agmc-certs
Wednesday 2 April 2025 4 versions

Workshop: Eigene “CA” für die “AG MicroComputer”

Introduction to TLS / SSL

TLS (Transport Layer Security) and SSL (Secure Sockets Layer) certificates are digital certificates that establish a secure link between a website and a user’s browser. The TLS/SSL certificate contains information about the website’s identity, including the name of the website, the company that owns it, and the website’s public key.

When a user visits a website with TLS/SSL enabled, their browser verifies the website’s certificate to ensure that it is authentic and issued by a trusted certificate authority (CA). Once the certificate is verified, the browser and website establish an encrypted connection to protect all data transmitted between them, such as login credentials, credit card information, and other sensitive data.

TLL/SSL certificates come in different types, including Domain Validated (DV), Organization Validated (OV), and Extended Validation (EV) certificates.

Planung der Strukturen für verschiedene ‘CA-Chains’

Root-CA = “AG MicroComputer”

  • Root-CA: “AG Microcomputer”
    • Branch-CA: “PAGONG Labs”
      • Leaf-CA: “PAGONG Public Services”
        • Service: tech.dortoka.ipv64.de
        • Service: agmc25-lt.dortoka.ipv64.de
        • Wildcard: *.dortoka.ipv64.de
      • Leaf-CA: “PAGONG Private Services”
    • Branch-CA: “DC1PAA”
      • Leaf-CA: “DopplerPeiler”
    • Branch-CA: “DC5TV”
    • Branch-CA: “AlexMa”
    • Branch-CA: “AfuSoft”

Root-CA = “AfuSoft”

  • Root-CA: “AfuSoft”
    • Branch-CA: “Kunde001”
      • Leaf-CA: “Projekt002”
      • Leaf-CA: “Projekt003”
    • Branch-CA: “Projekt001”
      • Leaf-CA: “Kunde002”
      • Leaf-CA: “Kunde003”

Backlinks