← Home

Public Key Infrastructure (PKI)

Status: ○ Planned — content to be added.

Public Key Infrastructure (PKI) is the set of roles, policies, hardware, software and procedures used to create, manage, distribute, use, store and revoke digital certificates and manage public-key encryption. Core roles typically include a Certificate Authority (CA), Registration Authority (RA) and Validation Authority (VA).

In OT plants, PKI may be internet-connected or a local/offline CA used to identify and authenticate hosts and services within the IACS — including air-gapped environments where public certificate services are unavailable.

Related: Digital Certificates | Active Directory | IEC 62443-3-1 Clause 7.2 Public key | Access Control | FR 1 / SR 1.8 – PKI certificates