You are viewing an old version of this page. View the current version.

Compare with Current View Page History

« Previous Version 3 Next »

Under Account, you will find the following topics

  • In My Division you find all the data related to your NREN.  Here you can also modify them and upload your logo
    The info you find here are mainly descriptive.

  • Divisions
  • In " Users "can someone administrator for other people is to create an account; they receive from DigiCert a mail which they set their own password and such data.

  • All administrator accounts can approve or reject certificate requests. User accounts can only submit requests. The private administrators (not that SURFnet) receive an email alert and able to handle the request.

  • If the fields Phone (phone number) and Title (function name) both are completed then such a user can be nominated by DigiCert (validated) for the treatment of Extended Validation SSL certificates. The procedure requires a phone call from DigiCert Validation from Utah. That goes to your formal number (usually the telephone exchange) and can go from there along HRM / Personnel: "do you have an employee named van der Harst who works as a Product Manager?" Make sure that the function name is correct. Give someone an administrator account only if it is a trusted expert. Give as few people as possible EV admin rights. Penetrating the legal requirement that everyone click-through 'TCS Terms of Use' has thoroughly read. You do not want to fight American organizations in a liability end up.

  • The nomination of an EV Administrator done from the main menu 
    Validation → Organizations → Manage → Submit for Validation.


  • We strongly recommend to not make use of

    • Guest URLs that anyone can use to issue certificates. Any form of check is completely by passed when using Guest URLs. 

    • API keys unless you want to write your own interface.

  • Under Authentication Settings you can enable the two factors of authentication for login (2FA). Both client certificates and One Time Passwords (OTP) are available.  Refer to the user guide in the document section for more info.

     

  • No labels