TrustRadius: an HG Insights company

AWS Certificate Manager

Score7.1 out of 10

54 Reviews and Ratings

What is AWS Certificate Manager?

AWS Certificate Manager is a service that lets users provision, manage, and deploy public and private Secure Sockets Layer/Transport Layer Security (SSL/TLS) certificates for use with AWS services and internal connected resources.

AWS Certificate Manager free and easy to integrate SSL certificates

Use Cases and Deployment Scope

We use AWS Certificate Manager extensively both with private certificates uploaded to it and with ACM generated ones.

It allows us to have end to end encryption between EC2 servers and Load Balancers and CDN.

Pros

  • easy to generate ssl certificates
  • free ssl certificates
  • ability to import private ssl certificates
  • integrates well with other AWS services

Cons

  • would be great to be allowed to download certificates generated by ACM

Return on Investment

  • switching from paid expensive SSL certificates to free ones generated by ACM
  • quick deployment and validation of certificates
  • integration with other AWS services

Alternatives Considered

Let's Encrypt

Other Software Used

Let's Encrypt, PhpStorm, ChatGPT, Google Gemini, GitHub Copilot, AWS Backup, AWS Auto Scaling, Amazon Q, AWS CodeDeploy, Amazon CodeWhisperer

AWS Certificate manager (ACM) : SSL certificate management

Use Cases and Deployment Scope

We're using AWS Certificate Manager to Issue, renew and manage SSL Certificates in AWS Cloud. It was difficult for us to use SSL Certificates issues by third-party vendors and implement SSL on AWS Services. AWS Certificate Manager made it easier using it we can easily implement SSL on all other AWS Services such as EC2, ELB, CloudFront, Lambda, etc.

Pros

  • Issue, Renew and Validate SSL Certificates.
  • Allows us to integrate it with other AWS Services.

Cons

  • It doesn't support automatic domain verification with other domain name services.
  • Limited to AWS only, Certificates issued by ACM can be used with AWS managed services only.
  • If you are having multi-region infrastructure then you'll need to issue an SSL certificate for a domain in each region.

Most Important Features

  • Implementation of SSL in managed AWS services in a single click!
  • Free SSL certificates, No need to pay for Certificates and no maintenance required.
  • ACM can validate and issue an SSL Certificate in a single click If your domain is managed by Route53.

Return on Investment

  • We're saving our spent on SSL certificates As it dosen't costs at all.
  • Limited to AWS only, Certificates issued by ACM can be used with AWS managed services only.
  • It doesn't support automatic domain verification with other DNS management systems.

Alternatives Considered

GoDaddy and Cloudflare

A simple solution for the AWS Cloud

Pros

  • Ease of use
  • Great integration with other AWS services
  • Public certificates are free

Cons

  • It would be great if it integrated with other domain name services from domain validation
  • EC2 and other compute services integration with custom domain

Return on Investment

  • It reduced the cost of certificates renewal
  • It reduced the time to obtain and manage a certificate for other AWS Services

Alternatives Considered

Sectigo SSL Certificates (formerly Comodo CA) and RapidSSL

Other Software Used

Amazon Route 53, AWS Lambda, Amazon API Gateway

Simple and effective

Pros

  • Easy to use interface
  • Really straight forward functionality
  • Simple and effective

Cons

  • Sometimes ACM certificates don't work with ELB.
  • No automatic alert on certificate expiration.

Return on Investment

  • Simplifies certificate management inside AWS stack.
  • It works, so one less thing to worry about.

Usability

Other Software Used

Amazon Elastic Load Balancing, Amazon Elastic Compute Cloud (EC2), Amazon S3 (Simple Storage Service)

Reduces the time in setting up a secure website

Pros

  • AWS has everything that we need to set up an enterprise application and website.
  • The domain name validation has two types, email based and DNS approach.
  • The certificate can be used in AWS ELB and archive the secure HTTPS website.
  • Setup is really simple, hardly involves 3-4 steps.

Cons

  • Domain name validation is time consuming, and requires manual effort.
  • Domain name validation could be avoided if the domain provider is AWS, they can validate it internally.

Return on Investment

  • It's a good certificate manager.

Other Software Used

GoToMeeting