Sectigo Releases Industry-First PKI DevOps Integrations for 5 Configuration Management and Orchestration Platforms
September 11, 2019

Sectigo released integrations with five of the most popular DevOps configuration management and container orchestration platforms.

The additions of Docker, Kubernetes, Ansible, Terraform, and soon HashiCorp Vault, deliver the industry’s most comprehensive PKI solution for DevOps. This unique combination of solutions will immediately help IT teams ensure their DevOps environments follow accepted security practices, meet compliance and auditability requirements, and provide crypto agility.

“All sizeable enterprises either use or are implementing DevOps today,” said Lindsay Kent, VP of Product Management, Sectigo. “As they do so, these enterprises are also finding that they suddenly need to become PKI experts and must roll out their own PKI to ensure identity for containers and related services.”

This exercise puts the enterprise in jeopardy as IT generalists must suddenly select, configure, and implement public key schemes without the benefit of background in this specialized field. Considerations like key size, certificate term length, and code deployment process all affect the security and compliance of containerized environments. As operations spin up DevOps environments, they often find themselves forced to make decisions about these and other aspects of PKI even though they may not understand the full consequences of these choices.

“These integrations between Sectigo Certificate Manager and the most popular DevOps orchestration tools give operations teams full visibility and control over the certificate properties they choose. An expert partner, like Sectigo, can ensure enterprises follow accepted security practices and can keep implementations current with changes in cryptography needed to stay safe in a changing computing environment,” added Kent.

The variety of certificates and specific use cases in any given DevOps environment is quite broad, as these are complex environments using many different technologies in conjunction. Supporting integrations with a variety of orchestration tools helps cover the enterprise’s complete operational footprint. Sectigo Certificate Manager integrates with supported tools using ACME (Automated Certificate Management Environment) or Sectigo’s RESTful APIs.

“Certificate-based authentication is a foundational element in many DevOps use cases, and one that often grows in complexity when an enterprise considers details such as public versus private servers, client authentication, and more,” said Fernando Montenegro, Principal Analyst, 451 Research. “We see a notable benefit for organizations to be able to use certificate management platforms that can address this complexity while integrating with popular configuration management and orchestration tools.”

IT teams will notably benefit from a centralized management platform that can be used to enforce the security policies across the organization. The Sectigo Certificate Manager platform is used by hundreds of enterprises across the globe to issue, renew, and manage certificates for their mission-critical applications. That means DevOps teams benefit from the reliability and speed of issuance that comes with a proven platform. In addition, if enterprises prefer, they can continue to use their DevOps tool or another PKI implementation for issuance and still use Sectigo Certificate Manager to monitor and report on their certificate deployments.

Sectigo’s latest integrations to its Certificate Management platform include:

- Docker — Allows DevOps teams to more easily create, deploy and run applications, delivering even greater value when paired with solutions like Kubernetes. By integrating with Docker, Sectigo can issue short lived public or private certificates to the applications running inside the Docker container.

- Kubernetes — Automates scaling, managing, updating, and removing containers, giving IT teams the flexibility needed to deliver applications consistently, no matter the size of the enterprise. Sectigo’s Kubernetes integration enables seamless certificate issuance and management using the Kubernetes native certificate controller.

- Ansible — Ansible-based automation aids lifecycle management for large certificate volumes in heterogeneous environments. By leveraging one of the leading tools in configuration management and server provisioning, Sectigo’s Ansible module eliminates complex security decision making and provides a transparent, platform-agonistic user experience for provisioning and managing TLS and client certificates.

- Terraform — This open-source tool creates, changes, and improves infrastructure. Sectigo’s Terraform integration enables the enrollment, collection, and revocation of certificates. Paired with HashiCorp Vault, Terraform provides secure storage for certificates and keys.

- HashiCorp Vault — HashiCorp Vault centrally manages and enforces access to secrets and systems based on trusted application sources and user identities. Sectigo Certificate Manager can assign certificates to applications protected by Vault and store keys and certificates used in DevOps environments.

Share this

Industry News

September 12, 2019

Rafay Systems announced the general availability of its turnkey, SaaS-based offering designed to confront a complex set of ongoing challenges enterprises and service providers face when modernizing their applications.

September 12, 2019

StackRox announced the availability of the StackRox App for the Sumo Logic Continuous Intelligence Platform.

September 12, 2019

Lacework is receiving $42 million from Sutter Hill Ventures and Liberty Global Ventures.

September 11, 2019

Clubhouse released a fully featured Free Plan that offers the full power of its flagship product to teams up to 10 people.

September 11, 2019

Sectigo released integrations with five of the most popular DevOps configuration management and container orchestration platforms.

September 11, 2019

Kong announced the release of a new open source project called Kuma.

September 10, 2019

Parasoft is excited to announce that Parasoft SOAtest, an API and UI functional testing solution, has won a 2019 API Award in the Best in Microservices Infrastructure category.

September 10, 2019

Cohesity announced the launch of Cohesity Agile Dev and Test, a new solution that addresses a key bottleneck organizations face in building applications at speed.

September 10, 2019

Split Software announced the addition of Feature Monitoring, an automated detection capability for its feature delivery platform that reduces detection times of errors in a code release.

September 09, 2019

US Signal announced the launch of its managed Website and Application Security Solution.

September 09, 2019

Tasktop announced that Jama Software is now offering the cloud version of its Tasktop Integration Hub for Jama Connect to automate and visualize the flow of product-critical information across the software delivery value stream.

September 09, 2019

Mesosphere announced a significant expansion in strategy and product portfolio as well as a new company name - D2iQ.

September 05, 2019

Redgate launched SQL Monitor 9.1, the latest version of the world’s most popular tool for monitoring SQL Server estates.

September 05, 2019

US Signal announced the launch of its managed Website and Application Security Solution.

September 05, 2019

Pulumi Corporation announced the general availability of version 1.0 of its modern Infrastructure as Code platform.