No more typing reviews! Try our Samantha, our new voice AI agent.

DigiCert PKI Platform vs Microsoft Entra ID comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Aug 11, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

DigiCert PKI Platform
Ranking in Authentication Systems
24th
Average Rating
9.6
Reviews Sentiment
7.5
Number of Reviews
2
Ranking in other categories
No ranking in other categories
Microsoft Entra ID
Ranking in Authentication Systems
1st
Average Rating
8.6
Reviews Sentiment
7.0
Number of Reviews
276
Ranking in other categories
Single Sign-On (SSO) (1st), Identity Management (IM) (2nd), Identity and Access Management as a Service (IDaaS) (IAMaaS) (1st), Access Management (1st), Microsoft Security Suite (2nd)
 

Mindshare comparison

As of May 2026, in the Authentication Systems category, the mindshare of DigiCert PKI Platform is 1.6%, up from 1.4% compared to the previous year. The mindshare of Microsoft Entra ID is 6.5%, down from 15.9% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Authentication Systems Mindshare Distribution
ProductMindshare (%)
Microsoft Entra ID6.5%
DigiCert PKI Platform1.6%
Other91.9%
Authentication Systems
 

Featured Reviews

Indra Maulana - PeerSpot reviewer
Business Solution and Development Manager at PT ADPS
Tailored to the lifecycle management needs of banks
The customer finds value in adopting a platform from Jira, particularly for the ease it brings to their processes, both for on-premises operations and batch processing. Their objective is to create a new customized server specifically designed for generating certificates. This server is intended for the generation of certificates, emphasizing that it is not meant for free domain replacement. The platform of choice for this purpose is Digital One, a product that offers full customization and aligns well with the customer's preference for tailored solutions. The process of certificate issuance from Microsoft's AB involves renewal or replacement every five years. However, an issue arises in that this particular certificate requires renewal annually instead of the standard five-year cycle. The challenge is attributed to personnel changes, where an administrator responsible for the process resigns within the five-year period. To address this, we seek an automated solution that operates seamlessly with a single sign-on approach, eliminating the need for user IDs or passwords. The automation involves approval and subsequent deployment without complexities. Being a partner of DigiSet, we rely on the implementer for support in service deployment, installation, and resolution of any issues that may arise.
Stafin Jacob - PeerSpot reviewer
Microsoft 365 Security & Compliance Practice Lead at Invoke
Identity has become our central gatekeeper and has provided secure single sign-on for all users
Microsoft Entra ID can improve by focusing more on new passwordless methods and becoming a primary adopter. One feature we would like to see is the ability to have security questions for password resets. I know the current capability is phasing out, so we do not have an alternative method yet. Customers who already use security questions require a smoother transition for that capability to be available. My experience with the deployment has had some challenges, particularly around the Microsoft MFA campaigns. The hardest part is moving users from a different MFA provider to the Microsoft MFA provider, as it ultimately depends on user activity. In large enterprises with numerous users across various geographies, this transition takes time. If there are ways to exert more control around that process, it would improve the situation.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature is the communication based on PKI certificates."
"I emphasize the importance of automation in Wi-Fi management, particularly in tasks such as certificate renewal. The requirement extends to the ability to generate new certificates from a local server within the data center. There is a need to establish a new server for local certificate issuance and highlights the desire for automation in the deployment process. The emphasis lies in leveraging automated solutions to streamline these operations effectively."
"The public key infrastructure certificates issued by the PKI servers helped me set up good client-server authentic communications."
"Many of its features are valuable, including: facilitating application authentication, privileged access management, processes for attestation, and access reviews."
"The most valuable feature is the possibility to create multi-tenant applications alone, or in combination with Azure Active Directory B2C."
"Single sign-on is the reason we use AD."
"The performance is good."
"Don't delay implementing this solution, it's the best thing you can do for your identity protection."
"The security features are great. They will report in advance to you in the case of suspicious activity."
"I would assess the stability and reliability of Microsoft Entra ID as very satisfactory, as I am very happy with that. It covers our expectations and meets our requirements."
"It definitely has improved our security posture, certainly from providing that second factor of authentication, and it enhanced our end user experience quite a bit by giving them self-service password reset and a single sign-on experience instead of having to remember multiple usernames and passwords for different systems."
 

Cons

"From an automation perspective, PKI is a bit of a debatable topic and can be improved as time demands."
"The customer finds value in adopting a platform from Jira, particularly for the ease it brings to their processes, both for on-premises operations and batch processing. Their objective is to create a new customized server specifically designed for generating certificates. This server is intended for the generation of certificates, emphasizing that it is not meant for free domain replacement. The platform of choice for this purpose is Digital One, a product that offers full customization and aligns well with the customer's preference for tailored solutions.The process of certificate issuance from Microsoft's AB involves renewal or replacement every five years. However, an issue arises in that this particular certificate requires renewal annually instead of the standard five-year cycle. The challenge is attributed to personnel changes, where an administrator responsible for the process resigns within the five-year period. To address this, we seeks an automated solution that operates seamlessly with a single sign-on approach, eliminating the need for user IDs or passwords. The automation involves approval and subsequent deployment without complexities. Us, being a partner of DigiSet, relies on their implementer for support in service deployment, installation, and resolution of any issues that may arise."
"From an automation perspective, PKI is a bit of a debatable topic and can be improved as time demands."
"I think the solution can improve by making the consumption of that data easier for our customers."
"I would like to dive into some of the things that we saw today around the workflows at this Microsoft event. I cannot say that they need to make it better because I do not have much experience with it, but something that is always applicable to Microsoft is that they need to be able to integrate with their competitors. If you look at IDP, they do not integrate with Okta."
"Microsoft Entra ID could benefit from more fine-tuned rights. It is necessary to prevent granting an application or user broad access rights."
"The quality of support is regular. If you contact Microsoft support directly for Microsoft Entra ID, it's faster, but when you do it through a partner, it takes more time."
"Compared to what we can do on-prem, Azure AD lacks a feature for multiple hierarchical groups. For example, Group A is part of group B. Group B is part of group C. Then, if I put someone into group A, which is part of already B, they get access to any system that group B has access to, and that provisioning is automatically there."
"For example, there were some authentication features that, for security purposes, had certain limitations."
"One thing that bothers me about Azure AD is that I can't specify login hours. I have to use an on-premises instance of Active Directory if I want to specify the hours during which a user can log in. For example, if I want to restrict login to only be possible during working hours, to prevent overtime payments or to prevent lawsuits, I can't do this using only Azure AD."
"The B2B Federation functionality is not perfect and could be improved. It is not on the same level that we could have if it were being used on-premises. It offers a different experience, which is a bit complicated and has some additional drawbacks."
 

Pricing and Cost Advice

"I would rate it seven for the price."
"This solution won't cost much, as this would be free with the licensing from Microsoft."
"The licensing is really not clear unless you are a premium client."
"I feel Microsoft is very costly compared to other products. That is also what management is thinking. But when we consider security and support, Microsoft is better than any other product."
"It is very expensive. Its price should be lower. Price is the most important factor for Turkish people."
"Everything needs to be considered for the requirements and if it is within the budget, then you can come up with a solution, whether it is SaaS, PaaS, or IaaS."
"It's pretty good. We're using the native features. It's bundled with our Office 365 licenses. We aren't paying anything extra for Azure Active Directory. It's pretty good for us because it's complementary to Office 365. We're only paying for Office 365."
"Licenses are based on the usage. There is no cap. It's based on the number of users we provision."
"We have a yearly license."
"Licensing fees are paid monthly."
report
Use our free recommendation engine to learn which Authentication Systems solutions are best for your needs.
896,510 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
12%
Computer Software Company
12%
Construction Company
9%
Manufacturing Company
8%
Financial Services Firm
12%
Manufacturing Company
8%
Government
8%
Computer Software Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business90
Midsize Enterprise41
Large Enterprise161
 

Questions from the Community

Ask a question
Earn 20 points
How does Duo Security compare with Microsoft Authenticator?
We switched to Duo Security for identity verification. We’d been using a competitor but got the chance to evaluate Duo for 30 days, and we could not be happier. Duo Security is easy to configure a...
What is your experience regarding pricing and costs for Azure Active Directory?
My experience with pricing, setup cost, and licensing is that going through and being able to use these things is always part of delivering an M365 bundle, so I don't think the experience is great ...
What needs improvement with Azure Active Directory?
Microsoft Entra ID can be improved by open-sourcing it. You already have Windows Subsystem for Linux, which is open-source Linux in Microsoft. One major shift for Microsoft would be using the commo...
 

Also Known As

DigiCert PKI, Symantec Managed PKI Service
Azure AD, Azure Active Directory, Azure Active Directory, Microsoft Authenticator
 

Interactive Demo

Demo not available
 

Overview

 

Sample Customers

paypal, verizon, cloudflare
Microsoft Entre ID is trusted by companies of all sizes and industries including Walmart, Zscaler, Uniper, Amtrak, monday.com, and more.
Find out what your peers are saying about DigiCert PKI Platform vs. Microsoft Entra ID and other solutions. Updated: April 2026.
896,510 professionals have used our research since 2012.