Multifactor Authentication and Single Sign On
Multifactor Authentication and Single Sign On
Role-based access control
The emSign CERTInext platform offers six roles, each designed to address specific responsibilities and access requirements within the system:
Administrator
Manager
Finance Manager
Standard User
Basic User
Discovery User
Administrator
The Administrator role provides full access to the platform, enabling comprehensive management of users, groups, organizations, and financial operations. This role is intended for system overseers responsible for administrative and operational tasks.
Key Access Controls
Full portal access, including the Dashboard.
Manage:
Certificates (requests, orders, expiring certificates).
Organizations, domains, groups, and users.
Private and public Certificate Authorities (CAs) and products.
Sub-accounts and price lists for sub-accounts.
Access to:
REST and ACME APIs.
Financial features.
Audit logs and tools.
Reports and account settings.
Create user invitations and assign roles.
Manager
The Manager role focuses on overseeing groups, users, and orders while managing sub-accounts and associated group features. This role excludes full administrative and financial permissions.
Key Access Controls
Dashboard access (billing alerts, low credit alerts, and self-orders tracking).
Manage:
Organizations and domains.
Groups (including credit allocation) and users.
Private and public CAs and products.
Sub-accounts and price lists for sub-accounts.
Access to:
REST and ACME APIs.
Financial features.
Audit logs, reports, and tools.
Finance Manager
The Finance Manager role is tailored for managing financial operations, such as fund allocation, price lists, and finance-related features, without broader administrative control.
Key Access Controls
Dashboard access (billing alerts and self-orders tracking).
Manage:
Groups (credit allocation) and users.
Sub-accounts and price lists for sub-accounts.
Private and public CAs and products.
Access to:
REST and ACME APIs.
Financial features.
Audit logs, reports, and tools.
Standard User
The Standard User role allows for requesting certificates and accessing group orders. It includes broader access than the Basic User but lacks administrative permissions.
Key Access Controls
Dashboard access (billing alerts and self-orders tracking).
Manage:
Private and public CAs.
Access to:
REST and ACME APIs.
Reports, tools, and profile settings.
Basic User
The Basic User role provides minimal permissions, focusing on personal tasks such as requesting certificates and managing profile information.
Key Access Controls
Dashboard access (billing alerts and self-orders tracking).
Access to:
REST and ACME APIs.
Reports, tools, and profile settings.
Discovery User
The Discovery User role is dedicated to users responsible for certificate discovery operations. This includes tasks such as key management, key store handling, and accessing discovery-related features.
Last updated