Securely manage ACME certificates with Azure Key Vault. Issue, renew, and deploy certificates across your Azure services with production-ready automation.
Everything you need for automated certificate management on Azure
Certificates are stored in Azure Key Vault with managed identity authentication. No secrets to manage.
Automatic certificate issuance and renewal. Set it up once and forget about certificate expiration.
Dedicated web-based dashboard for certificate management. View status, issue and revoke certificates with ease.
Issue certificates for Zone Apex, Wildcard and SANs. Manage multiple domains from a single deployment.
Get notified via Slack, Microsoft Teams, or custom webhooks when certificates are issued or renewed.
Support for Let's Encrypt, ZeroSSL, Google Trust Services, SSL.com, Entrust, and more ACME v2 CAs.
Production-ready on Azure Functions Flex Consumption for modern cloud workloads
Built on Azure Functions Flex Consumption for cost-effective, event-driven scaling in production environments.
Native virtual network integration support for secure private connectivity to internal Azure resources.
Runs on .NET 10 for the latest platform improvements, performance updates, and long-term maintainability.
Deploy certificates across your entire Azure infrastructure
Automatic DNS-01 challenge validation with built-in integrations and custom extensibility
Need another provider? Custom DNS support lets you integrate virtually any DNS service through Azure Functions.
Includes first-class support for popular ACME v2 Certificate Authorities
The most widely used free CA. No additional credentials required.
Free SSL certificates with ACME support and REST API.
Google's public Certificate Authority for trusted certificates.
Commercial CA offering free 90-day certificates via ACME.
Enterprise-grade certificates with ACME automation support.
One-click deployment to your Azure subscription
Production-ready deployment on Azure Functions Flex Consumption with built-in VNET integration support.
Maintenance path for existing deployments. Plan migration to v5 before .NET 8 support ends in November 2026.
Also available on Terraform Registry
Three simple steps to automated certificate management
Choose the v5 Deploy to Azure option and configure your deployment with the Azure Portal wizard.
Grant the managed identity access to your DNS zone for automatic DNS-01 challenge validation.
Use the built-in dashboard to issue your first certificate. Renewals happen automatically.
Thank you for your support of our development
Interested in supporting the project?
Become a SponsorApache License 2.0 — free to use, forever