Skip to main content
Offline·Progress is saved on this device and syncs the next time you open the app online.
Cryptography & PKI

CA

Certificate Authority

A trusted entity that issues and signs digital certificates in a PKI.

A CA is the trusted third party in a PKI that verifies an applicant's identity and issues a digital certificate binding a public key to that identity. Relying parties trust certificates because the CA signs them with its private key, and trust chains upward to a root CA held in the device trust store. Compromise of a CA is severe because every certificate it signed becomes suspect, which is why the root is kept offline and intermediate CAs perform daily issuance.

Memory hook

Certificate Authority: the trusted issuer that signs certificates.

Related terms

Looking CA up is step one. Getting tested on it is step two.

A free account opens all 4 Domain 1 objectives, 271 exam-style questions with a lesson and a lab on each, a placement check that skips what you already know, and a dated plan. No card.

Not affiliated with or endorsed by CompTIA.