# Registration Authority

Certificate Lifecyle Management

# Introduction

[](pdfgenerator=eyJ0aXRsZSI6IFsiUmVnaXN0cmF0aW9uIEF1dGhvcml0eSJdLCAic3VidGl0bGUiOiBbIkludHJvZHVjdGlvbiJdfQ==)
# Features
- Certificate Lifecyle Management with workflows and input validation
- Notifications of expiring certificates
- Connection to multiple CAs (MS ADCS, TeleSec, DigiCert, Swissign, D-Trust, Global-Sign, Sectigo, keyon true-CA)
- Full automation of TLS certificates with ACME, CMPv2 & EST
- Web services (SOAP, REST) for automation processes & interaction with other components
- RA-DCOM adapter to support Microsoft Auto-Enrollment and other MS ADCS use-cases
- Certificate discovery (TLS port scanning & agent-based certificate store and file scanning)
- Extensive Audit-Logging
- Role-Based Access-Control either based on Kerberos and Active Directory groups or based on OAuth2, OpenIDConnect
- Multi-tenant capable

![](/uploads/images/gallery/2026-07/ycEf0fc99887a948e93fa62b62147d0f4e6358e938e-intro.png)