Public Key Infrastructure

Defense Enterprise Authentication Service

DEAS utilizes multiple PKI capabilities to authenticate users, devices and infrastructure. These farms include commercial certificates, DoD certificates and DEAS dedicated certificate authorities.

The DEAS PKI Certificate Authorities are stand alone without any relational trust to DoD PKI or commercial PKI. It is uncommon for a generic user to have to install these certificates on a device.

The CAs can be downloaded below. Login to @mail.mil or @us.adm.mil is required to download CAs.

CAs:

CA IdentifierTypeCert DownloadCRL Download
DoD-DEAS-PKI-Root-CA1RootCER
DoD-DEAS-PKI-DSAF-CA1InfastructureCER
DoD-DEAS-PKI-DSAF-CA2AdminCER
DoD-DEAS-PKI-DIRF-CA1InfastructureCER
DoD-DEAS-PKI-ECAF-CA1InfastructureCER
DoD-DEAS-PKI-ECAF-CA2AdminCER
DoD-DEAS-PKI-ECAF-CA4AdminCER
DoD-DEAS-PKI-ECUF-CA1Infrastructure CER