Skip to content
Release: Australia · Updated: 2026-05-25 · Official documentation · View source

Certificate routing policy form table

To automate the processes of your certificate life cycle, you must fill out a routing policy form that populates your Certificate Signing Requests. This table shows you the required fields and values.

FieldDescription
NameName of your routing policy.
Certificate AuthorityCertificate authority. To see a list of supported Certificate Authorities, select the search icon. Choose EJBCA ACME. Note: The certificate authority determines if additional fields are necessary for your routing policy. Fill in this field first, to see what information you need for this form.
EnvironmentThe environment that you want your certificate for. Options are:- Development - Disaster recovery - Production - Sub-Production .
Assignment GroupAssignment group. You can select an assignment group or make a new one.
DNS Challenge ActionDomain name system challenge action.
Credential AliasCredential alias. Your options are based on the aliases that you create in the Certificate Management Credentials form.
Vault TypeExternal vault provider to use for private key storage with this routing policy. Options include HashiCorp Vault. When set, the system stores private keys in the specified vault during automated certificate operations (new request, renew, revoke) instead of on the MID Server.
Certification PurposeCertification Purpose. Options are:- Internal - External
Is ActiveOption to activate the policy.
Allow Duplicate RequestOption to allow multiple requests to receive multiple certificates.
Approval RequiredOption to require approval.
Task Approval GroupTask approval group. This field appears only when the Approval Required field is activated.
DNS Task Assignment GroupDNS Task Assignment Group. Select Certificate Inventory and Management.
DomainDomain of the policy. This field is automatically set to global.
MID ServerMID Server you want to use.
Subject Common NameSpecific entity or domain name that the certificate is issued to. Enter a name or `*`.
Subject Alternative NameDomain or subdomain included in the Subject Common Name. Enter an alternative name or `*`.
OrganizationOrganization making the certificate signing request for the given Subject Common Name. Enter the organization or `*`.
LocalityLocality \(city\) of the organization making the certificate signing request for the given Subject Common Name. Enter the locality or `*`.
CountryCountry of the organization making the certificate signing request for the given Subject Common Name. Enter the country or `*`.
Organizational UnitOrganizational unit making the certificate signing request for the given Subject Common Name. Enter the unit or `*`.
StateState of the organization making the certificate signing request for the given Subject Common Name. Enter the state or `*`.
Email AddressEmail address of the administrator in the organization making the certificate signing request for the given Subject Common Name. Enter an email address or `*`.