emSign Knowledge Base
  • emSign
  • Getting Started
    • About emSign
    • Why emSign?
    • Key Highlights
      • Root Store Listings
      • Trust
      • Security
      • Mass Revocation Preparedness: eMudhra’s Perspective on Building Digital Trust
      • Using ACME Clients with eMudhra CERTInext
      • Supported Devices and Platforms
    • Certificate Lifecycle and Key Management Platform (CERTInext)
  • emSign CERTInext
    • Overview
    • Getting Started
      • Enterprise Sign up
      • Partner Sign up
      • Retail Customers
      • Multi-factor & Trusted login
        • Multifactor Authentication and Single Sign On
        • Enforce 2FA
        • IP Restrictions
        • Digital Certificate based login
      • Alerts and Notifications
    • User and Group Management
    • Ordering a Certificate
      • As a Customer
        • DV certificates
        • OV Certificates
        • EV Certificates
        • SMIME Certificates
        • Intranet SSL Certificate
        • IGTF Certificates
        • Subscription Plan Coverage for SSL Products
        • Group-based Certificates Ordering
        • Ordering using Custom Fields
      • As a Partner
        • Order for Customers
        • Order for Sub-accounts
      • Requester Approval Workflows
        • EV requests by Authorized Signatory
        • Certificate requests by Administrator
      • Submitting a Certificate Signing Request (CSR)
        • Submit CSR for Pending Orders
        • Replace CSR for Pending Orders
      • Downloading Certificates
        • Download Interim DV
        • Download Certificate
      • Post Order Actions
        • Renew Certificate
        • Revoke an issued Certificate
        • Reissue Certificate
        • Add / Remove SANs for Multi-Domain SSL
    • Management
      • Domains
      • Organizations
      • Orders
      • Products
      • Templates
        • CSR Templates
        • Provisioning Templates
    • Integrations
      • Using APIs to Order
        • REST APIs
        • ACME APIs
      • Tools
        • eMudhra Certificate Utility Tool
        • eMudhra emSign Click Tool
          • Procedure for installing Certificate in HSM
          • Procedure for Attested CSR Generation
      • CA Connectors
    • Billing & Payments
      • Add Credits
      • Invoices
      • Statement (Ledger Statement)
      • Product Price List
    • Reports
      • Orders Report
      • Overall Statistics
      • Certificates Report
      • Key Store Report
      • Key Report
      • Sales Summary
      • Audit Logs
    • Settings
      • Reporting Tags
      • Manage Schedules
      • Custom Fields
    • Certificate Lifecycle Management
      • Discover Certificates
      • emSign CERTInext Bot
    • Key Lifecycle Management
      • Manage Keys
      • Key Profiles
      • Key Store
  • Consent Management
  • Certificate Approval Process
    • Domain Validation (DV) Process
    • Organization Validation (OV) Process
    • Extended Validation (EV) Process
    • User Certificates Process
    • SMIME Certificate Process
    • Qualified Sources
  • Certificate Installation
    • Before you install
    • Browser Compatibility
    • emSign's Security Seal
    • Installing SSL Certificate on IIS
    • Installing SSL Certificate on cPanel
    • Installing SSL Certificate on Amazon Web Services (AWS)
    • Installing SSL Certificate on Apache
    • Installing SSL Certificate on Plesk 12
    • Installing SSL Certificate on NGINX
    • Installing SSL Certificate on Google App Engine
    • Installing SSL Certificate on WHM
    • Installing SSL Certificate on Ubuntu
    • Installing SSL Certificate on Tomcat
    • Installing SSL Certificate on Heroku
    • Installing SSL Certificate on Bigcommerce
    • Installing Root & Intermediate Certificates for Intranet SSL
    • Supported Devices for auto-provisioning of certificates
    • SSL/TLS Server Rating Guide
  • Release Notes
    • Introduction
    • R1619 (07-Apr-2025)
    • R1591 (10-Mar-2025)
    • R1581 (28-Feb-2025)
    • R1553 (31-Jan-2025)
    • R1522 (31-Dec-2024)
    • R1490 (29-Nov-2024)
    • R1460 (30-Oct-2024)
    • R1427 (27-Sep-2024)
    • R1371 (02-Aug-2024)
    • R1354 (16-Jul-2024)
    • R1300 (23-May-2024)
    • R1251 (04-Apr-2024)
    • R1230 (14-Mar-2024)
    • R1196 (09-Feb-2024)
    • R1167 (11-Jan-2024)
    • R1152 (27-Dec-2023)
    • R1139 (14-Dec-2023)
    • R1124 (29-Nov-2023)
    • R1115 (20-Nov-2023)
    • R1101 (06-Nov-2023)
    • R1075 (11-Oct-2023)
    • R1062 (28-Sep-2023)
    • R1046 (12-Sep-2023)
    • R1039 (05-Sep-2023)
    • R1031 (28-Aug-2023)
    • R1024 (21-Aug-2023)
    • R1001 (29-Jul-2023)
Powered by GitBook
On this page
Export as PDF
  1. Getting Started
  2. Key Highlights

Supported Devices and Platforms

PreviousUsing ACME Clients with eMudhra CERTInextNextCertificate Lifecycle and Key Management Platform (CERTInext)

Last updated 1 day ago

Was this helpful?

© eMudhra. All Rights Reserved.

CtrlK
  • Web Servers
  • Application Servers
  • Cloud Services
  • Load Balancers
  • Content Delivery Networks (CDNs)
  • Hardware Security Modules (HSMs)
  • Repositories
  • Certificate Stores
  • Supported Automated Certificate Management Protocols

Was this helpful?

eMudhra CLM supports a wide range of devices and platforms for automated certificate provisioning, ensuring compatibility with modern IT infrastructures. Below is a detailed list of supported categories, devices, and platforms, along with their use cases.

Web Servers

Web servers host websites and require TLS certificates to enable secure HTTPS connections, protecting data in transit.

Device/Platform

Supported

Version

Notes

Apache

Yes

2.2.X, 2.4.X

Supports automated deployment via ACME or custom scripts. Compatible with mod_ssl for TLS configuration.

Nginx

Yes

0.8.X - 1.26.X

Integrates with ACME for automated certificate issuance and renewal. Supports HTTP/2 and modern TLS protocols.

Microsoft IIS

Yes

5.0, 5.1, 6.0, 7.0, 8.0, 8.5, 10.0

Integrates with Windows Certificate Store for seamless certificate management. Supports SCEP and EST protocols.

Jetty

Yes

Java-based server with support for automated certificate deployment via Java KeyStore integration.

Use Case: Automating TLS certificate deployment on Apache or Nginx ensures websites maintain secure connections without manual intervention, ideal for high-traffic environments.

Application Servers

Application servers host business-critical applications, often requiring certificates for secure communication and authentication.

Device/Platform

Supported

Version

Notes

Tomcat

Yes

9.X, 10.X

Supports Java KeyStore for certificate storage and automated updates via eMudhra CLM.

JBoss

Yes

Compatible with automated provisioning using Java KeyStore or PKCS12 files.

WebSphere

Yes

12.2.1.X (12c), 14.1.1 (14c)

Integrates with IBM’s key management tools for certificate automation.

WebLogic

Yes

Supports Oracle’s key management and automated certificate lifecycle management.

Use Case: Application servers hosting internal APIs or customer-facing services benefit from automated certificate renewals to ensure uninterrupted secure communication.

Cloud Services

Cloud platforms require certificates for secure access to resources, APIs, and services.

Device/Platform

Supported

Version

Notes

Azure Key Vault

Yes

Integrates with eMudhra CLM for automated certificate import and renewal in Azure environments.

AWS Key Manager

Yes

Supports automated certificate deployment to AWS resources via AWS SDK or CLI.

AWS Certificate Manager

Yes

Enables seamless integration for managing public and private certificates in AWS.

Imperva WAF (On – Prem)

Yes

X6530, X4530

Certificate deployment for Imperva Hardware-based Web Application Firewalls

Imperva (Cloud WAF)

Yes

Not Applicable

Supports automated certificate updates for Imperva’s cloud security solutions.

Use Case: Cloud services like AWS Certificate Manager automate certificate provisioning for load balancers and APIs, ensuring secure scalability in cloud-native environments.

Load Balancers

Load balancers distribute traffic across servers and require TLS certificates for secure connections.

Device/Platform

Supported

Version

Notes

F5 BIG-IP

Yes

12.X-16.X

Supports automated certificate deployment via iControl REST API or ACME.

HAProxy

Yes

Integrates with ACME for automated certificate management in high-availability setups.

Use Case: Load balancers in enterprise networks use automated certificate provisioning to maintain secure traffic routing without manual updates.

Content Delivery Networks (CDNs)

CDNs deliver content globally and require certificates to ensure data integrity and performance.

Device/Platform

Supported

Version

Notes

Akamai

Yes

Not Applicable

Supports automated certificate deployment via Akamai’s EdgeGrid API or ACME.

Use Case: CDNs like Akamai use automated certificate provisioning to secure content delivery across global edge servers, ensuring low latency and high security.

Hardware Security Modules (HSMs)

HSMs securely manage and store cryptographic keys and certificates.

Device/Platform

Supported

Version

Notes

All HSMs

Yes

Compatible with major HSM vendors (e.g., Thales, Entrust, Utimaco) via PKCS11 or proprietary APIs.

Use Case: HSMs in financial or healthcare environments benefit from automated certificate provisioning to securely manage keys for compliance with regulations like PCI-DSS or HIPAA.

Repositories

Repositories store and manage digital certificates and keys centrally.

Repository

Supported

Version

Notes

Active Directory

Yes

Windows Server 2012 R2

Windows Server 2016

Windows Server 2019

Windows Server 2022

Integrates with eMudhra CLM for automated certificate enrollment and management in Windows environments.

OpenLDAP

Yes

Supports automated certificate storage and retrieval in open-source LDAP deployments.

Use Case: Centralized repositories like Active Directory streamline certificate management for large-scale enterprise networks.

Certificate Stores

Certificate stores securely manage certificates within operating systems or applications.

Certificate Store

Supported

Version

Notes

Windows Certificate Store

Yes

Supports automated certificate import and renewal via SCEP, EST, or CMP protocols.

Use Case: Windows Certificate Store automation ensures seamless certificate updates for Windows-based applications and services.

Supported Automated Certificate Management Protocols

eMudhra CLM leverages industry-standard protocols to automate certificate enrollment, issuance, and renewal. Each protocol is designed to address specific use cases and security requirements.

Protocol

Supported

Version

Description

SCEP (Simple Certificate Enrollment Protocol)

Yes

Simplifies certificate enrollment for devices and applications, ideal for mobile and IoT environments.

CMP (Certificate Management Protocol)

Yes

Provides a comprehensive framework for managing the entire certificate lifecycle, including issuance, renewal, and revocation.

EST (Enrollment over Secure Transport)

Yes

Enhances security for certificate enrollment using HTTPS, suitable for modern web-based environments.

ACME (Automatic Certificate Management Environment)

Yes

Automates issuance and renewal of SSL/TLS certificates, widely used for web servers and cloud services.

Use Case: ACME is commonly used with Let’s Encrypt or eMudhra’s CA to automate certificate renewals for public-facing websites, while CMP is ideal for complex enterprise PKI environments.