The Automated Certificate Management Environment protocol (ACME) is a protocol for automating certificate life cycle management communications between Certificate Authorities (CAs) and a company’s web servers, email systems, user devices, and any other place Public Key Infrastructure certificates (PKI) are used.



ACME Configuration


Field

Description

External Account Binding Type 

External account bindings are used to associate an ACME account with an external account such as a CA custom database. 

Choose an external account binding type from the drop down:- 

  • None: If external binding type is NONE, then ACME server i.e. ADSS Web RA will not manage the user
  • Fixed: Existing ADSS Web RA account of a user will be used, HMAC will be generated in system and that HMAC key will be consumed in each request for authentication purposes
  • Random: Existing ADSS Web RA account of user will be used, a random key will be generated for each ADSS Web RA request and that key will be used for authentication purpose of request


ACME URL

This is the ACME URL that the devices will use to communicate with ADSS Web RA for certificate generation. It will appear in a disabled form (Added in the admin portal)


Renewal Configuration


Field

Description

Select interval

You can set an interval at which the certificate renewal request will be initiated

Select Time

Set the time at which the certificate renewal request will be executed

Retry Interval

You can set the number of retry in seconds for ACME renewal request