mirror of
https://github.com/awatertrevi/infisical.git
synced 2026-10-09 13:28:27 +00:00
doc: added platform docs for certificate template
This commit is contained in:
@@ -0,0 +1,58 @@
|
|||||||
|
---
|
||||||
|
title: "Certificate Templates"
|
||||||
|
sidebarTitle: "Certificate Templates"
|
||||||
|
description: "Learn how to use certificate templates to enforce policies."
|
||||||
|
---
|
||||||
|
|
||||||
|
## Concept
|
||||||
|
|
||||||
|
In order to ensure your certificates follow certain policies, you can use certificate templates during the issuance and signing flows.
|
||||||
|
|
||||||
|
A certificate template is linked to a certificate authority. It contains custom policies for certificate fields, allowing you to define rules based on your security policies.
|
||||||
|
|
||||||
|
## Workflow
|
||||||
|
|
||||||
|
The typical workflow for using certificate templates consists of the following steps:
|
||||||
|
|
||||||
|
1. Creating a certificate template attached to an existing CA along with defining custom rules for certificate fields.
|
||||||
|
2. Selecting the certificate template during the creation of new certificates.
|
||||||
|
|
||||||
|
<Note>
|
||||||
|
Note that this workflow can be executed via the Infisical UI or manually such
|
||||||
|
as via API.
|
||||||
|
</Note>
|
||||||
|
|
||||||
|
## Guide to using Certificate Templates
|
||||||
|
|
||||||
|
In the following steps, we explore how to issue a X.509 certificate using a certificate template.
|
||||||
|
|
||||||
|
<Tabs>
|
||||||
|
<Tab title="Infisical UI">
|
||||||
|
|
||||||
|
<Steps>
|
||||||
|
<Step title="Creating the certificate template">
|
||||||
|
To create a certificate template, head to your Project > Internal PKI > Certificate Templates and press **Create Certificate Template**.
|
||||||
|
|
||||||
|

|
||||||
|
|
||||||
|
Here, set the **Issuing CA** to the CA you want to issue certificates under when the certificate template is used.
|
||||||
|
|
||||||
|

|
||||||
|
|
||||||
|
Here's some guidance on each field:
|
||||||
|
- Template Name: A descriptive name for the certificate template.
|
||||||
|
- Issuing CA: The Certificate Authority (CA) that will issue certificates based on this template.
|
||||||
|
- Certificate Collection: The collection where certificates issued with this template will be added.
|
||||||
|
- Common Name (CN): The regular expression used to validate the common name in certificate requests.
|
||||||
|
- Alternative Names (SANs): The regular expression used to validate subject alternative names in certificate requests.
|
||||||
|
- TTL: The maximum Time-to-Live (TTL) for certificates issued using this template.
|
||||||
|
|
||||||
|
</Step>
|
||||||
|
<Step title="Using the certificate template">
|
||||||
|
Once you have created the certificate template from step 1, you can select it when issuing certificates.
|
||||||
|
|
||||||
|

|
||||||
|
</Step>
|
||||||
|
</Steps>
|
||||||
|
</Tab>
|
||||||
|
</Tabs>
|
||||||
Binary file not shown.
|
After Width: | Height: | Size: 715 KiB |
Binary file not shown.
|
After Width: | Height: | Size: 158 KiB |
Binary file not shown.
|
After Width: | Height: | Size: 97 KiB |
@@ -108,6 +108,7 @@
|
|||||||
"documentation/platform/pki/overview",
|
"documentation/platform/pki/overview",
|
||||||
"documentation/platform/pki/private-ca",
|
"documentation/platform/pki/private-ca",
|
||||||
"documentation/platform/pki/certificates",
|
"documentation/platform/pki/certificates",
|
||||||
|
"documentation/platform/pki/certificate-templates",
|
||||||
"documentation/platform/pki/alerting"
|
"documentation/platform/pki/alerting"
|
||||||
]
|
]
|
||||||
},
|
},
|
||||||
|
|||||||
Reference in New Issue
Block a user