PKI Fundamentals

Filevine Tech Talk
February 13th, 2023

Brendon Thiede

  • Developer by training
  • Site Reliability Engineer
  • Segment analyzer

Overview

  • Protecting information
  • Verifying identity
  • Managing trust

Cryptography

  • Symmetric
  • Asymmetric

Public Key Infrastructure

  • Certificate Authorities
  • Certificates
  • Certificate Management

In the Wild

  • HTTPS
  • VPN
  • Secure email
  • SSH/SFTP

Best Practices

  • Understand the Recipient "Class"
    • Private ←→ Public
  • Rotation
  • Revocation
  • Scalability

Conclusion

  • Commonly used and supported
  • Simplicity over efficiency
  • Only part of the journey

Questions?