Realms

A realm is a business unit that offers separation of concerns for the management of digital certificates. Examples of realms are different departments within a large enterprise.

It possesses a unique id, a name property and optionally a Mailing List.

Mailing lists are lists of emails associated with a given realm and used as recipients for all notification emails within the realm. For further information, see the Mailing Lists.

1. Switch Realm

One of the most basic and useful functions in the MTG Certificate Lifecycle Manager Server UI, is the ability to switch between different realms, to access and create certificates that belong to different business units. This can be achieved by navigating to the Realms page, either via the side menu or by clicking on the currently selected Realm that appears in the top right corner of the header bar. In the Realms page, a RA Operator can see and search for all realms that are available to him through his MTG CARA roles and permissions. To change the currently selected realm, the button Enter can be clicked, and the currently selected realm on the top right will change accordingly.

2. View Realms

Available realms can be viewed and searched for in the Realms / Show page. An option to export selected rows as Comma Separated Values (CSV) is available via the Actions → Export selected as CSV. There is also a filter that an admin can use to view only the archived realms. This filter can be triggered by pressing the Show Archived button in the Actions dropdown list.

3. Create Realm

Realm creation can be accomplished in the Realms / Create page. The user must specify the name for the new realm. The user can optionally link an existing mailing list with the realm by the Mailing List dropdown.

4. Modify Realm

Realms can be modified to link to another existing mailing list, by using the Mailing List dropdown. The Realm’s name can also be modified.

5. Archive Realm

A user can archive or unarchive a realm by entering the Realm/Show tab. There, by pressing the realm’s name, the user will be redirected to the realm details page. By pressing Archive or Unarchive button the realm will be archived or unarchived accordingly. Batch Archive and Batch Undo-Archive actions are also supported by selecting the checkboxes of the desired realm and choosing the Archive All Selected and Undo-Archive All Selected buttons in the Actions dropdown. Upon realm archive all child entities of the realm will be archived too. Child entities of realms are considered its end entities, policies, certificates and certificate requests. Upon unarchive, realm’s child entities are not affected. Realms associated with an active certificate can not be archived. Archived realms can not be used for new operations.

6. Delete Realm

A user can delete an archived realm through the Realm page, the Show Realms Table or the Administration/Archived Data Removal tab. In the Realm page after archiving the entity a Delete button will appear. In the Show Realms Table by pressing Actions→Show Archived the table will show the archived entities, and here the realms can be selected, and through Actions→Delete all selected they can be deleted. Furthermore, the user can delete one Realm at a time by pressing the row actions button and then Delete Realm. Finally, in the Choose entity to delete dropdown choose Realms. As an extra safeguard there is the option to restrict the archived records that are going to be deleted by the date on which they were archived. In the Choose date calendar select the date, before which the records should have been archived, in order to be deleted with this action and press Delete. Upon deletion all policies, end entities, certificates, certificate requests, linked to the deleted realm will also be deleted. Only archived realms can be deleted.