Certificate Lifecycle Management
For most organizations, Certificate Lifecycle Management is a nightmare. We often find departments where the duration of certificates is recorded in the Outlook agenda or in an Excel spreadsheet. Or worse yet, you have no idea how many certificates there are or where they are on the network. This is not only cumbersome, but also error-prone and risky.
KeyTalk automatically maintains the lifecycle of your certificates. This way, you will always have an up-to-date and detailed view of all private and public certificates, as well as the cryptographic keys used.
Detecting existing certificates and keys on the network (certificate discovery) is easily possible with our Smart Security Scan. The found certificates and keys are imported into the KeyTalk CKMS and then managed.
KeyTalk CKMS PKI Management support includes, but is not limited to:
Building a central repository of all internal and external certificates and their corresponding keys, possibly through a certificate discovery process with our Smart Security Scan and importing valid certificates found in our CKMS.
Automatic deployment and renewal of certificates (or semi-automatic after notification and authorization) on servers, network devices and user devices.
Comprehensive reports, notifications and alerts.
Support for PKI compliance through centralized workflows, roles (delegates) and authorizations in departments and subsidiaries. KeyTalk is domain independent and therefore easy to configure in larger organizations.
Integrations with a growing number of Certification Authorities such as DigiCert, DigiCert QuoVadis, GlobalSign and Microsoft CA.
Authorization based on AD and AAD (Azure Active Directory).
A large and growing number of supported integrations and protocols. For example: MDM solutions like Intune and MobileIron, load balancers, hardware security modules (HSM), Citrix, SCEP, and ACME.
An internal CA for issuing private certificates that can also be short-lived.