# Certificate life cycle

**URL:** <https://openziti.discourse.group/t/certificate-life-cycle/1128>\
**Category:** Uncategorized\
**Created:** [March 6, 2023, 4:57pm UTC](https://openziti.discourse.group/t/certificate-life-cycle/1128 "2023-03-06T16:57:40Z")\
**Posts on this page:** 1\
**Showing post:** 8

<div class="post-metadata">

**Author:** ![markamind](https://yyz2.discourse-cdn.com/free1/user_avatar/openziti.discourse.group/markamind/32/157_2.png) [@markamind](https://openziti.discourse.group/u/markamind)\
**Post date:** [July 6, 2023, 11:20am UTC](https://openziti.discourse.group/t/certificate-life-cycle/1128/8 "2023-07-06T11:20:14Z")

</div>

I did some documentation a while back.. hope this helps.. it may be a bit out of date

> [@QuickStart Certificate Authority summary](https://openziti.discourse.group/t/quickstart-certificate-authority-summary/889):
>
> I am working on some documentation to help understand the three PKIs that are used in the QuickStart example The following is a high level summary. Does this make any sense? Security overlay Three different PKIs are used in the QuickStart example Control plane: Controller overall network PKI, used on port 6262 Data plane: Controller REST API PKI, used on port 8441 Signing PKI, used when enrolling identities into the network note: because an Oracle co…

---

_[View the full topic](https://openziti.discourse.group/t/certificate-life-cycle/1128)._
