The ease of use - everything you need for your deployment right in one place. It makes it easy for end users who don't know much about certs or how they work at all! No more needing to jump around between different tools trying figure out which cert needs what information when setting up our AD environment (all the way from creating new keys through importing them into keystores). If there's anything I could see improved, its that we would love some kind of step by step walkthrough guide explaining each process so that even those without knowledge can learn quickly. We're having issues getting user accounts set correctly using this method because many times passwords aren't being imported properly nor do email addresses get updated after creation. Other problems include not seeing errors within SSO until later points during activation/deactivation which causes delays while troubleshooting.