Learn About Certificate Authorities (CAs) and Managing Private Key Infrastructures (PKI)
Learn how to design and manage your certificate authorities and private key infrastructure through a set of comprehensive guides.
EZCA allows you to run and scale your own highly available private CA service without the upfront investment and ongoing maintenance costs of operating a private CA or private CA hierarchy. Whether you are creating a new private PKI hierarchy or chaining up to an existing one, EZCA will help you create it by following the latest industry standards.
EZCA integrates with key management systems (Azure Key Vault, AWS KMS), Windows, and Linux to empower you to automatically manage and rotate all certificates across multi-cloud and hybrid deployments.
Offload time consuming tasks such as HSM provisioning, PKI patching, CRL distribution, disaster recovery, and more to the cloud. EZCA allows your team to quickly deploy a highly available HSM backed PKI deployment in a few clicks. Leaving the PKI management to our world class PKI experts and freeing up your team to work on other pressing security tasks.
While other legacy PKI solutions are hard to set up increasing the probability of a misconfiguration that can cause an outage or even worse; expose your company. EZCA was designed and tested by PKI experts across the world. Making it easy for anyone to set up a world class HSM backed PKI in minutes.
EZCA supports a variety of CA types to meet your organization’s PKI needs:
Learn how to design and manage your certificate authorities and private key infrastructure through a set of comprehensive guides.
This guide will take you through the necessary steps to set up EZCA on your tenant. Modernizing your PKI and get full SSL visibility with EZCA.
A Root CA is needed to be the root of trust for your PKI Deployment. In this page we will guide you on how you can create your own Root CA either using EZCA or creating your own offline CA.
In this page we will guide you on how you can create your own Issuing SSL CA and chain it up to a Root CA (EZCA Root or Offline Root).
This page will walk you through how to create an Azure based SCEP CA to issue SSL Certificates for your Intune managed devices.
In this page we will show you how to connect to GlobalSign to issue and automate public SSL certificate lifecycle using the EZCA and all the integrations it offers.
Azure Firewall requires a CA certificate to inspect TLS traffic and secure the connection between the client and the firewall. This guide will take you through the necessary steps to automatically issue TLS certificates for Azure Firewall.
This section will guide you through managing your EZCA certificates including renewing, revoking, and monitoring certificate status.
Find answers to the most frequently asked questions about Keytos EZCA, the leading cloud-native PKI (Certificate Authority) built for Azure and Microsoft Cloud environments.
EZCA Swagger Documentation for API Reference
EZCA Pricing Breakdown