MTG CARA Certificate Provider

By using a certificate provider type of MTG CARA, the CARA related fields become available for modification as well.

Below you will find which parameters are required for the creation of an MTG CARA certificate provider.

MTG CARA certificate provider required parameters
Parameter Description

CARA API URL

URL where a CARA instance is running

CARA application name

name of the specific CARA instance

CARA application secret

needed for the connection

Necessary CARA Permissions for MTG CLM

MTG CARA versions 2.2.0 and onwards introduced defining an application role for applications like MTG CLM. The permissions of such a role are applied to all actions initiated from MTG CLM, regardless of the user. For complete functionality of MTG CLM to be enabled, the following permissions must be set to the application role:

  • ApproveCertificateRequestPermission

  • InsertCertificateRequestPermission

  • RevokeCertificatePermission

  • ViewAuthorizationPermission

  • ViewCaCertPermission

  • ViewCertificatePermission

  • ViewDomainPermission

  • RevokeTemporaryCertificatePermission

  • ActivateCertificateRequestPermission

  • ViewTemplateSignerPermission

  • SignDataWithEEPermission

  • ViewEESignerPermission

  • SignDataPermission

  • GenerateKeyPairPermission

  • GenerateRandomPermission

  • ScepPermission