Setting up Microsoft Automation for Certificate Management

sama75429784311
Kilo Contributor

We've initiated the process for Microsoft Automation for Certificate Lifecycle Management. To proceed, we need to establish the following setup:

Permissions for Microsoft Gateway User:
Configure CredSSP on the Certificate Authority (CA) and MID Server.
Ensure the user is part of the Enterprise Admins group.
The user should be included in the Security Group associated with the certificate template being used.
Grant the user the following permissions in the CA:
Read, Issue, and Manage Certificates
Manage CA
Request Certificates
If utilizing an intermediate server, configure CredSSP between the MID Server and the intermediate server.
Regarding ServiceNow:

If a user account in ServiceNow is required:
Ensure the user has the necessary roles assigned.
If credentials need to be set up:
Select the appropriate credential type.
Please let me know if you need further assistance with the setup.

1 REPLY 1

Saisreenivas Am
Tera Contributor

Hi Sama,

 

We want to automate Microsoft CA certs request and renewal process, can we please guide me on what type of user account we need to use, is it windows service account that we normally use for discovery?