With Private Managed PKI, SwissSign operates your public key infrastructure (PKI) for you in accordance with your specifications. If you prefer certificates will be issued from your own root certificate (root CA). You obtain and manage your certificates in a simple manner via our Managed PKI interfaces and web user interfaces. You benefit from maximum flexibility, low costs and a high level of security by outsourcing your PKI to the secure, certified and specialised SwissSign environment.
You define the scope and parameters of the Private Managed PKI service when placing your order. It is also possible to have your own CP/CPS. Among other things, you determine whether
You choose whether you only want to use your self-signed certificates internally or you want to use the same Managed PKI interface also for standard publicly trusted SwissSign certificates.
If you want to use your own CA or Sub-CA, you can request a quotation from us. You can use the MPKI Quotation Calculator directly to obtain individual direct certificates issued by a SwissSign Sub-CA
With Private Managed PKI, we offer the following standard products. Other products are possible and are set up on a customer-specific basis.
SSL / device certificates
Characteristics: Entry of domain name or several domain names (multi-domain). The domain names must be FQDN; no internal names or IP addresses. These certificates are also optionally available with an organisation entry.
Characteristics: Issued to e-mail addresses – the certificate can also optionally include a last name, first name and organisation entry.
Characteristics: Contain a user ID or e-mail address, optionally also available with a last name, first name and organisation entry.
Certificates in the Microsoft environment
Characteristics: Contain specific OIDs.
The Managed PKI can be either used for self-signed private certificates or in combination with publicly trusted certificates.
This means that you only have one point of administration for your all your certificates in the organization via Web Interface or CMC interface.
Our partners offer products which can manage either private or public trusted certificates on an automated basis.
The service for self-signed certificates with root certificates that are not listed by the operating system and application manufacturers is offered as part of a Managed PKI service. You will profit from increasing volume discounts of a Managed PKI and you can always add publicly trusted standard certificates. All certificates are the base for the attractive volume discount. All self-signed certificates can be obtained for the same price independent from its type and properties.
You can purchase directly single self-signed certificates by placing a Managed PKI order. Please use our standard order form (MPKI offer tool) on the Managed PKI website. In case you prefer to obtain your own issuing CA or even your own root CA you should at least order 10’000 self-signed certificates.
In the last case cost for setup of an own root and issuing CA, an optional OCSP service for validity check and support for drafting a CP/CPS will be added as non-recurring cost to the Managed PKI cost. Please ask in this case for a detailed offer.