Sectigo Blog

What is EST (Enrollment Over Secure Transport) protocol?

The Enrollment over Secure Transport protocol (EST) is a protocol for automating x.509 certificate issuance for public key infrastructure (PKI) clients, like web servers, endpoint devices and user identities, and for any other place PKI certificates are used, as well as the associated certificates from a trusted Certificate Authority (CA). The EST protocol is defined in RFC 7030 and standardizes an authenticated request and response exchange process with the CA, making it more secure as well as faster and easier for IT teams to deploy certificates on systems and devices than manually communicating the required information.

Sectigo Team
Figure: The certificate enrollment process using EST