Private key attestation

A mechanism by which hardware such as a TPM produces signed evidence that a private key was generated inside, and cannot leave, that hardware. A CA or MDM service can verify the attestation before issuing a certificate, guaranteeing the credential is bound to a specific device rather than an exportable software key. It raises the assurance level of certificate-based authentication considerably.

An unhandled error has occurred. Reload 🗙