Public Key Infrastructure
A public key infrastructure (PKI) is a set of rules and procedures used for the creation, management, distribution, storage, and use of a digital certificate and public key encryption.
PKI Terminology
CISM aspirants should have a basic understanding of the following terms with respect to PKI:
- Digital certificate: A digital certificate is an electronic document that proves the ownership of a public key. A digital certificate includes details about the key, details about the owner, and a digital signature of its issuer. It is also known as a public key certificate.
- Certificate Authority: A certificate authority (CA) is an entity that is responsible for issuing digital certificates.
- Registration Authority: A registration authority (RA) is an entity that verifies user requests for digital signatures and recommends the CA issue certificates.
- Certificate Revocation List: A certificate revocation list (CRL) is a list of digital...