Entrust PKI as a Service

CA Auditors

Members of the CA Auditors role can perform the following operations.

Subscription management

Members of the CA Auditors role cannot manage subscriptions.

Operation Authorized
Checking your subscriptions
Assigning subscriptions to partitions

User management

Members of the CA Auditors role cannot manage users.

Operation Authorized
Inviting users
Managing roles

CA management

Members of the CA Auditors role can perform the following CA management operations.

Operation Authorized
Browsing CAs
Creating a root CA
Creating an intermediate subordinate CA
Creating an issuing subordinate CA
Importing an external root CA
Downloading a CA certificate
Selecting CA profiles
Deleting a CA

Certificate management

Members of the CA Auditors role can perform the following certificate management operations.

Operation Authorized
Browsing certificates
Issuing a certificate from CSR
Issuing a certificate in a PKCS #12
Changing the certificate status
Downloading certificates

Enrollment management

Members of the CA Auditors role can only inspect the enrollment configuration.

Operation Authorized
Configuring ACME in PKIaaS Read-only
Configuring Intune in PKIaaS Read-only
Configuring Jamf in PKIaaS Read-only
Configuring Workspace ONE in PKIaaS Read-only
Configuring Ivanti in PKIaaS Read-only
Configuring MDM IBM MaaS360 in PKIaaS Read-only

CA Gateway management

Members of the CA Auditors role cannot perform the operation described in Managing CA Gateway credentials.