Public Key Infrastructure (PKI)

SurePassID Universal MFA uses digital certificates to ensure secure connections with external entities.


Public Key Infrastructure (PKI) is a set of services that uses a public and private cryptographic key pair to allow users on an unsecured network to securely exchange data. Typically PKI is comprised of four parts:

  • Certificate authority – verifies user identities
  • Registration authority – approved by the certificate authority to issue certificates for specific uses
  • Certificate database – stores requests and issues and revokes certificates
  • Certificate store – houses issued certificates and private keys

PKI certificates are commonly used to secure web sites (HTTPS), authenticate users and computers (SSH), and sign and encrypt email (PGP).

How SurePassID works with PKI

SurePassID uses PKI to establish secure connections between the SurePassID Universal MFA platform and external entities, such as an Active Directory Domain Controller or a managed endpoint. SurePassID checks to see if the user accessing the application has the necessary certificate present. If yes, SurePassID then enforces the specified MFA policy. If no, access to the application is automatically denied.

SurePassID also uses PKI to protect our own cryptographic secrets, such as AES 256 symmetric encryption keys.

Add MFA to PKI

PKI is a foundational security technology, but it can’t protect against compromised credentials. SurePassID adds the MFA you need.

Automate PKI Administration

SurePassID includes automated tools for the administration of certificates. Your admins can save time and focus on higher priorities.

Ensure Continuing Compliance

PKI is foundational to Zero Trust and regulatory compliance. SurePassID Universal MFA builds on it to ensure your continuing compliance.

Ready to experience the SurePassID difference?

Contact us and bring our MFA expertise to bear on your unique requirements. Or begin our free trial and see how easy it is to secure your universe with SurePassID Universal MFA.

Contact Us
Start Your Free Trial