Managing keys and certificates

Keys and certificates provide identities to IoT devices, gateways, and other components and enable secure data in transit across IoT systems. Although most organizations have existing agreements with PKI providers for Secure Sockets Layer (SSL) certificates, the provisioning of certificates to IoT devices frequently do not fit the typical SSL model. PKI service providers such as GlobalSign and Digicert have begun tailoring their certificate offerings towards the IoT. Another option however is the stand-up of an in-house PKI.

Device certificates chain up to root certificates, also known as trust anchors. These trust anchors are provisioned to devices and enable trust within an organization. There must be processes ...

Get Practical Internet of Things Security - Second Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.