Certificate Authority

Futurex Offline Root CA

8min
the {{k3}} provides a turnkey solution for offline enterprise level certificate authority (ca) and private key infrastructure (pki) management root cas can be issued offline, wherein the device may be powered down and disconnected from the network in addition, the {{k3}} enables you to import and export pkis offline business purpose the primary business purpose for using the {{k3}} offline feature is to prevent unauthorized access to root cas in the event of a network breach as an added advantage, the offline feature provides an alternate method to securely manage root cas during network downtime kmes series 3 features overview the {{k3}} device enables you to deploy and maintain an enterprise key management solution, giving users complete control over the lifecycle of security keys in addition, a comprehensive sdk is provided with the device to manage key distribution and administration you can use this device effectively for the following enterprise level business use cases feature description cloud key management the {{k3}} remote cloud service enables you to independently manage key distribution by bringing your own key generated through the secure internal hsm and transferring to your cloud environment using encryption key wrapping end to end data protection you can manage application encryption, transparent database encryption (tde), file encryption, and tokenization through the {{k3}} with the cryptographic protection validated by the fips 140 2 level 3 standards that are enforced throughout the process pki management businesses can use the {{k3}} to build an expansive and robust public key infrastructure (pki), enabling you to go offline and perform certificate signing and issuing to secure your pki code signing managemen t the {{k3}} enables you to manage code signing requests (csrs) in a secure manner for internet of things (iot) devices, authenticode digital signatures, java applications, and continuous integration/continuous development (ci/cd) for code deployments financial key management the {{k3}} enables financial institutions to securely manage emv payment processing operations with the option to remotely manage the entire key loading process, giving you the flexibility to control key loading from practically anywhere you can manage the {{k3}} by using the following different methods the futurex command line interface (cli) application the local application interface, an excrypt touch device a remote desktop session this guide illustrates how to manage keys and key groups by using the remote desktop interface integration overview this guide shows how to configure offline root ca functionality on the {{k3}}