PKI/certificates (IT security/encryption)
Overview

Directly to:
1. basic information
PKI certificates (Public Key Infrastructure) are used for secure digital communication and identification. They make it possible to encrypt and digitally sign emails, securely authenticate servers and establish encrypted connections.
Suitable for all persons with a UniAccount who work with sensitive data in research, administration or teaching and have to meet special requirements for data protection, authenticity and integrity.
The IT Service Center is responsible for issuing and managing PKI certificates.
2. brief description
A PKI certificate is a digital ID issued by a trusted certification authority (CA). It confirms the identity of the certificate holder and can be used for various applications - such as email encryption or server authentication. The certificates are provided by the German Research Network (DFN).
PGP (Pretty Good Privacy) can also be used for e-mail encryption. However, this variant is not supported by the DFN certification authority and requires more manual administration.
Public certificate providers such as Let's Encrypt are suitable for TLS encryption of server services.
3. main functions
Email encryption: Protection of confidential information in electronic communication.
Digital signature: Ensuring the authenticity and integrity of emails.
Server certificates: Securing web services (e.g. via HTTPS).
Authentication: Securing services via certificate-based login procedures.
4th deployment scenario
A research assistant encrypts emails with personal research data.
A server for a teaching platform is secured with a DFN server certificate to enable secure HTTPS access.
5. technical requirements
To use a personal certificate, you must have a valid UniAccount and submit the appropriate application through the IT Service Center. Installation and use require knowledge of certificate management in email programs or on servers.
6. use and access
Certificates can be requested through the IT Service Center's website. Authentication is performed via UniAccount. For server certificates, you must also designate a technical contact person.
7. support and contact
| Name, Forename | Contact | |
|---|---|---|
| IT-Servicedesk First point of contact for all support requests | Telephone +49 561 804-5678 Email it-servicedesk[at]uni-kassel[dot]de Support Submit ticket (recommended) |
8. instructions and further links
No training courses are currently offered.
9. special notes (data protection, terms of use)
The certificates are subject to high security standards and are issued by the DFN-PKI. Private keys remain exclusively with the users and may not be passed on. Server certificates must be managed securely and renewed regularly.
The certificates are used within the scope of participation in the DFN-PKI. The certification guidelines of DFN-Verein apply. The responsibility for secure use lies with the user.
Status: March 2025
Go-Link of this page: https://www.uni-kassel.de/go/pki-zertifikate