Unleash the power of PKI
A public key infrastructure (PKI) provides a solid security foundation for strong authentication, email encryption, digital signing, and securing IoT devices and applications.
The Nexus Smart ID PKI allows governments and businesses to enable trust with certificate-based identities for citizens, employees, applications, things, and smart devices.
What can you do with a powerful PKI platform?
Set-up private Certificate Authority (CA)
Secure access to websites & applications (SSL/TLS)
Enable MFA for VPN or private network access
Enforce device authentication for workplace & IoT devices, MDM
Deploy code signing and authentication (DevOps)
Secure cloud application access
Provide passwordless shell access to machines (SSH)
Protect access to corporate network and WiFi
Initiate mutual authentication for secure web applications (mTLS)
Roll out email signing and encryption
Secure communication between microservices and containers
Manage keys in public cloud
Adopt true end-to-end security
The Smart ID PKI issues certificate-based, cryptographically secure, unforgeable identities that enable,
Strong authentication: Certificate-based authentication ensures only authorized users, devices, or servers can connect to a network or application. Revocation of certificates instantly blocks access in case of compromise or emergency.
Encryption and privacy: Certificates guarantee encrypted communication between devices and services to securely transmit data over TLS.
Integrity: Digitally signed messages based on certificates prove the origin of data and detect data manipulation. Signed firmware ensures secure software updates from verified sources.
Complete, compliant, and feature-rich
- Securely issue certificate-based identities
- Complete certificate lifecycle management
- Store certificates on multiple devices - mobile phones, smartcards, corporate devices, IoT devices, etc.
- Ensure high performance and scalability
- Manage multiple CAs and tenants
- Common Criteria EAL4+ certified
- TISAX and ISO 27001 compliant
Enhance interoperability
The Smart ID PKI supports a wide range of enrolment protocols and interfaces which makes it easily extensible to various use cases while keeping it secure and compliant with global industry standards.
- ACME
- CMC
- CMP
- EST
- EST-coaps
- SCEP
- WinEP
- REST API
NEXUS SMART ID PKI
The only complete PKI platform
Certificate Factory
Responsible for control mechanisms and data preparation in the issuance process.
Distribution Agent
Responsible for distributing certificates, CRLs, and CILs to different services
Certificate Issuing System
Creates, uses, and deletes CA keys on demand from the Certificate Factory, in addition to certificate and CRL signing
OCSP Responder
Answers queries on behalf of one or several CAs, enabling multi-tenant hosting, about the revocation and issuance status of certificates
Support for HSMs
Connect with several HSMs over the PKCS#11 cryptographic interface, to manage CA keys, TLS keys, key archiving, PIN protection, and user keys
Key Generation System
Performs key generation and smart card pre-personalization functions
SNMP Protocol
Allows for the CF and CIS-managed services to forward notifications over the SNMP protocol
Protocol Gateway
Handles standard protocols and functionalities for enrolling certificates to different kinds of devices
Explore more technical details, tutorials, and updates
LEADING GLOBAL ORGANIZATIONS RELY ON SMART ID PKI
Scalable platform that promotes trust in every interaction
Further PKI resources
Leading innovation through collaboration
We are a part of consortiums and certifications that are pivotal in shaping the security standards, principles, and regulations of the future
Research project collaborations
Why Nexus
Backed by teams with unparalleled expertise, Nexus Smart ID PKI is the only complete PKI solution in the market
Want to know more?
Book a personalized demo session with our PKI experts to discover how
Smart ID PKI can help promote trust in every transaction!