SSL Pool Definitions

SSLClosed TLS (Transport Layer Security) and its predecessor SSL (Secure Sockets Layer) are protocols for establishing authenticated and encrypted links between networked computers. pools define the set of orchestrators used to perform SSL network discovery and monitoring scans. Each SSL pool contains one or more approved orchestrators that support SSL discovery and monitoring capabilities.

Assigning an SSL pool to a network allows scanning work to be distributed across multiple orchestrators in the pool. This improves scalability and performance, particularly for larger or more complex networks.

By default, all approved orchestrators with SSL capabilities are assigned to the Default Agent Pool. You can create additional SSL pools to control how discovery and monitoring workloads are distributed. When an orchestratorClosed Keyfactor orchestrators perform a variety of functions, including managing certificate stores and SSH key stores. is assigned to a custom SSL pool, it is removed from the default pool. If a custom pool is deleted, its orchestrators are returned to the default pool.

From this page, you can create, edit, and delete SSL pools.

Tip:  Previous versions of Keyfactor Command referred to the SSL pools as orchestrator pools.
Tip:  Where to find this in the Management Portal:
Locations→ SSL Discovery → SSL Pools Definition Tab