Please enable JavaScript to view this site.

With the MPKI, various accredited certification authorities can be integrated for the (partially) automatic procurement of trusted CA certificates.

 

empty

anchor link Notes on the general function of all MPKI:

If the MPKI is activated later, existing, manually imported certificates will also be considered for the optionally configurable automatic renewal process (option Automatically renew expiring certificates if validity days left less than). Decisive for the renewal (or reissue) via MPKI is the certificate of the user with the longest validity period.

Certificates of the internal certification authority and revoked certificates are not taken into account.

 

empty

anchor link Attention:

The information for obtaining the certificate (applicant) are received from the corresponding Users. This means that the accurate entry of relevant information is to be ensured already when creating the user.

 

empty

anchor link Attention:

For the MPKI interface to function, connectivity to the CA must be ensured (see also Setting Up The Firewall/Router and/or MPKI proxy settings).

 

anchor link Section Connector

 

Parameters

Description

anchor link MPKI type DropDown

Depending on the selection, further sections appear below this section, with the CA-specific parameters for the integration.

The selection is saved using the Save button.

 

anchor link none

Switches off the MPKI interface. No further sections are displayed.

anchor link German Research Network (Deutsches Forschungsnetz)

CA of "German Research Network" (university area)

anchor link DigiCert

accredited CA based in Lehi, Utah, USA

anchor link DigiCert CertCentral

(new in 13.0.7)

accredited CA based in Lehi, Utah, USA

anchor link Bundesdruckerei D-Trust

D-Trust is the accredited CA of Bundesdruckerei GmbH, located in Berlin, Germany.

anchor link GlobalSign

accredited CA based in Maidstone, United Kingdom

anchor link GlobalTrust

Accredited CA based in Vienna, Austria

anchor link QUOVADIS Trustlink

accredited CA based in St. Gallen, Switzerland

anchor link Simple Certificate Enrolment Protocol

Protocol for the connection of numerous renowned certification authority products (e.g. MS-PKI)

anchor link Sectigo

Accredited American CA, based in Roseland/New Jersey

anchor link SwissSign

CA of the Swiss mail service

anchor link MPKI managed domains DropDown

The selection field lists all Managed Domains Certificates are obtained via the MPKI only for the selected Managed Domains.

This prevents a possible rejection of emails from Managed Domainsfor which obtaining certificates via the MPKI is inadmissible. Multiple selections are possible by clicking with the "CTRL" key pressed.

The selection is saved via the Save button.

 

empty

anchor link Attention:

If MPKI is already active, all Managed Domains will be active after an update. That means that Managed Domains which are not to obtain certificates via MPKI must be deactivated once.

If newly created Managed Domains are also to obtain certificates by means of MPKI, these are to be activated manually after their creation in the selection.

 

If applicable, additional sections are displayed according to the selection made under Connector.

  

Keyboard Navigation

F7 for caret browsing
Hold ALT and press letter

This Info: ALT+q
Topic Header: ALT+t
Topic Body: ALT+b
Contents: ALT+c
Search: ALT+s
Exit Menu/Up: ESC