Certificate Enrollment in Keyfactor Command

Enrollment

The enrollmentClosed Certificate enrollment refers to the process by which a user requests a digital certificate. The user must submit the request to a certificate authority (CA). patterns added for the AnyCAGateway REST will appear in the dropdown menu on the Keyfactor Command enrollment pages (see Working with the AnyCAGateway REST and Keyfactor Command ).

Enroll as usual in Keyfactor Command using the AnyCAGateway REST CAClosed A certificate authority (CA) is an entity that issues digital certificates. Within Keyfactor Command, a CA may be a Microsoft CA or a Keyfactor gateway to a cloud-based or remote CA..

Figure 791: Select an Enrollment Pattern and CA

Tip:  Certificate requests made via the gateway can deliver extra enrollment data to the CA via the Additional Enrollment Fields set on the enrollment pattern in Keyfactor Command and populated at enrollment. The additional attributes can also be populated via workflowClosed A workflow is a series of steps necessary to complete a process. In Keyfactor Command, it refers to the workflow builder, which allows you to automate event-driven tasks such as when a certificate is requested, revoked or found in a certificate store. in the workflow data bucket field called Additional Attributes. The functionality of the data handling for these depends on the CA plug-in used and the third-party CA.
Certificate Requests
Note:  The certificate will need to be issued by the third-party gateway, so once you request the certificate, you may find it in the External Validation tab of the Certificate Requests page in Keyfactor Command until it has been issued by the CA.

Figure 792: Certificate Requests > External Validation

Note:  Certificate requests with an external validation status will return any free-form data provided by the CA in the enrollment response to Keyfactor Command. This data is placed in a workflow data bucket field called EnrollmentContext, which is a dictionary of the returned data. In the Keyfactor Command enrollment workflow the returned data can then be accessed and manipulated as needed using other workflow steps.