Discover certificates across your entire infrastructure with flexible discovery options. From on-premise servers and load balancers (F5, Citrix, Fortigate, NGINX) to multi-cloud environments (AWS, Azure) and AD scan, Key Manager Plus provides comprehensive, agentless discovery across your entire IT stack. Uncover every SSL/TLS certificate, including rogue and forgotten installations, to gain a complete and accurate inventory of your cryptographic assets.


Beyond discovery, Key Manager Plus imports existing certificate orders from your public CA accounts (DigiCert, GlobalSign, The SSL Store, Sectigo, and others) and from Microsoft Certificate Authority. This consolidates certificates requested outside Key Manager Plus into your central repository, providing a complete view of all certificates, whether discovered from infrastructure or imported from CA platforms.
All discovered certificates automatically consolidate into a centralized repository with powerful search and filtering capabilities. Track certificates by common name, issuer, key size, expiration date, and custom fields. Export private keys and certificates in multiple formats (JKS, PKCS, PEM) when needed.


Automatically rediscover certificates from previously scanned sources to track certificate changes and updates. Monitor certificate deployment across multiple servers to ensure the latest versions are in use and identify outdated certificates that need updating.
Every discovery operation is logged with detailed audit trails capturing who initiated discovery, what was discovered, when it occurred, and the results. View discovery audit records directly from the dashboard or drill down into specific discovery instances for detailed status updates.
