The C-ITS PKI that Europe's
roads run on.

SeaCat PKI operates more of Europe's connected-mobility trust infrastructure than any other provider — the Root, Enrolment, and Authorization authorities that let vehicles and roadside systems trust every message they exchange. Standards-complete, sovereign, and run by the engineers who built it.

A European leader in C-ITS

The proof, up front.

  • In the EU's ECTL v8, three of the five new Root CA certificates run on SeaCat PKI — a direct stake in the pan-European C-ITS trust domain.
  • More PKIs — Root CA, Enrolment Authority, and Authorization Authority — registered in the European Certificate Trust List (ECTL) than any other operator.
  • Direct operator of the national C-ITS PKI for the Czech Road & Motorway Directorate (ŘSD).
  • Central C-ITS security infrastructure for the Czech Republic and Slovenia.

 

C-ITS & connected mobility

Trust for every vehicle, every roadside unit, every message.

Cooperative, connected, and autonomous mobility only works if every participant can trust every message it receives. SeaCat PKI is the infrastructure that makes that trust real — operated at national and pan-European scale.

What it does

  • Operates every role in the C-ITS trust model: Root CA, Enrolment Authority (EA), Authorization Authority (AA), and Trust List Manager (TLM).
  • Standards-complete: ETSI TS 103 097, ETSI TS 102 941, IEEE 1609.2, and the EU C-ITS Certificate Policy.
  • Connected to the EU CCMS and the European Certificate Trust List (ECTL).
  • Interoperability proven at ETSI C-ITS Plugtests.
  • Delivered on your infrastructure — or operated by us as a managed service, as we do for national C-Roads deployments.

 

Trusted on the road Deployed across national road authorities, vehicle makers, and the largest cooperative-mobility programmes in Europe.

Beyond the road: Industrial, IoT & OT

The same trust, for the devices that run critical infrastructure.

A smart meter, a grid controller, a hospital sensor, a piece of factory automation — each needs a strong identity, managed for years, at fleet scale, without a technician ever touching it. SeaCat PKI delivers exactly that.


Proven in the field

  • PKI securing the device identity of electricity meters from ZPA Smart Energy — a Czech meter manufacturer shipping across Europe — protecting metering communication across smart-grid infrastructure.
  • Securing connected medical and hospital IoT (IKEM).
  •  [SZ — reference to confirm and add]


What it does

  • PKI for smart metering and electricity meters — issuance, rotation, and full lifecycle management across entire fleets.
  • Automated certificate lifecycle for CPE and IoT devices, with SCEP enrolment.
  • Identity and trust for smart grid, industrial automation, and OT environments.
  • Built to run unattended: certificates renew, rotate, and revoke automatically, so a device fleet never falls out of trust.

One hardened foundation

The security engineering under both.

Deployed your way - On-premises, in a private cloud, or fully managed as a service.

 

Trusted where it matters

Protecting European enterprise and critical infrastructure — from national government and healthcare networks to media, logistics, and finance. The organisations that legally and strategically cannot send their data abroad run LogMan.io.

Build on a root of trust that Europe already relies on.

Talk to the engineers who operate national C-ITS trust infrastructure and manage IoT certificate fleets at scale — and design the PKI your programme needs, on your terms.

Frequently asked questions

What is a C-ITS PKI, and why does connected mobility need one?

In cooperative intelligent transport systems, vehicles and roadside units constantly exchange safety messages. A C-ITS PKI issues the certificates that let each participant prove it's genuine and trusted — so a message can be acted on, not spoofed. SeaCat PKI provides that trust layer at national and pan-European scale.

Can SeaCat PKI operate all the C-ITS trust roles?

Yes — Root CA, Enrolment Authority, Authorization Authority, and Trust List Manager, connected to the EU CCMS and the European Certificate Trust List (ECTL), in full conformance with the ETSI standards and the EU C-ITS Certificate Policy.

How does SeaCat PKI secure IoT and OT devices at scale?

Through fully automated certificate lifecycle management — issuance, renewal, rotation, and revocation via SCEP — so entire fleets of meters, CPE, and industrial devices stay trusted for years without manual intervention.

Where are the private keys kept?

In a certified hardware security module (EN 419 221-5, EAL4+). Keys are generated and used inside the HSM and never exposed in software.

Can you operate the PKI for us, or does it run on our infrastructure?

Both. SeaCat PKI runs on-premises, in a private cloud, or as a fully managed service operated by our engineers — whichever fits your governance and sovereignty requirements.

Fields marked with * are required.

Demo

Fields marked with * are required.

Become a partner

In case you are interested in our solutions, cooperation and joint activities, please fill in the form below and we will get back to you.

We promise we will never share this with anyone!

We guarantee that your email and other personal information are confidential and will not be sold or rented.

Fields marked with * are required.

Book a demo