Optional Configuration

Once the installation is complete, the Keyfactor Universal OrchestratorClosed The Keyfactor Universal Orchestrator, one of Keyfactor's suite of orchestrators, is used to interact with servers and devices for certificate management, run SSL discovery and management tasks, and manage synchronization of certificate authorities in remote forests. With the addition of custom extensions, it can provide certificate management capabilities on a variety of platforms and devices (e.g. Amazon Web Services (AWS) resources, Citrix\NetScaler devices, F5 devices, IIS stores, JKS keystores, PEM stores, and PKCS#12 stores) and execute tasks outside the standard list of certificate management functions. It runs on either Windows or Linux servers or Linux containers. should be running and ready to communicate with the Keyfactor Command server. The initial installation allows the orchestratorClosed Keyfactor orchestrators perform a variety of functions, including managing certificate stores and SSH key stores. to register itself with Keyfactor Command and run jobs of the capability types configured during installation (after being approved in the Keyfactor Command Management Portal) unless you selected the NoService parameterClosed A parameter or argument is a value that is passed into a function in an application..

This section details some post-install configuration steps that may need to be completed for some capabilities and some optional settings.

Important:  Synchronization for the remote CAClosed A certificate authority (CA) is an entity that issues digital certificates. Within Keyfactor Command, a CA may be a Microsoft CA or a Keyfactor gateway to a cloud-based or remote CA. functionality of the orchestrator will not begin until you complete the configuration by making the appropriate configuration changes in the Keyfactor Command Management Portal. See Orchestrator Management in the Keyfactor Command Reference Guide for instructions on approving the orchestrator in the Keyfactor Command Management Portal on the Orchestrators->Management page and Adding or Modifying a CA Record in the Keyfactor Command Reference Guide for instructions on configuring certificate and templateClosed A certificate template defines the policies and rules that a CA uses when a request for a certificate is received. synchronization for remote CAs on the Locations->Certificate Authorities page.