Certificate Management

A certificate is a data structure that contains a key, either public or private, along with information about the key and validation data for the key's issuer. If you build a mental picture of a valuable diamond accompanied by a gemologist's report and a certified pedigree with embossed signatures, you have a good idea of how a certificate is used.

The International Telecommunications Union (ITU) has promulgated a standard, X.509, that defines the content and structure of PKCS certificates. Figure 17.6 shows an example X.509 certificate.

Figure 17.6. Contents of X.509 public key certificate.

There are other certificate types ...

Get Inside Windows® Server 2003 now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.