Skip to main content

© Securetron Inc. All rights reserved.

Tag: certificate

Integrate Intune with PKI Trust Manager to Issue Certificates to Users, Devices, and Servers

ADCS | Intune SaaS | Enterprise | Community Edition Understanding ADCS Certificate Templates: The Blueprint for PKI Certificates This tutorial guides you through fully integrating PKI Trust Manager and Intune to issue certificates to users or devices. The PKI Trust Manager’s Intune Integration service should be used instead of Microsoft Network Device Enrollment Service. You will learn how to navigate the interface and configure necessary certificate templates for successful setup. 1. Introduction Let us begin at the ISSUING Certification Authority that has been previously...

Active Directory Certificate Services, azure, certificate, Certificate Lifecycle Management, Certificate Management System, clm, Cloud PKI, containers, docker, Hybrid, Intune, Linux, M365, MFA, PKI, TLS

Continue reading

How to build Certificate Bill of Material (CBOM)

Discovery | Notification SaaS | Enterprise | Community Edition What is CBOM – Certificate Bill of Materials CBOM stands for Certificate Bill of Materials. It is a concept borrowed from the software industry’s SBOM (Software Bill of Materials) and applies its core principle to the complex ecosystem of digital certificates and cryptographic assets within an organization. Core Definition A CBOM is a formal, machine-readable inventory that details all the digital certificates (TLS/SSL, code signing, S/MIME, client authentication, etc.), cryptographic keys, and sometimes related...

Active Directory Certificate Services, cbom, certificate, certificate bill of material, Certificate Lifecycle Management, Certificate Management System, clm, containers, discovery, docker, free, Linux, MFA, notification, PKI, TLS

Continue reading

Enable SCEP API Interface on PKI Trust Manager

ADCS | Compliance SaaS | Enterprise | Community Edition How to Enable SCEP Service in PKI Trust Manager This tutorial guides you through enabling the SCEP Service within the PKI Trust Manager. The PKI Trust Manager SCEP service should be used instead of Microsoft Network Device Enrollment Service. You will learn how to navigate the interface and configure necessary certificate templates for successful setup. Prerequisites How to Publish a Certificate Template in PKI Trust Manager How to Deploy Microsoft CA / AD CS Proxy Gateway How to Deploy CertAPI Container on Azure How to Deploy...

Active Directory Certificate Services, certificate, Certificate Lifecycle Management, Certificate Management System, clm, containers, docker, Linux, MFA, PKI, TLS

Continue reading

How to Audit Microsoft Certification Authority (ADCS) using PKI Trust Auditor

ADCS | Compliance SaaS | Enterprise | Community Edition How to Audit Active Directory Certificate Authority (ADCS) / Microsoft CA using the PKI Trust Auditor This guide explains how to audit an Active Directory Certificate Authority using PKI Trust Auditor. You will learn the step-by-step process to perform a comprehensive audit efficiently. 1. Prerequisites To begin, You will need to have these steps performed: 1. Download the PKI Trust Auditor from securetron.net for Free. 2. User account that is a Domain Admin or an Enterprise Admin. For specific permissions refer to the...

Active Directory Certificate Services, ADCS, audit, certificate, Certificate Lifecycle Management, Certificate Management System, clm, containers, docker, Linux, MFA, PKI, PKI Trust Auditor, TLS

Continue reading

Deploy PKI Trust Manager using Docker

Guide | PTM SaaS | Enterprise | Community Edition How to Deploy PKI Trust Manager using Docker This tutorial guides you through deploying the PKI Trust Manager on Docker. You will complete all necessary steps to set up and verify the deployment successfully. 1. Introduction Let us begin by accessing a linux server terminal to begin the deployment process. In our demo we are using Ubuntu. 2. Create Directory First, create a new directory called securetron. This directory will be used to download the necessary files required to run the PKI Trust Manager application 3. Enter...

Active Directory Certificate Services, certificate, Certificate Lifecycle Management, Certificate Management System, clm, containers, docker, Linux, MFA, PKI, TLS

Continue reading

Integrate PKI Trust Manager With Microsoft ADCS Proxy Gateway

Admin Guide | PTM | ADCS SaaS | Enterprise | Community Edition Integrate PKI Trust Manager With Microsoft ADCS Proxy Gateway This tutorial guides you through integrating the PKI Trust Manager with the Microsoft ADCS Proxy Gateway 1. PKI Trust Manager Web Console Logon to the PKI Trust Manager where you will find various integrations options including Certificate Authorities. Ensure that the Proxy Gateway has been deployed and running. You will need the FQDN which is resolvable and reachable to the Proxy Gateway for Microsoft ADCS 2. Select Certificate Authorities...

Active Directory Certificate Services, ADCS, certificate, Certificate Templates, Certification Authority, ndes, PKI

Continue reading

Deploy Securetron PKI Trust Manager CertAPI To Azure Cloud-SCEP-EST-ACME

Admin Guide | PTM SaaS | Enterprise | Community Edition Deploy Securetron PKI Trust Manager CertAPI To Azure Cloud This tutorial guides you through deploying the Securetron PKI Trust Manager CertAPI to the Azure Cloud environment. You will configure container app settings, registry details, ingress rules, and complete the deployment process. The Cert API provides SCEP, EST, ACME, and RESTful API interface for automation Azure Portal 1. Select Container App Option Click the Container App option to initiate creating a new container application. 2. Access...

ACME, Active Directory Certificate Services, certificate, EST, ndes, PKI, REST, Restful, scep, SSL, TLS, Trust Manager

Continue reading

Prevent Ransomware through Code Signing

Code Signing | Malware SaaS | Enterprise | Community Edition Fortifying the Digital Frontier: How Code-Signing Certificates and PKI Management Prevent Ransomware Introduction In the relentless battle against cyber threats, ransomware stands out as one of the most destructive and financially motivated. These attacks encrypt a victim’s data, holding it hostage until a ransom is paid, crippling businesses, hospitals, and government agencies. While no single solution offers complete immunity, a robust defense-in-depth strategy is essential. A critical, yet often underestimated,...

ADCS, application, certificate, Certificate Template, cicd, code, code signing, malware, PKI, ransomware, signing, software, timestamp, tsp

Continue reading

How PKI would have prevented Salesloft Breach

News | mTLS | Risk Applicable: SaaS | Enterprise | Community Edition Salesloft Breach and how PKI eliminates the risk of OAuth token hijacking   Introduction Certificates, specifically mTLS (Mutual TLS) certificates, are a powerful mechanism to address OAuth token theft. They don’t prevent the token from being stolen itself, but they severely limit its usefulness to an attacker, effectively neutralizing the threat. The core idea is to bind the OAuth token to a specific client using a cryptographic key pair, making the stolen token unusable on any other client. Here’s a breakdown of...

AI Agents, authentication, automation, Breach, certificate, mTLS, OAuth, PKI, sales loft, salesforce, Salesloft

Continue reading

SCEP VS EST

SCEP vs. EST: Simplifying Certificate Enrollment for Your PKI Introduction: Why Automated Certificate Enrollment Matters Imagine your company has thousands of devices—laptops, servers, IoT sensors—all needing digital certificates for secure access. Manually managing these certificates would be a nightmare! That’s where SCEP (Simple Certificate Enrollment Protocol) and EST (Enrollment over Secure Transport) come in. These protocols automate the process of requesting, issuing, and renewing certificates, saving IT teams from endless paperwork and security risks. In this guide, we’ll break...

authenticate, automate, automation, certificate, certificate renewal, ESP, EST, firewall, IoT, LEGACY, network, router, scep, security, TLS

Continue reading