Skip to main content

GlobalSign

SecTrail CM integrates with the GlobalSign ManagedSSL service to centrally manage ordering, renewal, and revocation of SSL/TLS certificates.

Connection Requirements​

RequirementDetailDescription
ProtocolSOAP API (HTTPS)GlobalSign ManagedSSL API is used
API Endpointhttps://system.globalsign.com/kb/ws/v1/ManagedSSLService?wsdlManagedSSL SOAP service
AuthenticationBasic AuthenticationAuthentication with Username and Password
User PermissionManagedSSL API AccessCertificate order, query, and management permission

Automatic Operations​

SecTrail CM automatically performs the following operations on GlobalSign:

  1. Certificate Order: Creating a new SSL/TLS certificate request
  2. Order Query: Viewing the status of existing certificate orders
  3. Certificate Renewal: Renewing certificates about to expire
  4. Certificate Revocation: Revoking certificates that are no longer used or compromised

Configuration Steps​

1. Add GlobalSign Profile​

Navigate to Integrations > GlobalSign and click the Add New Global Sign Profile button:

Add GlobalSign Profile

Enter the following information:

  • Name: Give a descriptive name for the profile
  • URL: GlobalSign ManagedSSL API endpoint address
    • https://system.globalsign.com/kb/ws/v1/ManagedSSLService?wsdl
  • Username: Your GlobalSign API username
  • Password: Your GlobalSign API password
  • Proxy: Proxy usage (Enable/Disable)

Click Submit button to save the profile.

Contact Information

GlobalSign will use the specified contact information for certificate operations. Ensure this information is accurate and up-to-date.

2. View GlobalSign Accounts​

After adding a profile, it will be displayed in the Integrations > GlobalSign list:

GlobalSign Account List

The list screen displays the following information:

  • Name: Profile name
  • URL: API endpoint address
  • Username: Username
  • Domain Details: Associated domain information

Account Operations​

The following operations can be performed for each profile:

  • Refresh (πŸ”„): Refresh profile information
  • Edit (✏️): Edit profile settings
  • Delete (πŸ—‘οΈ): Delete profile

View Certificate Orders​

After GlobalSign integration, you can view all your certificate orders:

Navigate to Integrations > GlobalSign > Orders:

GlobalSign Orders

Order Information​

FieldDescription
Order Request DateCertificate request date
OrderGlobalSign order number
Common NameDomain name where the certificate will be used
ProductCertificate product type
StatusCertificate status (Issued, Pending, etc.)
DaysRemaining validity period (days)

Certificate Statuses​

  • Issued 🟒: Certificate successfully issued and active
  • Pending 🟑: Order is being processed
  • Revoked πŸ”΄: Certificate revoked
  • Expired ⚫: Certificate expired

Certificate Management​

Certificate Renewal (Renew)​

To renew certificates about to expire:

  1. Navigate to Integrations > GlobalSign > Orders
  2. Find the certificate you want to renew
  3. Click Renew Certificate button (πŸ”„ green icon)
  4. Confirm the renewal
Renewal Timing

It is recommended to start renewing certificates at least 30 days before the expiration date.

Certificate Revocation (Revoke)​

To revoke compromised or no longer used certificates:

  1. Navigate to Integrations > GlobalSign > Orders
  2. Find the certificate you want to revoke
  3. Click Revoke Certificate button (🚫 red icon)
  4. Confirm the revocation
Revocation Process

Once a certificate is revoked, this action cannot be undone. A revoked certificate can no longer be used.