ABSTRACT

For the purposes of this chapter, the operational considerations are based on the ABC Corporation’s internal CA operations. e CA hierarchy discussions are rst represented as certicate chains including Transport Layer Security (TLS) certicates for applications, e-mail certicates for individuals, and virtual private network (VPN) certicates for remote access by employees and contractors. e end-entity certicates are on the left, the associated CA certicate chains are shown in the middle, and the root CA-A certicate is common to each chain.