Enterprise Resource Security Mastering Cryptographic Key Lifecycles
FAQ

When is a Root CA operated offline?

An Offline Root CA is used when particularly high requirements apply to protecting the central trust anchor of a PKI. Its private key remains disconnected from the network during normal operations.

The Root CA is activated only for a limited number of controlled operations, such as issuing or renewing Sub-CA certificates or making structural changes to the PKI. This model is particularly common in security-critical and regulated environments.

What can we do for you?

For further information feel free to contact us!

WordPress Cookie Plugin by Real Cookie Banner