Mutual Transport Layer Security (mTLS) overview

Bind Mutual Transport Layer Security (mTLS) certificates in the Environments UI to take control of your extension’s security. The mTLS certificate is a digital credential that proves the identity of a server or client in secure communications. When you use the mTLS Service API, these certificates help you verify and encrypt your interactions with Adobe Experience Platform Event Forwarding. This process not only protects your data but also ensures that every connection is from a trusted partner.

Implement mTLS in a new environment implement-mtls

Set up the Event Forwarding environment to ensure your library builds are deployed correctly to the edge network. During setup, you can select the hosting option that best fits your deployment needs. An mTLS certificate is also automatically added to your new environment for secure communication.

To create a new environment, select the Environments tab in the left panel of your Event Forwarding properties, then select Add Environment.

Event forwarding properties showing existing environments, highlighting Add Environment.

On the next page, select the environment you would like to use for this set up. Three environments are available:

NOTE
A property is limited to one development, one staging, and one production environment.
Environment
Description
Development
The development environment is for team members to test libraries or changes in Event Forwarding.
Staging
The staging environment is optional and allows approved team members to test and approve a library before it’s published.
Production
The Production environment is used for live production data.

The environment select screen, highlighting Select for Development.

On the Create Environment page, enter a Name and select Adobe Managed from the Select Host dropdown menu. The Certificate is Automatically added. Finally, select Save.

The Create Development Environment page, highlighting Name, Select Host, and Save.

The environement is successfully created, and you are returned to the Environments tab, which displays your new environment.

The Environments tab, highlighting the Developemet environment.

View environment certificate details view-certificate

To view the certificate details for an environment select the Environments tab in the left panel of your Event Forwarding properties, then select the environment to view details.

The following certificate details are displayed:

Field Name
Description
Certificate

Details of the certificate, which include:

  • Name: The name of the cerificate.

  • Date created: The date when the certificate was created.

  • Status: The current status of the certificate:

    • Current: The certificate is actively in use.
    • Obsolete: The certificate is not in use but hasn’t expired yet. It can still be selected for use.
    • Expired: The certificate is expired, grayed out, and no longer available for use.
Expires
Date the certificate will expire.
Variable Name
The variable name of the certificate.
Status

The current status of the certificate:

  • Depolyed: The certificate has been successfully deployed and is active.
  • Deploying: The certificate is in the process of being deployed.
  • Needs Deployment: This status appears when an obsolete certificate is selected.

The Edit Development Environment page, highlighting Certificate details.

Select and deploy an obsolete certificate deploy-obsolete-certificate

To use an obsolete certificate, navigate to the Environments tab in the left panel of your Event Forwarding properties, then select the environment to view its details.

The Environments tab, highlighting the Developemet environment.

From the Certificate dropdown, select an obsolete certificate, then select Save.

The Edit Development Environment page, highlighting Certificate dropdown with obsolete certificate and Save highlighted.

To deploy the certificate, select Save and deploy in the Deploy Certificate dialog.

Deploy certificate dialog with Save and deploy highlighted.

Next steps next-steps

This document demonstrated how to create an environment for your Event Forwarding property, add a certificate, and use an obsolete certificate. For more information about the mTLS certificates, see mTLS Service API Overview

To learn how to use mTLS certificates in Event Forwarding rules, refer to the Cloud Connector extension overview.

recommendation-more-help
12b4e4a9-5028-4d88-8ce6-64a580811743