TrustRadius: an HG Insights company

Venafi Control Plane for Machine Identities

Score6 out of 10

4 Reviews and Ratings

What is Venafi Control Plane for Machine Identities?

Venafi, headquartered in Salt Lake City, protects machine identity types by orchestrating cryptographic keys and digital certificates for SSL/TLS, code signing, mobile and SSH.

Venafi Is The Best Solution For Private Key and Certificate Management

Pros

  • Venafi includes features that automate the installation of certificates as well as validating the certificates to ensure that they were installed correctly. When used properly this feature will prevent certificate related outages by confirming that a valid certificate is in place and automatically installed prior to its expiration.
  • Venafi includes an option for network discovery, host agents, and an onboard discovery tool that when deployed gives application owners the ability to discover and manage all private keys and certificates in their environment.
  • Venafi helps an organization with its security policy enforcement and provides a method to measure compliance.

Cons

  • The Venafi platform is constantly evolving through its upgrades which occur every quarter to meet client's specific needs. This is an outstanding model however the documentation that follows the upgrades could be more thorough.

Return on Investment

  • An outage is a very devastating event to any large corporation and can cost millions. Venafi's ability to prevent these outages has proven to be a great return on investment for our environment and has helped protect the bottom line.
  • Venafi automates certificate installation with an included feature to schedule the install in advance. This is a great benefit of the tool because it eliminates human error and prevents any forgotten or overlooked certificates to be renewed. After installation Venafi will also validate the certificate to confirm that it has been installed properly. This shows just how thorough this tool really is.
  • Security compliance is of the utmost importance in a large organization for auditing purposes and certificate security policies but at times can prove to be difficult to enforce. Venafi has proven to play a pivotal role in enforcing these policies in our environment.

Venafi is the best choice for complete Digital Certificate Lifecycle Management

Pros

  • Digital Certificate Inventory Management and Monitoring
  • Digital Certificate Lifecycle Processes to include ownership and roles and responsibilities
  • Easy automation integration into many common products
  • Certificate Trust Store Management

Cons

  • Exporting of Data to other reporting tools
  • They should create a an OCSP option as Microsoft's implementation is poor
  • Continue to improve their custom adaptor tool

Return on Investment

  • The biggest impact is preventing costly outages due to expired or compromised certificates
  • The second biggest advantage is the savings in operational costs related to the implementation and renewal of certificates
  • The biggest negative is the initial cost and start up of implementing Venafi.