Remote CA Gateway

PDF:  Download a PDF of the KeyfactorRemoteCAGateway_24.1 Guide.

The Keyfactor Remote CAClosed A certificate authority (CA) is an entity that issues digital certificates. Within Keyfactor Command, a CA may be a Microsoft CA or a Keyfactor gateway to a cloud-based or remote CA. Gateway solution by Keyfactor allows organizations to leverage existing on-premise CAs with an Azure-hosted, Keyfactor-managed instance of Keyfactor Command to issue and manage certificates across enterprise infrastructures. Out-of-the-box, Microsoft and EJBCA CAs are supported. Other CAs can be supported with the addition of a custom connector extension.

The Keyfactor Remote CA Gateway is made up of:

Figure 1: Keyfactor Remote CA Gateway Architecture

The Keyfactor Remote CA Gateway Connector runs on either Windows or Linux and can be installed either on the CA or on a separate machine on the same network. Connections to Microsoft CAs are only supported from gateway connectors running on Windows.

A given instance of the Keyfactor Remote CA Gateway Connector and associated Keyfactor Remote CA Service and Keyfactor Remote CA Configuration Portal can support only one type of CA. If you have more than one type of CA (e.g. both Microsoft and EJBCA), you will need more than one instance of these.

For a comprehensive description of the components that make up Keyfactor Command, please see the Installation and Reference Guides1 for both the server and the orchestrators and gateways that enhance the server functionality.