Espejo público independiente de anclas de confianza PKI nacionales, no una autoridad. Los certificados son publicados por cada PKI nacional (ej. BCCR en Costa Rica); este sitio los replica y estructura.
Certificados
231
Raíces
225
Intermedias
6
did:pki
231
Actualizado
Modelo
CAs acreditadas (Lista de confianza ETSI)
Marco legal
Reglamento eIDAS (UE) 910/2014 · CAD (D.Lgs. 82/2005)
Algoritmos de clave
RSA-2048, RSA-4096, EC P-256, EC P-384
Estándares de firma
CAdESPAdESXAdESASiC
Instantánea de revocación
vigente, actualizar antes de 13 ago 2028
CapacidadesQualified e-signature & e-seal (eIDAS)Qualified timestampingCarta d'Identità Elettronica (CIE national eID)

Italy's qualified-signature trust is a federation of ~25 accredited QTSPs (Actalis, ArubaPEC, InfoCert, Namirial, Poste Italiane, Intesa, Intesi Group, TI Trust Technologies, Uanataca, and others) published in AgID's national eIDAS Trusted List. The 229 currently-granted CA certificates were promoted wholesale after verifying the Trusted List's XAdES signature through the EU LOTL chain of trust: the LOTL signature was checked against the pinned European Commission signing anchor, and the Italian TSL's signature (signer: AgID) against the identity the LOTL declares for Italy — so the list's single seal vouches for every certificate it contains (eIDAS Art. 22). Verification evidence is in VERIFICATION.md. In addition, the two Ministero dell'Interno / CNSD national eID roots behind the Carta d'Identità Elettronica (2016→2036, 2024→2044) are retained: they belong to the eID-notification mechanism rather than the QTSP list, and were cross-checked against the CIE portal and the AgID list independently.

Los certificados vencidos se ocultan por defecto; solo sirven para validar firmas antiguas.