CertHat Features: Automated Certificate Renewal, ACME, and PKI Monitoring

CertHat organizes its capabilities around three focus areas that reflect how certificate management is evolving: automated issuance and renewal, ACME protocol support, and PKI health check & monitoring.
Automated Certificate Issuance & Renewal
- Automated renewal for Microsoft AD CS–issued certificates
- Automated renewal and deployment to F5
- Automated renewal for Linux/UNIX servers via Ansible
- Automated renewal for Kubernetes and OpenShift
- Support for additional endpoint types, with new integrations planned (including DigiCert)
- Certificate web enrollment with P12/PFX generation and manager approval
- Issue certificates based on CSR
ACME Protocol Support
- Native support for the ACME (Automated Certificate Management Environment) protocol
- Standards-based automation that fits modern DevOps and infrastructure-as-code workflows
PKI Health Check & Monitoring
- Enterprise PKI Health Status Dashboard, including CA infrastructure overview
- Certificate search, sort, and grouping based on certificate attributes (manual groups also supported)
- E-mail and/or SNMP notifications per certificate group
- Early and late alerting on certificate expiration
- Root CA CRL expiration alerting
- Reports for expiring certificates
Certificate Management & Administration
- Role-based access (PKI managers / certificate requesters), based on existing AD security groups and CA roles
- Certificate manager operations: approve/reject requests, revoke certificates
- Custom metadata for certificates
- Import certificates from file or URL
- REST API for integration with third-party tools
For more details and in-depth overview of CertHat please Request a Demo or request CertHat Trial.