Certificate management concepts

We are now going to look at the different ways certificates are managed in a PKI environment, starting with the request for a new certificate and ending with different certificate formats. You must learn all of this information thoroughly as these aspects are heavily tested:

  • Certificate Signing Request (CSR): It is the process of requesting a new certificate; the process for the exam is that two keys are generated and the public is sent to the CA, which then returns a file that is the X509:

Figure 4: Key escrow
  • Key escrow: The key escrow holds the private keys for third-parties and stores them in a Hardware ...

