skip to content

Trust Chains & CAs

How a leaf certificate is tied back to a trusted root: path building, verifying each signature up the chain, and cross-signing. Interviewers ask because an incomplete chain is the classic TLS failure.

part ofWeb protocols & securityoverview, primer and where to startread it →
on this pageshow

questions

5

In certificate path processing, what is the difference between building a certification path and validating one?

level: middleimportance: must knowfreq 65%

basics

~20 s

Building is a search: it hunts through the certificates a verifier can reach for an ordered run from an end-entity certificate to an anchor it holds. Validating is a check that accepts or rejects one such run.

open as a page

Why does path building fail when a verifier holds the trust anchor and the end-entity certificate but no intermediate?

level: middleimportance: should knowfreq 58%

basics

~20 s

Nothing joins the two. An intermediate CA signed the end-entity certificate, not the anchor, so with that intermediate absent no candidate has a subject matching the leaf's issuer and a key that verifies its signature.

open as a page

While walking a certification path, what does a verifier check in each CA certificate about its authority to issue the next one?

level: seniorimportance: should knowfreq 46%

basics

~10 s

Three things per hop: basicConstraints present with cA set to TRUE, keyCertSign asserted if a keyUsage extension is present at all, and pathLenConstraint, which caps how many non-self-issued certificates may still follow.

open as a page

How can one end-entity certificate have two valid certification paths, ending at two different trust anchors, at the same moment?

level: seniorimportance: nice to knowfreq 33%

basics

~20 s

Cross-certification. The same CA name and public key can be certified by more than one issuer, so a verifier reaches whichever anchor its own certificates and anchor list allow - and both paths verify at once.

open as a page