# AEYRiX > AEYRiX builds MIPS (Machine Identity Protection) — enterprise certificate lifecycle automation delivered as a native scoped application on ServiceNow. MIPS runs the full certificate lifecycle (request, approve, issue, install, monitor, renew, revoke, decommission) inside your ServiceNow instance and orchestrates issuance and installation with CyberArk Certificate Manager. ## What MIPS is - **Category:** Enterprise Certificate Lifecycle Automation for ServiceNow (machine identity operations). - **Delivery:** A certified, native scoped application that runs inside the customer's own ServiceNow instance. It reuses existing ServiceNow catalog, workflows, approvals, CMDB, users and groups rather than introducing a separate system of record. - **Backend orchestration:** MIPS orchestrates certificate issuance and installation with CyberArk Certificate Manager, across self-hosted and cloud certificate environments. - **Availability:** Listed and certified on the ServiceNow Store; deployed and supported by AEYRiX. ## Core capabilities - Full certificate lifecycle: request, approval, issuance, installation, monitoring, renewal, revocation, decommission. - Self-service and CSR-based certificate requests through the ServiceNow Service Catalog, with automated policy validation (approved-domain, naming and SAN checks). - Automated and on-demand renewal, including renew-and-install chaining; bulk request, renewal and revocation. - Automated certificate installation to supported enterprise endpoints (specific endpoints and bulk operations vary by deployment model). - Certificate inventory and keystore/installation-location inventory mapped to CMDB applications and configuration items. - Ownership and governance: owner, support and approval groups; role-based access; change-management gating; incident creation for near-expiry certificates. - Expiry monitoring with escalating alerts; customizable dashboards and reporting; complete audit trail. - Reverse synchronization: changes made in the certificate platform sync back into ServiceNow. - Multi-environment support: connect multiple self-hosted and cloud certificate environments simultaneously. ## Why it matters (the 47-day era) The CA/Browser Forum has mandated that maximum TLS certificate lifetimes fall from 398 days to 200 days (March 2026), 100 days (March 2027) and 47 days (March 2029). Shorter lifetimes make manual certificate management impractical at enterprise scale, requiring automation to prevent expiry-related outages and maintain compliance. ## Who it is for CISOs and security leadership, PKI and machine-identity leaders, ServiceNow platform owners, infrastructure and IT operations teams, and audit, risk and compliance teams — typically in regulated, security-focused enterprises (banking and financial services, insurance, healthcare, government, utilities, telecommunications, manufacturing and technology). ## Resources - Datasheet: https://aeyrix.com/reference/public/aeyrix-datasheet.pdf - Whitepaper (PKI best practices): https://aeyrix.com/reference/public/aeyrix-whitepaper.pdf - ServiceNow Store listing: https://store.servicenow.com/store/app/c239a3ae1be06a50a85b16db234bcbe4 ## Contact - Website: https://aeyrix.com/ - Sales: sales@aeyrix.com