The central components of a PKI include Certification Authorities (CAs), Registration Authorities (RAs) where applicable, digital certificates, revocation information, as well as policies and processes for issuing, managing, renewing, and revoking certificates. The CA structure often consists of a Root CA and one or more subordinate CAs.
