Root Signing
Some enterprises choose to operate their own internal Certification Authority (CA) to support their growing array of web-based business operations.
However, these private CAs often face obstacles due to lack of global recognition for their “self-signed” CA certificates. While options exist to distribute the internal root within the enterprise, it is not feasible to widely distribute an enterprise root to the vast array of external users who may need to rely upon the certificates. If a certificate is not recognized, end users may receive an error message, and consequently not trust either the protected information or its source.
QuoVadis root signing allows enterprise CAs to chain themselves under the QuoVadis trusted roots, which are embedded in mainstream browsers and applications. This allows the enterprise CA to inherit QuoVadis’ widespread recognition.
At the same time, the enterprise CA maintains flexibility and control over authenticating individuals, deploying and managing various certificate types, and managing the distribution of public keys to appropriate parties – whether they are internal users, clients, or external partners.