Skip to content
CORPORATE TRUST SERVICES

Cryptography-based trust services to protect your digital identities, data and business secrets.

QUALIFIED TRUST SERVICES

Legally compliant digital signatures (eIDAS) to drive forward the digitalization of your business processes.

TRUST COMPONENTS

Everything to do with smartcards, tokens, readers, certificates and signatures.

INNOVATIVE AND SECURE PERSPECTIVES FOR A DIGITAL WORLD.

PKI & CRYPTOGRAPHY SOLUTIONS

STRONG AUTHENTICATION
Phishing-resistant with certificates or FIDO

ENTERPRISE PKI
for Zero-Trust & IoT

ENCRYPTION & KEY MANAGEMENT
for on-premise & Cloud

PKI & CRYPTOGRAPHY PRODUCTS

egofy CARD
Smart Cards & Token

primeID VSC
Virtual Smard Card

primeID ONDEMAND
Remote VSC platform

primeID SELF SERVICE
Self Service for Smart Cards

primeID AUTOMATE
Certificate Lifecycle Management

primeID CERTIFY
Enterprise PKI

primeID DISCOVER
Certificate monitoring

primeID VALIDATE
Enterprise OCSP

SIGNATURES & SEALS

Signatures & seals for your employees
with primesign as an enterprise solution

Sign a document online & instantly
for individuals and as an entry point for companies

SUPPORT

Simply integrate our experts into your ITSM structure / remote support up to 24/7

MANAGED SERVICES

We take care of the complete operation of your trust services in our data centers, you take care of your business.

THE USABILITY OF OUR SOLUTIONS ENSURES HIGH ACCEPTANCE.

Everything to do with smartcards, tokens, readers, certificates and signatures.
GENERAL

We are happy
to help.
T +43 1 35553 - 0

SALES

We are happy to support you.
T +43 1 35553 - 200

SHOP

You are a store customer and have a question or need support.
T +43 1 35553 - 300

STANDARD SUPPORT

You have a standard support contract and need assistance.
T +43 1 35553 - 800

SUPPORT PORTAL PREMIUM

You have a Premium Support contract and need assistance.

LOCATIONS
Back to all questions

How do public and private keys work together?

PKI relies entirely on asymmetric cryptography, a system in which every identity is assigned a mathematically related pair of keys rather than a single shared secret. The public key can be distributed freely, typically embedded inside a digital certificate, while the private key must remain confidential to its owner at all times. What one key encrypts, only the other can decrypt, and this reversible relationship is what makes secure communication between strangers possible without ever exchanging a shared password.

How the key pair is used in practice:

  • Encryption: Data encrypted with a recipient's public key can only be decrypted with their private key, keeping the content confidential in transit.
  • Digital signatures: Data signed with an owner's private key can be verified by anyone using the corresponding public key, proving authenticity and integrity.
  • Certificate binding: A Certificate Authority signs a certificate that ties a specific public key to a verified identity, so the key pair's owner can be trusted.
  • Key protection: Because the private key is the single point of trust, it is typically generated and stored in a hardware security module (HSM) for CA and high-value identities.

This asymmetric model is what allows two parties who have never met to establish encrypted, authenticated communication, which is the basis for everything from HTTPS browsing to signed software updates.

Why Key Pairs Matter

  • Enables secure communication without ever sharing a secret
  • Private keys stay confidential, public keys can be shared freely
  • Forms the mathematical basis for every certificate in a PKI

Still have questions?

Our PKI and trust services team can walk you through what this looks like for your environment.

Talk to us