Akamai

The Akamai CPS (Certificate Provisioning System) provides full life cycle management of SSL/TLS certificates for Akamai Secure Delivery Network applications.

Prerequisites

  • Create authentication credentials. before using the API.
  • To enable this API, choose the Certificate Provisioning System API service, and set the access level to READ-WRITE.
  • Ensure your API credentials have the following grants: CPS and Contracts-API_Contracts.

Onboarding Akamai CPS Device

  1. Go to (Menu) > CERT+ > ADMINISTRATION > Device Management.
    By default, the ADC tab opens.
  2. Click the Server tab.
  3. Click the (Add) icon.
  4. Select Akamai logo from the Vendors list.
    The Akamai server configuration screen is displayed.
  5. In the Server Details section, enter details as mentioned below.
    Table 1. Server Details - Field Description Table
    Fields Description
    *Server name Enter the server name, a unique name for the device addition.
    *IP address/ FQDN Enter the valid IP address or FQDN for device communication and integration with the Akamai CPS.
    Data center Choose the desired data center.
    Onboarding Group Select the onboarding group to assign the device.
    Note: Devices without an assigned group are automatically mapped to the Default group during migration, onboarding, and when edited without existing group mappings.
    Proxy Select the checkbox to enable the secure proxy service.
    Cert sync Choose from any of the following:
    • Managed - AppViewX performs the config fetch operations and the certificates are discovered and managed in the inventory. CLM actions (push & bind, rollback etc.) can be performed on them.
    • Monitored - AppViewX performs the config fetch operations and the certificates are downloaded in the inventory in the read-only state. CLM actions cannot be performed on them.
    • Ignored - AppViewX only performs the config fetch operations for the devices. There is no certificate discovery performed.
    *: Mandatory fields
  6. In the Credentials section, enter details as mentioned below.
    Table 2. Credentials - Field Description Table
    Fields Description
    *Client token Enter the client token as provided by the vendor.
    *Client secret Enter the client secret as provided by the vendor.
    *Access token Enter the access token as provided by the vendor.
    *API Version Enter the value, example cps/v2. (The same value is provided as the placeholder.)
    *: Mandatory fields
  7. Click Save.
    The Akamai CPS device is onboarded successfully.

Validating the Device

After the device is onboarded successfully, follow the steps to validate the device communication with AppViewX:
  1. Go to ADMINISTRATION > Device Management.
    By default, the ADC tab opens.
  2. Click the Server tab.
    The Server Inventory page is displayed.
  3. Check that the device name appears in the inventory (Name column) with the specified status in the status column.
    The status column will have the value Managed/Monitored/Ignored if the connection is successful or displays Failed/Unresolved in case of failure.
  4. From the Status column, click the Managed/Monitored/Ignored/Failed/Unresolved.
    Device Status Log pop-up is displayed.
  5. Expand each value in the pop-up to know the Device communication, Device Version, Instance Information, and Certificate Discovery From Device.

What's Next

Once you have onboarded and validated the device connection, you are ready to proceed with the any of the following certificate actions: