Welcome to QUBIP PKI!

This interface allows you to receive x509 post-quantum certificates issued by the QUBIP PKI. You can generate a post-quantum certificate and view the CA certificates and CRLs of the PKI.

Certificate with CSR

Upload a CSR (PEM or DER). The CA will copy Subject/SAN from your CSR and issue a leaf certificate.

Accepted: PEM (.csr, .pem). DER is OK—backend will detect and convert. IMPORTANT: your CSR MUST be created with the latest aurora version (0.9.0)

Generate Private Key and certificate

Please select the purpose of the certificate you want

Server Client

PKI Chains

Here you can retrieve the information about the different chains with Certificate Authorities and Certificate Revocation Lists

⛓️ QUBIP MPU chain ⛓️

The QUBIP MPU chain is used to sign end-entity certificates for the MPU device, using MLDSA65/ED25519 composite algorithm. It is used to secure the communication between the MPU and the MCU.

🔐 🔐 Root CA 🔐 🔐

The Root CA is the root of trust for this chain—used to sign intermediate CAs, not end-entity certs.


Download

View

🔐 MPU intermediate CA 🔐

The QUBIP MPU CA is used to sign end-entity certificates for the MPU device.


Download

View

⛓️ QUBIP MCU chain ⛓️

The QUBIP MCU chain is used to sign end-entity certificates for the MCU device, using MLDSA44/ED25519 composite algorithm. It is used to secure the communication between the MPU and the MCU.

🔐 🔐 Root CA 🔐 🔐

The Root CA is the root of trust for PKI. It is used to sign the intermediate CAs and is not intended to be used for end-entity certificates.


Download

View

🔐 MCU intermediate CA 🔐

The QUBIP MCU CA is used to sign end-entity certificates for the MCU device.


Download

View

⛓️ QUBIP TLS chain ⛓️

The QUBIP TLS chain is used to sign end-entity certificates for TLS endpoints, using SPHINCS+ and MLDSA65 algorithms.


🔐 🔐 Root CA 🔐 🔐

The Root CA is the root of trust for PKI. It is used to sign the intermediate CAs and is not intended to be used for end-entity certificates.


Download

View

🔐 TLS intermediate CA 🔐

The QUBIP TLS CA is used to sign end-entity certificates for TLS clients and servers.


Download

View