---
title: Keyfactor Command Reviews
meta_title: 'Keyfactor Command Reviews 2026: Details, Pricing, & Features | G2'
meta_description: Filter 85 reviews by the users' company size, role or industry to
  find out how Keyfactor Command works for a business like yours.
aggregate_rating:
  rating_value: 4.5
  review_count: 85
  scale: '5'
date_modified: '2026-08-04'
parent_category:
  name: Confidentiality
  url: https://www.g2.com/categories/confidentiality
---

# Keyfactor Command Reviews
**Vendor:** Keyfactor  
**Category:** [Certificate Lifecycle Management (CLM) Software](https://www.g2.com/categories/certificate-lifecycle-management-clm)  
**Average Rating:** 4.5/5.0  
**Total Reviews:** 85
## About Keyfactor Command
Keyfactor Command is a certificate lifecycle management solution that enables organizations to discover, control, and automate the lifecycle of keys and digital certificates across their IT landscape. It&#39;s the only solution that can be deployed on-premise, in the cloud, in a hybrid model, or in combination with a fully hosted PKI as a Service. The solution is also available in the Azure and AWS Marketplaces.




## Keyfactor Command Reviews
  ### 1. Centralized Certificate Management, But Complex Installation

**Rating:** 4.0/5.0 stars

**Reviewed by:** Abdelbasset H.

**Reviewed Date:** July 15, 2026

**What do you like best about Keyfactor Command?**

I appreciate the simplicity of actions in Keyfactor Command and the quality of the dashboard. This allows me to quickly access important information and identify certificates that require special attention. The reduction of operation time through automatic actions is also an advantage, as it limits the risk of human errors.

**What do you dislike about Keyfactor Command?**

I find that the installation process of Keyfactor Command is complex. The initial setup requires several prerequisites compared to some competing solutions. I have not been able to install the Keyfactor Orchestrator so far. Regarding the Command, I couldn't log into the portal with my AD account, only with Keycloak. There is a communication issue between the portal and the Orchestrator instance, for which I have already opened a ticket.

**What problems is Keyfactor Command solving and how is that benefiting you?**

I use Keyfactor Command to eliminate manual processes, automatically manage the certificate lifecycle, and improve visibility on all certificates. This reduces operation time, limits human errors, and centralizes management in a single solution.

  ### 2. User-Friendly Interface, Easy Certificate Management

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User | Small-Business (50 or fewer emp.)

**Reviewed Date:** April 30, 2026

**What do you like best about Keyfactor Command?**

I like Keyfactor Command for its easy certificate management and efficient API calls for certificate enrollment. The user-friendly interface is a big plus, making it simple to manage different CAs certificates on a single platform. I can create multiple dashboards with certificate collections to share with management, and I appreciate the reporting and dashboard features. The initial setup was straightforward, provided you know about your ADCS.

**What do you dislike about Keyfactor Command?**

Setting up SSO for Keyfactor Command isn’t easy and can be quite complex. I rely on the support team when trying to integrate SSO using PingFederate.

**What problems is Keyfactor Command solving and how is that benefiting you?**

I find Keyfactor Command makes certificate management easy and efficient, especially with API calls for certificate enrollment. Its user-friendly interface lets me manage different CAs in one platform and create dashboards to share with management.

  ### 3. Effortless Certificate Management with Powerful SSL Discovery

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Hospital & Health Care | Mid-Market (51-1000 emp.)

**Reviewed Date:** October 29, 2025

**What do you like best about Keyfactor Command?**

The SSL discovery feature is highly effective at locating and cataloging all of our certificates throughout the network. It is also very convenient for our users to request and manage their own certificates, and having the ability to oversee all our certificates from a single platform makes management much simpler.

**What do you dislike about Keyfactor Command?**

I really dislike having to add endpoints manually as certificate stores. I wish Keyfactor offered a way to automatically pull our machines, either from Active Directory or another method that doesn't rely on using a CSV file. It would be great if this could be accomplished through the SSL discovery process itself.

**What problems is Keyfactor Command solving and how is that benefiting you?**

By centralizing our certificates, we can avoid missing expirations that could lead to P1 downtime. I also appreciate the capability to automate both the renewal and installation of certificates on our endpoints.

  ### 4. Certificate lifecycle management made easy

**Rating:** 3.5/5.0 stars

**Reviewed by:** Verified User in Manufacturing | Enterprise (> 1000 emp.)

**Reviewed Date:** September 30, 2025

**What do you like best about Keyfactor Command?**

Once implemented, KF Command provided our end users with one centralized location to manage their certificates.  This tool has automated numerous formerly manual processes.

**What do you dislike about Keyfactor Command?**

There is a learning curve to implementation of the tool, and we have identified a few bugs that end up being a feature request to resolve.

**What problems is Keyfactor Command solving and how is that benefiting you?**

Our previous CLM strategy was completely manual.  KF Command allowed my team to automate numerous steps in the CLM process.  This frees up my team to focus on other tasks and empowers our end users to take ownership of their certificate needs without reliance on our support.

  ### 5. Engineer

**Rating:** 4.0/5.0 stars

**Reviewed by:** Mike C. | Engineer, Enterprise (> 1000 emp.)

**Reviewed Date:** October 01, 2025

**What do you like best about Keyfactor Command?**

It’s a good solution for certifications and secret many

**What do you dislike about Keyfactor Command?**

User interface is not as intuitive as I would like

**What problems is Keyfactor Command solving and how is that benefiting you?**

Certificate management

  ### 6. Keyfactor Command enables us to deliver!

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Manufacturing | Enterprise (> 1000 emp.)

**Reviewed Date:** June 20, 2025

**What do you like best about Keyfactor Command?**

The tracking and automation of our certificate monitoring, renewal and notification workflows. I also like the excellent support and product features, as they help me manage our significant numbers of certificates across our IT landscape.

**What do you dislike about Keyfactor Command?**

Some features are buried quite deep in the software, which is sometimes making it hard to find what I need.

**What problems is Keyfactor Command solving and how is that benefiting you?**

The tracking and maintaining of certificate lifecycles helps us to mitigate risks and outages, which is enabling us to stay in control in a proactive way, instead of a reactive way.

  ### 7. Great Open-Source Support, But Windows Architecture Needs Improvement

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Semiconductors | Enterprise (> 1000 emp.)

**Reviewed Date:** October 31, 2025

**What do you like best about Keyfactor Command?**

Open-source, good support and friendly experienced personnel

**What do you dislike about Keyfactor Command?**

Internal Windows architecture. E.g. IIS.

**What problems is Keyfactor Command solving and how is that benefiting you?**

ACME automation

  ### 8. Keyfactor Command

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Insurance | Enterprise (> 1000 emp.)

**Reviewed Date:** October 07, 2025

**What do you like best about Keyfactor Command?**

Good functionality and self service capabilities

**What do you dislike about Keyfactor Command?**

Long release cycles can make it difficult to resolve issues quickly

**What problems is Keyfactor Command solving and how is that benefiting you?**

Internal certificate management

  ### 9. Decent System

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Financial Services | Enterprise (> 1000 emp.)

**Reviewed Date:** June 19, 2024

**What do you like best about Keyfactor Command?**

Centralized storage of certificates - including private keys.
Ability to generate and request certificates.
Decent web interface for basic search, import, export, requests.

**What do you dislike about Keyfactor Command?**

Poor web interface for customization, reporting, dashboards.
Incredibly difficult to set up network scanning with accurate details.
Customer support is slow to respond.  Struggles to assign ticket to correct personelle.

**What problems is Keyfactor Command solving and how is that benefiting you?**

Centralization of certificate requests, and key storage.

  ### 10. KeyFactor Experience

**Rating:** 3.5/5.0 stars

**Reviewed by:** Verified User in Banking | Enterprise (> 1000 emp.)

**Reviewed Date:** June 20, 2024

**What do you like best about Keyfactor Command?**

Single pane of glass for multiple Certificate Authorities

**What do you dislike about Keyfactor Command?**

Upgrades hasn't been seamless. Error messages hasn't been useful to diagnose the issue.

**What problems is Keyfactor Command solving and how is that benefiting you?**

Manage Certificate Issuance, Expiry Notification, Monitoring CRL's,

  ### 11. Review of Keyfactor PKIaaS Offering

**Rating:** 3.5/5.0 stars

**Reviewed by:** Verified User in Insurance | Enterprise (> 1000 emp.)

**Reviewed Date:** May 22, 2023

**What do you like best about Keyfactor Command?**

Most components are in the cloud & managed by Keyfactor. Just a few Windows servers are needed to complete the infrastructure.

**What do you dislike about Keyfactor Command?**

Most changes are completed by the vendor, usually at their pace, not the customers.

**What problems is Keyfactor Command solving and how is that benefiting you?**

We had no internal PKI until deploying Keyfactor. ALL certs were signed by public CA. Now we can utilize Keyfactor internal PKI/CA to sign internal certs and lower public CA costs.

**Official Response from Warsan  Ahmed:**

> Thank you for sharing your experience with Keyfactor Command. We're glad to hear that you appreciate the convenience of having most components in the cloud. We understand your concern about changes being completed at the vendor's pace and not the customers'. We will work on improving our communication and responsiveness to better meet your needs. 

It's great to hear that Keyfactor Command has helped you establish an internal PKI/CA, reducing costs associated with public CAs. If you have any further feedback or need assistance with anything, please don't hesitate to reach out. We value your input and are committed to providing the best service possible.

  ### 12. Limited time working in KeyFactor

**Rating:** 3.5/5.0 stars

**Reviewed by:** Henry C. | Mid-Market (51-1000 emp.)

**Reviewed Date:** March 23, 2023

**What do you like best about Keyfactor Command?**

Does it job without much management, which is good for teams with busy schedules.

**What do you dislike about Keyfactor Command?**

Keyfactor support, not sure if staff got decreased but support time to resolve an issue takes longer.

**What problems is Keyfactor Command solving and how is that benefiting you?**

Helps by sending sending email reminders about what certs will expire.

  ### 13. Keyfactor Command to replace Microsoft ADCS Two-Tier PKI

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Food & Beverages | Enterprise (> 1000 emp.)

**Reviewed Date:** October 13, 2021

**What do you like best about Keyfactor Command?**

Automation workflows and capabilities: standard Microsoft PKI services do not provide means to automate certificate deployment beyond auto-enrolment, which only works on domain-joined devices.  Besides this critical point, Keyfactor solved another pressing issue we had which is the notification of expired certificates to solution owners.

**What do you dislike about Keyfactor Command?**

The web interface can be improved to make it more user friendly

**What problems is Keyfactor Command solving and how is that benefiting you?**

By using Keyfactor Command we do not rely any longer on infrastructure we had to manage in-house (several VMs, patching, management, and administration), and we can focus on running a PKI.   
We have a complete picture of all our certificates through scanning our infrastructure and importing existing certificates from the existing environment. We can then take several actions on these certificates via Orchestrators servers.

  ### 14. If there is a need to manage many servers that require certs, using Keyfactor will help.

**Rating:** 4.0/5.0 stars

**Reviewed by:** Bernard T. | Mid-Market (51-1000 emp.)

**Reviewed Date:** December 11, 2020

**What do you like best about Keyfactor Command?**

What we like best is having a workflow system makes management easier including the use of automation. We are hoping manual intervention will become a thing of the past and allow my team to run infrastructure as code.

**What do you dislike about Keyfactor Command?**

What we dislike is understanding the security segregation for users vs. features. It may cause issues where one group makes a change and will affect another group. There will be at a minimum 4 to 5 different business units using this system managing over a thousand servers and devices. Any accidental changes will have a major impact on many systems. What my team was hoping for as well was more integration for hardware devices like switches, computing gear, phones, etc.

**Recommendations to others considering Keyfactor Command:**

For automation, that you have existing tools or skillset to expand it's capabilities.

**What problems is Keyfactor Command solving and how is that benefiting you?**

The problem we are solving is our ability to manage multiple certs and servers. Business units to manage their own certs and servers. This will allow our company to be more agile and lessen the strain on a single team to manage all of the certificates.

**Official Response from Ryan Sanders:**

> Hi Bernard,

Thank you for taking the time to review Keyfactor! We are glad Keyfactor Command has helped you manage certificates across many servers.

Regarding your concern about features vs users, using security roles and permissions you can limit access that individuals or groups have by feature and functionality. For best practices with roles and permissions, please reach out to your customer success representative.

Regarding your concern about integrations, our new dedicated Integration Team is working hard to build even more ecosystem integrations with hardware, appliances, and apps in the months ahead.

We will continue to announce these as they are made available and encourage you to reach out to our support team to share your feature and integration requests.

Thanks,

The Keyfactor Team

  ### 15. Keyfactor is a great product that help us managed and secured our environments and applications.

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Financial Services | Mid-Market (51-1000 emp.)

**Reviewed Date:** December 11, 2020

**What do you like best about Keyfactor Command?**

I like that we have a centralize certificates storage that we can manage and provide us secure certificate creation. Furthermore, the reporting (collections) and workflows to automate our process and make our IT Admin life easier as before we have to generate certificates and make sure we have to keep it somewhere safe. We have to remember to renew it since we don't have any alerting system or reporting tool.

**What do you dislike about Keyfactor Command?**

The downsides with Key factor is that it doesn't auto mate the installing  and deploying the new certificates created to different end-points. It currently only support a handful (such as F5, IIS, Key Vault) but we still have come up with workflow/automation on our end for other non-support end-points.

**What problems is Keyfactor Command solving and how is that benefiting you?**

Keyfactor Command are solving problems with centralize certificate storages, reporting, workflow, and discovering any certificates on our environments. Also, the most important thing was it is more secured, it provide us better certificates than the our own certificate creation (SHA1) that we have been using.  Everything is being kept in one place that we can audit and manage.  Overall, it is a great product that have help us be more secured and increased our productivity since we don't have to manually create certificates and do reporting for audit.

  ### 16. Keyfactor 8 and beyond webinar

**Rating:** 4.0/5.0 stars

**Reviewed by:** Josh L. | Enterprise (> 1000 emp.)

**Reviewed Date:** October 22, 2020

**What do you like best about Keyfactor Command?**

Discovery and automation features for SSL. In addition, the upgrade process has become easier with recent versions. I get very fast response when I reach out to our customer success manager, but often have slow response when going through normal support channels.

**What do you dislike about Keyfactor Command?**

It's sometimes difficult to find troubleshooting documentation when I experience a problem. I also often wait for a day or two to get a response when I open a ticket.

**What problems is Keyfactor Command solving and how is that benefiting you?**

So far have been using it for reporting and alerting, but plan to start utilizing ssl discovery and automation features, as well as API integration with Service Now and CyberArk

**Official Response from Ryan Sanders:**

> Hi Josh,

Thanks for taking the time to review Keyfactor! We’re happy to hear that you have had a positive experience with Keyfactor Command and customer success.

Regarding your concerns with support response, this is unusual. Please contact your customer success representative to report slow response. We take our service levels and response rates very seriously.

We’re thrilled to know that you’re looking to utilize more features, including SSL/TLS discovery, automation, and API integrations with CyberArk and ServiceNow. 

I recommend you contact your customer success representative to schedule your annual PKI Health Check. That way you can review best practices and recommendations to roll out these new capabilities.

Thanks,

The Keyfactor Team

  ### 17. Making Self Service PKI Possible

**Rating:** 3.5/5.0 stars

**Reviewed by:** Verified User in Retail | Enterprise (> 1000 emp.)

**Reviewed Date:** November 19, 2020

**What do you like best about Keyfactor Command?**

Our ability to easily streamline the enrollment and management of PKI certificated across multiple areas of our enterprise.

**What do you dislike about Keyfactor Command?**

THe UI is not the most user intuitive, it does require us putting together very detailed how to guides.  Users commonly have questions about how to complete parts of the enrollment or renewal functions based on the non-intuitive UI.

**What problems is Keyfactor Command solving and how is that benefiting you?**

The largest benefit was our ability to allow the Enterprise Security team the ability to monitor, approve, track, revoke and review all digital certificates.  This had been a manual process done by Windows Administrators in the past with very little ability to monitor or have security oversight into what certificates were being issued.

**Official Response from Ryan Sanders:**

> Thanks for taking the time to review Keyfactor! We’re glad you and your team have had a great experience with Keyfactor Command.

With your concern regarding the interface, we are excited to release a new refreshed UI and in-application help with Keyfactor 8. You can learn more in the URLs provided below:

https://blog.keyfactor.com/whats-new-keyfactor-8 

https://blog.keyfactor.com/ui-improvement-keyfactor-8 

We’ll continue to update the new UI, which is even more flexible, customizable, and easy to navigate for your users. We'd love to hear more feedback on your experience with the UI, please reach out to our support team.

Thanks,

The Keyfactor Team

  ### 18. KeyFactor Command

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Information Technology and Services | Enterprise (> 1000 emp.)

**Reviewed Date:** November 24, 2020

**What do you like best about Keyfactor Command?**

The ease of administering and utilizing the application

**What do you dislike about Keyfactor Command?**

I don't have anything at the moment I dislike.

**What problems is Keyfactor Command solving and how is that benefiting you?**

after clean upgrade, previously scheduled reports are not running.


## Keyfactor Command Discussions
  - [What is certificate life cycle management?](https://www.g2.com/discussions/what-is-certificate-life-cycle-management)
  - [Who owns Keyfactor?](https://www.g2.com/discussions/who-owns-keyfactor)
  - [What is Keyfactor API?](https://www.g2.com/discussions/what-is-keyfactor-api)
  - [What is keyfactor Command?](https://www.g2.com/discussions/what-is-keyfactor-command)

- [View Keyfactor Command pricing details and edition comparison](https://www.g2.com/products/keyfactor-command/reviews?filters%5Bnps_score%5D%5B%5D=4&section=pricing&secure%5Bexpires_at%5D=2026-08-04+13%3A05%3A46+-0500&secure%5Bsession_id%5D=9f420c65-502b-4a4f-a44d-56cd6a442b50&secure%5Btoken%5D=9f92cf5496daf78203defa9d01d0aa9cbdedb294c012d7173c4e276e2b55d559&format=llm_user)
## Keyfactor Command Integrations
  - [F5 SSL Orchestrator](https://www.g2.com/products/f5-ssl-orchestrator/reviews)
  - [IBM Vault (formerly HashiCorp Vault)](https://www.g2.com/products/ibm-vault-formerly-hashicorp-vault/reviews)
  - [IIS 10 on Windows 2019](https://www.g2.com/products/iis-10-on-windows-2019/reviews)
  - [Keyfactor EJBCA®](https://www.g2.com/products/keyfactor-ejbca/reviews)
  - [Microsoft Entra ID](https://www.g2.com/products/microsoft-entra-id/reviews)

## Keyfactor Command Features
**Functionality**
- Durability
- Envelope Encryption
- Automation

**Functionality**
- Certificate Discovery
- Expiration Monitoring
- Automated Certificate Operations
- Policy And Role-Based Access Controls
- Workflow
- Protocol Support
- Reporting And Search
- Audit And Enforcement
- Key Storage

**Availability**
- API/Integrations
- Service Integration
- Regional Support
- Scalability

**Administration**
- API / integrations

**Administration**
- Auditing
- Compliance
- Management Console

## Top Keyfactor Command Alternatives
  - [AppViewX CERT+](https://www.g2.com/products/appviewx-cert/reviews) - 4.5/5.0 (44 reviews)
  - [DigiCert ONE](https://www.g2.com/products/digicert-one/reviews) - 4.3/5.0 (71 reviews)
  - [Sectigo Certificate Manager](https://www.g2.com/products/sectigo-certificate-manager/reviews) - 4.5/5.0 (191 reviews)

