---
sourceDocument: Yokohama IT Operations Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/yokohama/it-operations-management

 Release :

    - yokohama

ft:locale :

    - en-US

ft:publication_title :

    - Yokohama IT Operations Management

ft:clusterId :

    - itom

bundleId :

    - itom

workflow :

    - Technology


---

# ACME integration with KeyFactor EJBCA for automated flows

# ACME integration with KeyFactor EJBCA for automated flows {#ariaid-title1}

* Release version: Yokohama
* 
* Updated July 20, 2025
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

Automate the flow of requesting, renewing,
and revoking your certificates by integrating Keyfactor EJBCA with the Automated Certificate
Management Environment (ACME).
Keyfactor EJBCA is a certificate authority that issues your certificates. ACME are a set of
protocols and rules that give you a secure environment to use an automated flow of managing
certificates.

By configuring your routing policy fields, you can ensure that the content in your Certificate
Signing Request (CSR) aligns with the correct routing policy. This streamlines the process of
requesting, renewing, and revoking your certificates.

EJBCA has two types of Credentials. One includes External Account Binding (EAB), and the other
doesn't.

In EJBCA, automated certificate workflows start when you create routing policies for EJBCA
ACME Certificates. For every routing policy, there are required fields where you have to give
information.

Your platform has routing policies where you fill in all the fields of the routing policy.
Your platform
aligns
that information to each CSR you create to request, renew, and revoke certificates.

For more information, see [Create a routing policy for EJBCA ACME certificates](https://servicenow-prod.fluidtopics.net/Gij7jfag1OcaRBpMRfk50Q "Automate your EJBCA ACME workflows by creating a routing policy that aligns with your Certificate Signing Requests (CSRs) to request, renew, and revoke certificates.").

Related links:

The following pages enable you to use EJBCA ACME to automate your certificate life cycle:

1. [Create a Connection \& Credential alias](https://www.servicenow.com/docs/access?context=connection-alias&version=yokohama&pubname=yokohama-platform-security&ft:locale=en-US)
2. [Configure your base API URL for EJBCA ACME](https://servicenow-prod.fluidtopics.net/1eJeTly5kJp0Lm067tqxMA "Configure your base API URL for EJBCA ACME to your organization's root URL address.")
3. [Validate your EJBCA ACME base API URL](https://servicenow-prod.fluidtopics.net/XVlTdHGFj2gpZ3P2hbdVqQ "Validate that your base API URL for EJBCA ACME has been updated to your organization's root URL address.")
{#automate-certificates-ejbca-acme__ol_km5_h5d_1gc}

