Public Key Infrastructure (PKI): Level 1
Digital access needs to be organised around roles and actual needs. Connect identities, permissions and services to gain better control over configurations. Develop a framework for administering access and preparing discussions with security teams.
- Duration
- 5 days 35 hours
- Code
- SEC16FR Code
Presentation
PKI (Public Key Infrastructure) is a set of components used to manage identities, access control and digital exchanges. Although used by many systems, including biometric identification, smart cards, encryption and network and Wi-Fi authentication, PKI remains complex to administer and deploy. Mastering PKI is therefore essential to ensuring enterprise security.
Objectives
By the end of this course, participants will be able to:
- Understand the main PKI concepts.
- Identify the components of a PKI.
- Understand the life cycle and uses of a digital certificate.
- Implement an enterprise PKI.
The course introduces participants to trust service concepts, particularly electronic signatures.
Program
Digital trust in the face of security risks
- Security objectives.
- Main IT risks.
- The role of cryptography.
Basic cryptography concepts
- Data hashing.
- Symmetric encryption.
- Asymmetric encryption.
- Random number generation.
- Key length.
Components of a PKI
- Certification authority.
- Registration authority.
- The digital certificate.
- Certificate revocation lists and OCSP.
Managing a digital certificate's life cycle
PKI-related standards
- RSA and PKCS.
- IETF RFCs.
- ITU standards.
- European ETSI standards.
- NIST publications in the United States.
Trust models
Technical solutions
- OpenSSL.
- Microsoft CA.
- EJBCA.
Legal and procedural aspects
- Trust services.
- Electronic signatures.
- Policies and procedures.
- The European Union's eIDAS Regulation.
Protecting secrets
- Hardware Security Module.
- Cryptographic tokens and smart cards.
Practical PKI uses
- Strong authentication.
- Email protection.
- S/MIME.
- VPN.
- PKI and cloud computing.
- Mobile PKI.
Introduction to electronic signatures
- Signature formats.
- Signature applications.
Time stamping
Practical work
- Managing a certificate's life cycle with OpenSSL.
- Building a PKI with Microsoft CA.
- Installing and implementing EJBCA.
Audience
This course is intended for managers, system administrators, security administrators and any professional seeking an introduction to PKI.
Prerequisites
General knowledge of information security is required to take this course.
Familiarity with basic cryptography concepts is also recommended.
Teaching and assessment methods
- Initial skills assessment
- Training materials provided to participants
- Continuous assessment throughout the course
- End-of-course feedback questionnaire
- Combination of theory and practical application
- Attendance records
- Post-course follow-up evaluation
Dates and sessions
Choose the date and delivery format that suit you.
No upcoming sessions are currently available.
fr
en