Define approved root and intermediate sets.
Certificate lifecycle automation protects the certificates you present. Trust Store Management helps control the roots and intermediates your infrastructure accepts.
Trust anchors tend to accumulate across servers until nobody can answer where a root is trusted or what will break if it is removed. SSLNexus gives operators approved trust bundles, discovery, provisioning state and drift visibility using existing managed targets.
Define approved root and intermediate sets.
Compare observed trust against intended state.
Apply approved trust with guardrails.
SSLNexus is installed into customer infrastructure and is designed to keep certificate operations, target access and private-key custody under customer control. The platform coordinates lifecycle work without requiring the estate to be rebuilt around a vendor-hosted key store.
No. Trust Store Management is for public root and intermediate CA certificate material.
No. Exclusions create drift visibility, and automatic removal is constrained so vendor/OS-managed roots are not silently deleted.
Yes. Trust anchors are connected into Dependency & Impact so operators can identify known trust relationships before changes.