Renew Certificate and Push with ServiceNow

This workflow allows you to renew a certificate based on the certificate group and certificate authority, push it to a device, and attach the renewed certificate to the ServiceNow ticket.

To trigger this workflow:

  1. From the Certificate Lifecycle Automation catalog, under the Renewal category, hover your mouse over the Renew Certificate and Push with ServiceNow workflow and click .
    Tip: You can also search for the workflow by typing the workflow name in the search bar.
    The workflow execution page is displayed with the workflow inputs requested at the first stage.
  2. Under the General Information section, select the Certificate Type (mandatory).
  3. Under the General Information section, select the Assign Group (mandatory).
  4. Under the CA Details section, select the Certificate Authority (mandatory).
  5. Under the Certificate Information section, select the Certificate from the dropdown list (mandatory).
    The Serial Number field is populated based on the Certificate selected.
  6. Under the CSR Parameters section, enter or select the requested field information as described in the table below.
    Table 1. Field Description for CSR Parameters section
    Field Description
    *Common Name Enter the Fully Qualified Domain Name (FQDN) of the server for which certificate is requested.
    Note: You have the option to change the common name of the regenerated certificate.
    Subject Alternative Name Select the SAN as either:
    • DNS
    • Directory Name
    • Email
    • IP Address
    • Registered ID
    • URL
    • Other Name
    DNS Enter a valid DNS if you select the DNS option in the SAN field.
    Directory Name Enter a valid Directory Name if you select the Directory Name option in the SAN field.
    IP Address Enter a valid IP Address if you select IP Address in the SAN field.
    Registered ID Enter a valid Registered ID if you select the Registered ID option in the SAN field.
    Other Name Enter a valid Other Name if you select the Other Name option in the SAN field.
    URL Enter a valid URL if you select the URL option in the SAN field.
    Email Enter a valid Email address if you select the Email option in the SAN field.
    *Validity Unit Select the Validity Unit as either:
    • Days
    • Months
    • Years
    *Validity Value Enter a Validity Value based on the selected validity unit.
    Hash Function Select the Hash Function from the options available in the dropdown.
    *Download Format Select the format for downloading the certificate from the available options.
    All asterisk (*) marked fields are mandatory.
  7. Under the Certificate Attributes section, select the Attribute from the available options.
  8. Enter a value for the selected attribute.
    Table 2. Actions available in the Certificate Attributes grid
    Action Description
    Allows you to add the attribute to the Certificate Attributes grid.
    Allows you to edit the value of a particular attribute. You can do this by selecting the attribute in the grid, click , enter the new value for the attribute, and click again.
    Allows you to delete a certificate attribute.
    Allows you to maximize the Certificate Attributes grid.
    Search bar Allows you to search for a particular attribute in the grid.
  9. Under the ServiceNow Details section, enter the requested field information as described in the table below.
    Table 3. Field Description for ServiceNow Details section
    Field Description
    Do you require SNOW Integration? Select the required radio button for ServiceNow integration.
    RITM Ticket Number Enter the RITM Ticket Number to which the downloaded certificate will be attached.
    Note: This field is displayed only when you select Yes in the Do you require SNOW Integration? field.
    ServiceNow Account Select the ServiceNow Account from the options available in the dropdown.
    Note: This field is displayed only when you select Yes in the Do you require SNOW Integration? field.
  10. Under the Notifications section, enter the Email ID to which the certificate creation notification will be sent.
    Note: The Email ID field will auto-populate with the logged in user’s email address by default if the email address has been configured in the SMTP settings. You can also enter a different email address in this field or enter multiple email addresses separated by commas.
  11. Click Submit.
    Certificate is renewed successfully.
  12. To download the certificate, at the View and Download Certificate stage, hover your mouse over and from the options displayed, click Download Certificate.
  13. Hover your mouse over to view the Certificate status.