Public Key Infrastructure (PKI) is an infrastructure model for managing digital certificates and public/private keys, enabling confidentiality, integrity and authenticity. It comprises certificate authorities, registration authorities, certificate lifecycle and trust models and is embedded in numerous standards and protocols.
Use this profile to understand the building block briefly, place it in the model, and switch to the 360° assessment when needed.
Theoretical construct: explains a term, principle, or mental model.
What you need to understand to reason about a domain.
A public key infrastructure manages digital certificates, keys, and trust rules so identities and secure connections can be verified.
PKI builds on asymmetric cryptography and the certificate-authority model. X.509 and RFC 5280 shape the widely used certificate model; organizations add enrollment, revocation, and renewal processes.
A certificate binds a public key to an identity; a trust chain and validity checks determine whether that binding is accepted. The private key stays secret, while expiry and revocation must be operated reliably.
A signed record binds a public key to an identity and validity information.
Root and intermediate certificate authorities allow verification that an issuer is trusted.
Issuance, distribution, renewal, revocation, and secure key storage form one lifecycle.
PKI provides scalable trust for TLS, devices, users, and signatures. Security depends as much on key protection, identity verification, and renewal operations as on cryptography.
Where this building block is located in the topic model.
No structure path available.
Explore how this building block connects to concepts, methods, technologies, and tools.
These sources establish the term and its professional meaning.
All direct connections of the current building block in a compact text view.
This classification shows where the building block typically matters, how demanding it is, and what kind of impact it has in the model.
The level within the organization (enterprise, domain, team) at which the AssetBlock is applied.