A self-paced curriculum that takes you from the basics of post-quantum cryptography through running a production CA. Every module links to a real spec, a real endpoint, or a real page on this site.
Understand why classical public-key cryptography is at risk, what NIST standardised in 2024, and how the new algorithms behave in practice.
Order, validate, deploy, renew, and revoke quantum-safe X.509 certificates in production using the portal and the REST API.
How draft-ietf-lamps-x509-alt embeds a parallel PQC signature inside a classical certificate so existing TLS stacks keep working.
Automate issuance and renewal end-to-end using RFC 8555 ACME plus our PQC extensions, with certbot, acme.sh, and lego.
For the team running the migration. Foundations → operations → governance.
For the engineers wiring PQC into services, CI/CD, and infrastructure-as-code.
For PKI architects and standards-aware reviewers designing the long-term posture.