Automation Policy

Automation policies allow you to choose when and how to automate your certificate renewal, while also providing additional security policy parameters.

Configure your automation policies

1. Log in to Horizon Administration Interface.

2. Access Automation policy from the drawer or card: Automation  Automation Policy.

3. Click on Add Automation Policy.

4. Fill in the mandatory fields.

General

  • Name* (string input):
    Enter a meaningful policy name. It must be unique for each automation policy. Horizon use the name to identify the policy.

  • Profile* (select):
    Select an existing SCEP, EST or ACME profile on which to enroll the certificates.

    Cryptographic information, such as the key types for certificate enrollment are taken from the profile Crypto Policy.
  • Execution policy (select):
    Select a preexisting execution policy. If no policy is selected, renewal actions are always allowed.

Compliance

  • Authorized CAs (multiselect):
    Select CAs on which the certificate will be considered as compliant if its issuer is in the list. An empty list means all issuing CAs are authorized.

  • Authorized hash algorithms (multiselect):
    Select algorithms on which the certificate will be considered as compliant if its hash algorithm is in the list. An empty list means all hash algorithms are authorized.

  • Trust chains (multiselect):
    Select trust chains that will be installed on the machine at the same time as the certificate installation. If no chain is specified, only the one optionally needed by the server will be installed.

5. Click on the save button.

You can edit Edit policy or delete Delete policy the policy.