Realms
A realm is a business unit that offers separation of concerns for the management of digital certificates. Examples of realms are different departments within a large enterprise.
It possesses a unique id
, a name
property and optionally a Mailing List
.
Mailing lists are lists of emails associated with a given realm and used as recipients for all notification emails within the realm. For further information, see the Mailing Lists.
1. Switch Realm
One of the most basic and useful functions in the MTG Certificate Lifecycle Manager Server UI, is the ability to switch between different realms, to access and create certificates that belong to different business units. This can be achieved by navigating to the Realms
page, either via the side menu or by clicking on the currently selected Realm that appears in the top right corner of the header bar. In the Realms
page, a RA Operator can see and search for all realms that are available to him through his MTG CARA roles and permissions. To change the currently selected realm, the button Enter
can be clicked, and the currently selected realm on the top right will change accordingly.
2. View Realms
Available realms can be viewed and searched for in the Realms / Show
page. An option to export selected rows as Comma Separated Values (CSV) is available via the Actions → Export selected as CSV
. There is also a filter that an admin can use to view only the archived realms. This filter can be triggered by pressing the Show Archived
button in the Actions
dropdown list.
3. Create Realm
Realm creation can be accomplished in the Realms / Create
page. The user must specify the name for the new realm. The user can optionally link an existing mailing list with the realm by the Mailing List
dropdown.
4. Modify Realm
Realms can be modified to link to another existing mailing list, by using the Mailing List
dropdown. The Realm’s name can also be modified.
5. Archive Realm
A user can archive or unarchive a realm by entering the Realm/Show
tab. There, by pressing the realm’s name, the user will be redirected to the realm details page. By pressing Archive
or Unarchive
button the realm will be archived or unarchived accordingly. Batch Archive and Batch Undo-Archive actions are also supported by selecting the checkboxes of the desired realm and choosing the Archive All Selected
and Undo-Archive All Selected
buttons in the Actions dropdown. Upon realm archive all child entities of the realm will be archived too. Child entities of realms are considered its end entities, policies, certificates and certificate requests. Upon unarchive, realm’s child entities are not affected. Realms associated with an active certificate can not be archived. Archived realms can not be used for new operations.
6. Delete Realm
A user can delete an archived realm through the Realm page
, the Show Realms Table
or the Administration/Archived Data Removal
tab. In the Realm page
after archiving the entity a Delete
button will appear. In the Show Realms Table
by pressing Actions→Show Archived
the table will show the archived entities, and here the realms can be selected, and through Actions→Delete all selected
they can be deleted. Furthermore, the user can delete one Realm at a time by pressing the row actions button and then Delete Realm
. Finally, in the Choose entity to delete
dropdown choose Realms. As an extra safeguard there is the option to restrict the archived records that are going to be deleted by the date on which they were archived. In the Choose date
calendar select the date, before which the records should have been archived, in order to be deleted with this action and press Delete
. Upon deletion all policies, end entities, certificates, certificate requests, linked to the deleted realm will also be deleted. Only archived realms can be deleted.