Add connectors using the integrations workflow
You can use the integrations workflow to add connectors in DigiCert® Trust Lifecycle Manager. The workflow guides you through the configuration required for the connector you select.
During the workflow, you can select existing DigiCert sensors or configure new sensors to manage the integration. You can also save an incomplete setup and return later to complete it. The screens, settings, and requirements vary depending on the connector type.
Before you begin
Before you start the integrations workflow, consider the following:
Review the requirements and configuration information for the connector you want to add. For details, see Add connectors.
The integrations workflow does not support connectors in the DNS integrations category or the A10, Citrix ADC, CertCentral, or Microsoft Intune connectors.
If the connector requires a DigiCert sensor, you can create the sensor before starting the workflow or during connector setup. For more information about creating sensors in advance, see DigiCert sensors.
Access the integrations workflow
To access the integrations workflow:
From the Trust Lifecycle Manager main menu, go to Inventory > Certificates > Add integration.
Find and select the connector you want to add. You can:
Browse connectors in the displayed categories.
Use the dropdown list to view connectors for a specific category.
Search for a connector by name.
Selecting a connector opens the Set up connector-name connector wizard.
Complete the integrations workflow
Follow the Set up connector-name connector wizard to configure and add the connector.
Note
The screens and options available in the wizard depend on the connector type. The options described in this procedure are representative and may vary by connector.
Configure the following screens as applicable.
On the General information screen, configure the general properties for the connector:
Connector name: Enter a unique name to help identify the connector. The name must be unique across existing connectors and pending connector setups.
Business unit: Select a business unit for this connector. Only users assigned to this business unit can manage the connector.
Select Save and continue to proceed to the Managing sensor screen of the wizard.
Note
After you complete this step and continue to the next step, Trust Lifecycle Manager automatically saves your progress. You can access the saved setup later from the Pending connectors view on the Integrations > Connectors page.
If the connector requires a DigiCert sensor, select one or more existing sensors, configure new sensors, or use a combination of existing and new sensors. Selecting or creating multiple sensors adds fault tolerance to the integration. If one sensor fails, Trust Lifecycle Manager automatically uses another sensor.
To select one or more existing sensors, use the Managing sensor dropdown.
To configure a new sensor:
Select Create new.
Select the host system where you want to install the sensor: Linux, Windows, or Docker.
On the Install sensor on host-system form, select an installation method:
CLI installation: Use this option to generate the commands needed to install and activate the sensor on the host system.
Sensor name: Enter a name for the sensor.
Sensor business unit (optional): Select a business unit to assign the sensor to.
Use a proxy: Enable this option to configure the sensor for use as a proxy server. If enabled, provide the proxy username and password in the CLI.
Generate command: Select to generate the installation commands. Follow the instructions to install and activate the sensor.
Select Add sensor after you complete the installation steps.
Manual installation: Use this option to download the required files and install the sensor manually.
Follow the guided installation steps and download the sensor installer and activation file.
After you complete the installation, select I have completed all the steps.
Select Check status to verify the sensor installation.
After you verify the installation, select Add sensor.
After you configure the new sensor, you can use it with any existing sensors you selected to manage the integration.
Tip
You can also create a sensor before you add a connector. You can then select the sensor from the Managing sensor dropdown. For more information, see DigiCert sensors.
Select Save and continue to proceed to the Access settings screen of the wizard.
On the Access settings screen, configure the connection and access information for the connector.
The required settings depend on the connector type. These settings can include the management IP, base URL, port, credentials, and other access details.
For connectors that support privileged access management (PAM), select how to provide the credentials:
Direct: Enter the credentials during connector setup.
Secret: Use a secrets manager connector.
If you select Secret, use one of the following options.
Use existing: Select this option to use an existing secrets manager connector.
Create new: Select this option to create a secrets manager connector as part of the integrations workflow.
Select the secrets manager you want to use.
On the Add Secret Manager connector form, enter the required connector details and credentials. The required information varies by secrets manager.
Review the managing sensors.
(Optional) Select Change connectivity to change the sensors used for the secrets manager connector.
Select Create connector.
The new secrets manager connector is linked to the connector setup.
Delegate: Select this option to delegate the secrets manager setup to another user.
Select Add recipients.
On the Delegate Secret Manager setup form, select the recipient.
Review the default email subject and message. Edit them if needed.
Select Send request.
You can continue the connector setup after the recipient completes the secrets manager configuration.
Select Save and continue to proceed to the next screen of the wizard.
The Additional settings screen is available only for supported connectors. Configure options such as certificate management settings and certificate assignment rules as needed.
Select Save and continue to proceed to the Review & connect screen of the wizard.
On the Review & connect screen, review the connector configuration.
The configuration summary shows each configuration area and its status. Depending on the configuration, you can see the following statuses:
Review the connector configuration before adding the connector. Select the edit icon to change a configuration, or select Back to return to previous steps and make changes.
When you're ready, do one of the following:
To complete the setup, select Add connector to create the connector.
To exit the setup, select Cancel or X.
On the Discard setup? dialog, select one of the following options:
Keep editing: Return to the wizard and continue setting up the connector.
Save and exit: Save your progress and exit the wizard. You can return later to complete the connector setup.
Discard setup: Discard the connector setup and exit the wizard. Your progress is not saved, and you cannot return later to continue the setup.
What's next
After you add a connector or save an incomplete setup, you can view and manage it from the Integrations > Connectors page.
To view and manage a connector you added, find the connector in the Created connectors view. For more information, see View connectors data and Manage created connectors.
To continue a saved connector setup, select the Pending connectors view. Find the connector setup in the list, and select Show details. For more information, see Manage pending connectors.