home/glossary/Public key infrastructure

Public key infrastructure

nounid 3731·updated May 9, 2026
candidate

The framework and services that provide for the generation, production, distribution, control, accounting, and destruction of public key certificates. Components include the personnel, policies, processes, server platforms, software, and workstations used for the purpose of administering certificates and public-private key pairs, including the ability to issue, maintain, recover, and revoke public key certificates.

polysemousMWE

Classifications

Entity Type

Credential90%rule-basedr:entity.credential.cert.v1

Sensitivity

unclassified

Information Class

unclassified

Variants

acronym
PKI
possessive
Public key infrastructure's

Framework definitions

SANS Glossary of Security Terms1 senseview framework →
§1
A PKI (public key infrastructure) enables users of a basically unsecured public network such as the Internet to securely and privately exchange data and money through the use of a public and a private cryptographic key pair that is obtained and shared through a trusted authority. The public key infrastructure provides for a digital certificate that can identify an individual or an organization and directory services that can store and, when necessary, revoke the certificates.
National Initiative for Cybersecurity Careers and Studies (NICCS) Cybersecurity Lexicon1 senseview framework →
§1 · extended_definition_available
A framework consisting of standards and services to enable secure, encrypted communication and authentication over potentially insecure networks such as the Internet.
ISACA Cybersecurity Glossary1 senseview framework →
§1
A series of processes and technologies for the association of cryptographic keys with the entity to whom those keys were issued
NISTIR 7298: Glossary of Key Information Security Terms, Revision 25 sensesview framework →
§1
A set of policies, processes, server platforms, software, and workstations used for the purpose of administering certificates and public-private key pairs, including the ability to issue, maintain, and revoke public key certificates.
§2 · sense_2_pending_review
An architecture which is used to bind public keys to entities, enable other entities to verify public key bindings, revoke such bindings, and provide other services critical to managing public keys.
§3 · sense_3_pending_review
A Framework that is established to issue, maintain, and revoke public key certificates.
§4 · sense_4_pending_review
A support service to the PIV system that provides the cryptographic keys needed to perform digital signature-based identity verification and to protect communications and storage of sensitive verification system data within identity cards and the verification system.
§5 · sense_5_pending_review
The framework and services that provide for the generation, production, distribution, control, accounting, and destruction of public key certificates. Components include the personnel, policies, processes, server platforms, software, and workstations used for the purpose of administering certificates and public-private key pairs, including the ability to issue, maintain, recover, and revoke public key certificates.
CNSSI-4009 (Glossary of Information Assurance Terms)1 senseview framework →
§1
The framework and services that provide for the generation, production, distribution, control, accounting, and destruction of public key certificates. Components include the personnel, policies, processes, server platforms, software, and workstations used for the purpose of administering certificates and public-private key pairs, including the ability to issue, maintain, recover, and revoke public key certificates.
NIST SP 800-321 senseview framework →
§1
A set of policies, processes, server platforms, software, and workstations used for the purpose of administering certificates and public-private key pairs, including the ability to issue, maintain, and revoke public key certificates.
NIST SP 800-631 senseview framework →
§1
A set of policies, processes, server platforms, software, and workstations used for the purpose of administering certificates and public-private key pairs, including the ability to issue, maintain, and revoke public key certificates.
FIPS PUB 2011 senseview framework →
§1
A support service to the PIV system that provides the cryptographic keys needed to perform digital signature-based identity verification and to protect communications and storage of sensitive verification system data within identity cards and the verification system.
FIPS PUB 1961 senseview framework →
§1
An architecture which is used to bind public keys to entities, enable other entities to verify public key bindings, revoke such bindings, and provide other services critical to managing public keys.
FIPS PUB 1861 senseview framework →
§1
A Framework that is established to issue, maintain, and revoke public key certificates.

Outgoing relationships

No outgoing triples
This term is not the subject of any RDF-style relationship yet.

Incoming relationships

No incoming triples
No other term currently asserts a relationship to this one.