The TOE is intended to issue certificates as well as manage their states throughout their life cycle, their publication in different repositories as well as the issuance of CRLs in order to determine the certificates that have been revoked from the CA.
A hierarchy of CA's can be established according to the needs of the system, allowing different profiles to be established for each CA so that certificates can be issued for different purposes.
Control of their signature keys is established at all times, ensuring the issuance of certificates by the CA as well as from their subordinate CA's.
The most common use cases that can be solved by using the TOE are:
- eIDAS Providers. SIAVAL PKI serves as an essential basis for the provision of qualified and reliable services for the issuance of signature certificates, seals, time stamps and associated profiles, according to the ETSI EN 319 4xx family of standards.
- ICAO eMRTD/ePassport. Allowing the implementation of the infrastructure for issuing epassport certificates.
- SSL Certificates for websites and components. Allows the implementation of certification authorities for the issuance of server certificates, including the basis for the establishment of browser trusted web server certificate issuance services according to CA/Browser Forum.
- IoT-Internet of Things. Authenticated, integrated and reliable communication between devices.
- Integration with MDM/UEM systems. Integrating with leading manufacturers of mobile device management technology to automate the rolling out of certificates to multi-use devices.
- Private Networks / VPN. To establish trusted environments for networks, remote Access clients and VPNs by issuing digital certificates.
- User authentication. Including active directory services or cloudbased applications, from desktops or mobile devices.
- Secure email. With advanced key management capabilities for email encryption.



