EST

EST stands for Enrollment over Secure Transport, it is a certificate management protocol targeting Public Key Infrastructure (PKI) clients which require digital certificates to prove their authenticity. EST also helps the clients in acquiring associated CA certificates. Some prerequisites and features are as follows:

  • There should be an agent (avx_vendor_cert_est_agent) up and running for EST in AppViewX.
  • This EST plugin can either be in HTTPS or HTTP, but it needs a gateway which supports client certificate authentication running in order to communicate with the client.
  • It is highly recommended to keep the 'Approval Required' flag OFF in the Menu > KUBE+ > GROUPS & POLICIES > CA Policy page.