The PKI certification authority is responsible for generating these required certificates while
registering these within the trust mesh. In other words, a Certification Authority builds the necessary strong credentials for all the physical or virtual entities involved in a cloud and it therefore builds a security domain with specific boundaries within the otherwise fuzzy set of entities of a cloud. Digital signatures in combination with SSO and Ldap, implement the strongest available authentication process in distributed environments while guaranteeing user mobility and flexibility.