Introduction Features Certificate Lifecyle Management with workflows and input validation Notifications of expiring certificates Connection to multiple CAs (MS ADCS, TeleSec, DigiCert, Swissign, D-Trust, Global-Sign, Sectigo, keyon true-CA) Full automation of TLS certificates with ACME, CMPv2 & EST Web services (SOAP, REST) for automation processes & interaction with other components RA-DCOM adapter to support Microsoft Auto-Enrollment and other MS ADCS use-cases Certificate discovery (TLS port scanning & agent-based certificate store and file scanning) Extensive Audit-Logging Role-Based Access-Control either based on Kerberos and Active Directory groups or based on OAuth2, OpenIDConnect Multi-tenant capable