: Adding a certificate authority
Focus
Focus

Adding a certificate authority

Table of Contents

Adding a certificate authority

When you add a certificate authority (CA) to Next-Gen Trust Security, you create a connection between Next-Gen Trust Security and that CA. That connection enables Next-Gen Trust Security to manage certificate life-cycles.
Next-Gen Trust Security can connect to both external and internal CAs, in addition to its own built-in CA.

Before you begin

Before setting up your CA, review the following:
  • If you plan to use paid public trust CAs (like DigiCert, excluding free ones like Let's Encrypt), an enterprise CA account is required. Make sure you have a billing setup for pre-purchasing certificate units or for post-use billing. This is simply because our platform doesn't support purchasing individual certificates with a credit card for each transaction.
  • Have your CA authentication credentials ready before you can configure and test issuance. Each CA provider has its own authentication methodology.
  • Make sure you have been assigned either the System Administrator or PKI Administrator roles required to add new CAs.
  • To take advantage of high availability for certificate issuance and management, select a primary VSatellite that belongs to a high availability group. The system will automatically choose a healthy VSatellite from that group to initiate operations. This helps ensure reliability even if one VSatellite becomes temporarily unavailable.

Getting started

Select your CA below for a detailed how-to.

Custom certificate authority