Solution Design

Keyfactor Command supports a number of different deployment architectures to help provide for different needs from small and simple to highly available. The solution can be as simple as one Keyfactor Command server or set of containers hosting all the Keyfactor Command roles (other than the policy handlers, which are installed on a Microsoft CAClosed A certificate authority (CA) is an entity that issues digital certificates. Within Keyfactor Command, a CA may be a Microsoft CA or a Keyfactor gateway to a cloud-based or remote CA.) or the roles can be separated onto different machines to provide increased security or distribute the load. Redundant servers can be added to provide for high availability—either within the same data center or across data centers. Keyfactor expects that the specifics of a high availability deployment plan would be finalized as part of the project rollout.