Details of keys and certificates can vary by program; an example configuration is available as a slide deck on request.
技术规格
基于行业标准构建,支持现代加密算法和无缝集成功能。
Supported Cryptographic Standards
RSA
2048–4096 bit
Supported
ECDSA
P-256, P-384, P-521
Supported
EdDSA
Ed25519, Ed448
Supported
Post-Quantum
CRYSTALS-Dilithium
Preview
Certificate Management Protocols
SCEP
Simple Certificate Enrollment Protocol
RFC 8894
EST
Enrollment over Secure Transport
RFC 7030
ACME
Automated Certificate Management Environment
RFC 8555
CMP
Certificate Management Protocol
RFC 4210
Integrations
Cloud Platforms
AWS
Azure
Google Cloud
Kubernetes
CI/CD Tools
Jenkins
GitLab
GitHub Actions
Azure DevOps
Monitoring
Prometheus
Grafana
Splunk
Datadog
Identity Systems
Active Directory
LDAPSAML OAuth 2.0
关键集成
CA 和验证
具有实时状态检查功能的根/中级 CA、CRL、OCSP。
设备和车辆平台
AWS IoT Core、EMQX 和远程信息处理生态系统。
身份和访问权限
OAuth 2.0/OIDC、JWTS、SOVD 用于安全 Authz/Authn。
密钥管理
HSM 集成;用于密钥托管的 Cloud KMS(AWS、GCP)。
数据安全
TLS 1.2/1.3、基于 TLS 的 MQTT、HTTPS、AES/RSA/ECC 库。
OTA 更新
对固件和软件包进行基于签名的验证。
监控
使用仪表板(Prometheus/Grafana)进行操作记录。
入职
使用 PKI 对设备和车辆进行零触摸注册。
为什么 Sibros PKI
端到端安全
从安全入职到加密通信和可信的 OTA。
经过大规模验证
全球舰队的横向可扩展架构。
汽车级
实践符合 ISO 21434 和欧洲经委会 WP.29。
易于采用
物联网、IAM、OTA 和遥测管道的直接集成。
常见问题解答
Frequently Asked Questions
Answers to common questions about deployment, security, and integration for automotive programs.
Our certificate lifecycle integrates with industry-standard protocols (e.g., EST, SCEP, ACME, CMP) to
streamline enrollment, rotation, and revocation. Keys are safeguarded by HSM/TEE where available, and
policies are centrally governed for program-level compliance.
We support RSA (2048–4096), ECDSA (P-256/P-384/P-521), and EdDSA (Ed25519/Ed448) for signing and TLS
handshakes. Post-quantum signature schemes (e.g., CRYSTALS-Dilithium) are available in preview for
forward-looking programs.
Yes. Typical integrations include Jenkins/GitLab/GitHub Actions for release signing, Prometheus/Grafana/
Datadog/Splunk for telemetry, and SAML/OAuth2/LDAP/Active Directory for enterprise identity. Our APIs and
webhooks accelerate pipeline automation and audit readiness.
Our VSOC-aligned detections monitor diagnostic flows, firmware signatures, and policy compliance. Events
such as OBD-II misuse, signature mismatches, or version downgrades are flagged, correlated, and routed to
response playbooks.
We support cloud-hosted, on-prem, and hybrid deployment models. Data residency, network topology, and PKI
anchoring are configured to satisfy OEM, Tier-1, and regulatory requirements.
Yes. Every enrollment, rotation, and signing action is recorded with tamper-evident logs. Export pipelines
help furnish auditors with precise evidence across development, release, and in-vehicle operations.