CyberArk.
    Account ID Account id details of Digicert CA Account, which can be found under account manager details in Digicert CertCentral Account.
    *API Key API key specific to the CA account. This API key should have required permission to make API Calls. Space is not allowed.
    Auto Approve Enable the Auto Approve option if all CLM requests from AppViewX do not need to be approved from Digicert CA Account.
    *: Mandatory fields
    Note: Auto approval checkbox is optional and its features work only for one-step certificate requests configured in the Digicert Cert Central Account.
  6. Select Fetch Divisions and Certificate Types.
    The Division and Certificate types available in the DigiCert CA account will be fetched.
  7. Click Save.

Validating Digicert

Once the Digicert settings are added, the validation must be done to check whether the connection between AppViewX and Digicert is configured properly.
  1. Go to (Menu) > SIGN+ > ADMINISTRATION > Certificate Authority.
  2. From the displayed CA, Select Digicert.
    The Digicert home page is displayed.
  3. In the Status column of the grid with the listed accounts, click Check to validate the CA setting that is created.
    The CA communication will be validated and the Connection Status will be shown as either Success or Failure.