: Cloud Keystores Overview
Focus
Focus

Cloud Keystores Overview

Table of Contents

Cloud Keystores Overview

Cloud Keystores allow Next-Gen Trust Security to manage certificates stored in supported cloud environments. After you configure a Cloud Provider connection, you can add one or more cloud keystores to enable certificate provisioning, discovery, and lifecycle management within your cloud platform.
A Cloud Keystore represents a specific certificate store within a connected cloud provider. Once added, Next-Gen Trust Security can:
  • Discover existing certificates stored in the keystore
  • Provision new certificates directly into the keystore
  • Monitor certificate status and expiration
  • Apply governance and policy controls consistently

Cloud Provider vs. Cloud Keystore

Before adding a Cloud Keystore, you must first configure the corresponding Cloud Provider connection. The Cloud Provider connection establishes authentication and permissions between Next-Gen Trust Security and your cloud environment.
After the provider connection is configured, a Cloud Keystore defines the specific location where certificates are stored and managed.
The typical workflow is:
  1. Configure a Cloud Provider connection.
  2. Add a Cloud Keystore.
  3. Run discovery or configure a schedule.
  4. Provision certificates as needed.

Supported Cloud Platforms

You can add Cloud Keystores for the following providers: