Products
Our Knowledge for your Enterprise PKI
In numerous client projects, we have developed custom solutions because no suitable products were available on the market. By distilling the requirements and drawing on our more than 15 years of project experience, we have created our own products, which we actively maintain and market.
OpenXPKI: which edition meets your needs?
| OpenXPKI Community Edition | OpenXPKI Enterprise Edition | RabbitPKI | |
|---|---|---|---|
| HSM Support | - | ✔️ | - |
| SCEP and EST Enrollment | ✔️ | ✔️ | ✔️ |
| ACME Interface | - | ✔️ | ✔️ |
| OpenXPKI RPC-Interface (flexible API for certificate management) | ✔️ | ✔️ |
✔️ |
| Support of certificate meta data | ✔️ | ✔️ | ✔️ |
| Manual certificate request with dual control | ✔️ | ✔️ | ✔️ |
| Connection to public trust centers | - | ✔️ | - |
| Separation of RA and CA function (configurable) | - | ✔️ | - |
| Module for tenant separation | - | ✔️ | - |
| Integration of Microsoft autoenrollment with an external Module | - | ✔️ | - |
| Detailed product documentation for administrators and developers | - | ✔️ | - |
| Delivered with production-ready configuration | - | ✔️ |
✔️ |
| Additional customization optional | - | ✔️ | - |
| Enterprise-level support from PKI experts | - | ✔️ | ✔️ |
| Support via community mailing list | ✔️ | - | - |
| Licence | Apache License 2.0 | White Rabbit Security Licence | White Rabbit Security Subscription |
| Packages | Debian |
RHEL, SLES |
Docker Image |
FAQ on choosing a PKI:
Depending on complexity and scope, between 4 weeks (Proof of Concept) and several months (Enterprise PKI).
Our goal is to ensure that our customers receive the best solution for their needs. We are confident in our products, which are often our first choice due to their flexible and customizable applications.
However, we always provide manufacturer-independent advice and have experience with many other PKI solutions.
If we determine that another product is more suitable for a specific requirement, we will recommend that product.
Sure. We provide support for OpenXPKI Enterprise Edition and are, of course, here to assist you with a root CA rollover. We are also happy to expand your PKI according to your requirements even after it goes live, and offer a flexible T&M package for this purpose.
We would be happy to host your PKI on our cloud partner’s platform. Contact us!
Yes, OpenXPKI has an import interface for certificates. We envision a PKI within trust domains. The certificate management system is designed to provide an overview of all issued certificates.
Code signing certificates can be flexibly designed to meet specific needs and easily managed in custom profiles using OpenXPKI.
We have developed a high-performance OCSP responder that can be used in conjunction with OpenXPKI Enterprise Edition or as a standalone solution.
OpenXPKI itself runs exclusively on Linux systems, but it is, of course, possible to use OpenXPKI to manage certificates for Windows environments. A complete replacement of the Microsoft CA (ADCS) for the auto-enrollment of domain-joined systems is possible using a third-party product. Please contact us if you would like more details.