Chainloop Partners with Keyfactor to Bring Enterprise-Grade Security to Your Supply Chain

We're thrilled to announce our partnership with Keyfactor, a global leader in digital trust, PKI-as-a-Service, and cryptographic key management. By joining forces, Chainloop and Keyfactor deliver enterprise-grade security solutions that simplify and automate critical processes in the software supply chain.

Introducing New Integrations with EJBCA and SignServer

Through this partnership, we've integrated the Chainloop metadata storing platform with Keyfactor's enterprise PKI solutions, EJBCA and SignServer. These integrations will allow organizations to collect, verify, trust, and protect the metadata generated by their Software Supply Chain.

Today, we are introducing two integrations: Remote signing with Keyfactor's SignServer, and Local signing with Keyfactor's EJBCA using ephemeral certificates. To learn more about the integration and how it works, check out the in-depth blog post on "Software Supply Chain Compliance and Security policies with SignServer, EJBCA, and Chainloop".

Key Benefits

By integrating Keyfactor's SignServer and EJBCA, our customers gain even greater peace of mind:

  • Enhance Security: Use Keyfactor's SignServer for secure, widely adopted, enterprise-grade attestation signing.
  • Streamline Certificate Management: Access EJBCA's comprehensive certificate management system, which is trusted by enterprises worldwide.
  • Minimal Configuration Required: Enjoy added trust and security with minimal setup, whether you're using Chainloop Open Source or the Chainloop Platform.

What This Means for Chainloop Users

At Chainloop, we help organizations automate compliance and secure their software development lifecycle. Partnering with an established and trusted enterprise leader like Keyfactor brings additional depth to our offering. It allows us to offer the kind of robust digital signing and verification enterprises expect.

This partnership also benefits existing Keyfactor users, as they now have access to a comprehensive and easy-to-use software delivery platform designed for automated security and compliance.

A Big Step Forward for Chainloop's Journey

This partnership is a significant step forward for Chainloop as we continue to grow and evolve our product offerings. With Keyfactor Sign Server and EJBCA now available across both Chainloop Open Source and our commercial Chainloop Platform, we're bringing enterprise-grade security to users at every stage of their software development lifecycle—whether they're just starting or managing at scale.

Join Us in Stockholm!

If you're in Stockholm during the week of September 23rd to 26th, 2024, we'd love to meet you in person! We'll be attending the Keyfactor Community Tech Meetup. It's a fantastic opportunity to talk all things security, DevSecOps, and the future of Chainloop. Don't miss it!

Get Started Today

Stay tuned for more updates in the coming weeks. If you're curious to see this in action, we encourage you to book a demo or join our Design Partner Program today!