Realms

A realm is a business unit that offers separation of concerns for the management of digital certificates. Examples of realms are different departments within a large enterprise.

It possesses a unique id, a name property and optionally a Mailing List.

Mailing lists are lists of emails associated with a given realm and used as recipients for all notification emails within the realm.

Switch Realm

One of the most basic and useful functions in the MTG Certificate Lifecycle Manager Server UI, is the ability to switch between different realms, to access and create certificates that belong to different business units. This can be achieved by navigating to the Realms page, either via the side menu or by clicking on the currently selected Realm that appears in the top right corner of the header bar. In the Realms page, RA Operators can see and search for all realms that are available to them, through their MTG CARA roles and permissions. To change the currently selected realm, the button Enter can be clicked, and the currently selected realm on the top right will change accordingly.

View Realms

Available realms can be viewed and searched for in the Realms / Show page. An option to export selected rows as Comma Separated Values (CSV) is available via the Actions → Export selected as CSV. There is also a filter an admin can use, to view archived realms only. This filter can be triggered by pressing the Show Archived button in the Actions dropdown list.

Create Realm

Realm creation can be accomplished in the Realms / Create page. The user must specify the name for the new realm. By using the Mailing List dropdown menu, the user can optionally link an existing mailing list to the realm.

Modify Realm

Realms can be modified to link to another existing mailing list, by using the Mailing List dropdown menu. The Realm’s name can also be modified.

Archive Realm

A user can archive or un-archive a realm by entering the Realm/Show tab. There, by pressing the realm’s name, the user will be redirected to the realm details page. By pressing Archive or Unarchive button the realm will be archived or unarchived respectively. Batch Archive and Batch Undo-Archive actions are also supported, by selecting the checkboxes of the desired realm and choosing the Archive All Selected and Undo-Archive All Selected buttons in the Actions dropdown menu. Upon realm archiving, all child entities of the realm will be archived too. Child entities of realms are considered their end entities, policies, certificates and certificate requests. Upon un-archiving, the realm’s child entities are not affected. Realms associated with an active certificate can not be archived. Archived realms can not be used for new operations.

Delete Realm

A user can delete an archived realm through the Realm page, the Show Realms Table or the Administration/Archived Data Removal tab. In the Realm page after archiving the entity a Delete button will appear. In the Show Realms Table, by pressing Actions→Show Archived the table will show the archived entities. Here the realms can be selected, and through Actions→Delete all selected they can be deleted. Furthermore, the user can delete one Realm at a time, by pressing the row actions button and then Delete Realm. Finally, in the Choose entity to delete dropdown menu, the user can choose Realms. As an extra safeguard there is the option to restrict archived records to be deleted, using the date on which they were archived as filter. In the Choose date calendar, the user can select the date, to filer archived records prior to this date. Those can be deleted by selecting Delete. Upon deletion all policies, end entities, certificates, certificate requests, linked to the deleted realm will also be deleted. Only archived realms can be deleted.