- SEAL SQ >
- PKI & Provisioning for IoT >
- Root of Trust
Chain of Trust - Root Certificate Authority
Public Key Cryptography and Digital Certificates are used to encrypt or digitally sign any information such as communication data or device firmware updates. These processes rely on the concept of “Digital Trust” and “Root of Trust”, as the only way to ensure trusted data is coming from authentic devices, or to safely apply a firmware update.
SEALSQ allows you to use publicly or privately trusted Root Certification Authorities, and adapts the Trust Model to your business needs.
20+ years of experience issuing digital identities
Easy to scale, automated, and WebTrust certified for IoT: Whether for public or private trust, SEALSQ Certificate Authority is the foundation of your PKI ecosystem. SEALSQ benefits from one of the longest-standing trusted Certification Authority, with more than 15 years of continuous independent compliance audits.
Our PKI platform has also been approved to issue trusted identities for the latest IoT standards such as Wi-SUN®, Matter and GSMA.
Key Benefits
Swiss Based Root-of-Trust
Root-of-Trust operated within Swiss Based proprietary secure servers for sovereignty and neutrality.
Reduce operational cost and risk
Running a secure PKI requires specialized facilities, technology, people, and processes. Rely on the experts at SEALSQ so you can focus on your core business.
Scale at the pace of business
Provision from hundreds to millions of device certificates through SEALSQ PKI’s scalable provisioning service.
Trusted worldwide & Ensure regulatory compliance
The SEALSQ CA is WebTrust compliant, ISO:27001 certified, supports compliance with NIST’s IoT device cybersecurity guidelines (NISTIR 8259A), and automatically generates audit-ready reports.
CSA accredited “Product Attestation Authority” (PAA) for Matter
GSMA Accredited Swiss Based Certificate Authority
SEALSQ meets defined criteria (GSMA PRD SGP.28) and operates GSMA recognised certificate roots for certificate issuance, in line with the GSMA eUICC PKI Certificate Policy, GSMA PRD SGP.14.
https://www.gsma.com/solutions-and-impact/technologies/esim/gsma-root-ci/
Key Features
Security Policy
SEALSQ helps its customers in developing PKI-related policy documents which include Certificate Policy (CP) documents, Certification Practice Statement (CPS) documents, and associated security policies.
Better compliance & control
A commercial Private CA offering can help an enterprise reduce risk and aid compliance by following the best practices of Public Key Infrastructure (PKI), cryptography, and information technology (IT) security, including tracking and automating the renewal of deployed certificates.
Trusted worldwide
Issuing billions of cryptographic credentials to leading global electronics device makers and service providers for over twenty years.
Scalable provisioning
In addition to managing the certificates, organizations must own, build, and maintain the entire CA infrastructure — tasks that require dedicated and specialized staff.
Ownership of the private issuing CA
SEALSQ provides customer-branded private CA, with specific platform customer user access to enable real control. The CA owner can issue certificates or delegate the required permissions for issuing certificates.
Flexible operational models
SEALSQ industry-leading PKI is available in either a Managed PKI or On-Premises model. These options allow you to select the PKI solution that best fits your needs for cost effectiveness, security, and control.
They trust us
This may be of interest for you
NEWS
SEALSQ Selected as Collaborator by NIST for the NCCoE Trusted IoT Network Layer Onboarding Project
For this project, SEALSQ is working with NIST to define recommended practices for performing trusted network-layer onboarding, which will aid in the implementation and use of trusted onboarding solutions for IoT devices at scale.
News
SEALSQ’s Root Certificate Authority Accredited by GSMA
SEALSQ PKI enables eUICC and Subscription Management entities to identify and authenticate within the GSMA remote provisioning Consumer ecosystem, facilitating security and interoperability.
News
SEALSQ offers a Unique Integrated Solution for Matter Smart Home Devices
Acting as a true “Security One-Stop-Shop” with this unique “Root to Chip” integrated offering on the market, SEALSQ will help smart home device manufacturers to easily get access to the growingly required “Matter” standard compliance
News
Wi-SUN Alliance Selects WISeKey PKI Services to Deliver Digital Certificates to Consortium Members
Wi-SUN FAN protocol supports X509 digital certificates for device authentication
News
The IoT Market for Public Key Infrastructure & Digital Certificates
As digital identity provider, SEALSQ offers services geared to specific IoT applications. This includes extending digital certificate design beyond the X.509 standard, offering identity management options
News
INeS addressed Automotive vertical
SEALSQ reinforces ISTANA Internet of Cars Platform with INeS Security Solution to Secure Devices, Cloud & IOT Applications