{"id":18299,"date":"2025-02-28T11:39:24","date_gmt":"2025-02-28T16:39:24","guid":{"rendered":"https:\/\/www.thesslstore.com\/blog\/?p=18299"},"modified":"2025-03-12T11:51:16","modified_gmt":"2025-03-12T15:51:16","slug":"x9-pki-for-financial-services","status":"publish","type":"post","link":"https:\/\/www.thesslstore.com\/blog\/x9-pki-for-financial-services\/","title":{"rendered":"X9&#8217;s New PKI System Is Purpose-Built for the Financial Industry"},"content":{"rendered":"\n<h2 class=\"wp-block-heading\">After about eight years of planning and development, the Accredited Standards Committee X9 Inc. (ASC X9) is ready to launch its new PKI system \u2014 one that&#8217;s custom-built to meet the security needs of the Financial Services industry<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">For decades, the financial industry has secured payment networks with digital certificates from publicly trusted (Web PKI) certificate authorities. That approach works, but it\u2019s less than ideal for a simple reason: ATMs, credit card machines, and other financial networks function very differently than web browsers, and they have different security needs.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">X9, a non-profit standards committee that represents ~100 different banks and financial institutions, is launching a new public key infrastructure for the financial services industry. The <a href=\"https:\/\/www.digicert.com\/blog\/how-the-x9-pki-puts-financial-institutions-in-control\">X9 Financial PKI is powered by DigiCert<\/a> and has been built from the ground up to better serve the needs of financial services companies \u2014 both now and in the future. For example, the PKI industry\u2019s increasing preference toward shorter digital certificate validity periods could cause many issues for financial services organizations that deploy hardware with 10+ year lifespans.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Let&#8217;s take a look at what the <a href=\"https:\/\/x9pki.org\/\">X9 PKI<\/a> is, how it&#8217;s been built, and how it will be used.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Let\u2019s hash it out.<span id=\"newline\"><\/span><\/p>\n\n\n<span style=\"--tl-form-height-m:150.25px;--tl-form-height-t:121.4583px;--tl-form-height-d:121.4583px;\" class=\"tl-placeholder-f-type-shortcode_12753 tl-preload-form\"><span><\/span><\/span>\n\n\n<h2 class=\"wp-block-heading\">What Is the X9 Financial PKI?<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/x9pki.org\/\"><strong>X9 Financial PKI<\/strong><\/a> is a <a href=\"https:\/\/www.thesslstore.com\/blog\/what-is-pki-a-crash-course-on-public-key-infrastructure-pki\/\">public key infrastructure<\/a> that\u2019s designed specifically to meet the needs of financial institutions, merchants, securities companies, third-party payment service providers, and many other financial services organizations. It provides resilient, stable, and secure security infrastructure and certificate lifecycle management capabilities.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Let\u2019s take a quick look at the PKI architectural model of the X9 Financial PKI, of which there will initially be a single root CA and two issuing CAs chaining back to it (although this will likely expand over time.):<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"452\" src=\"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/x9-financial-pki-architecture-1024x452.jpg\" alt=\"A basic conceptual illustration of the X9 PKI for Financial Services\" class=\"wp-image-18303\" srcset=\"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/x9-financial-pki-architecture-1024x452.jpg 1024w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/x9-financial-pki-architecture-300x133.jpg 300w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/x9-financial-pki-architecture-768x339.jpg 768w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/x9-financial-pki-architecture-1536x679.jpg 1536w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/x9-financial-pki-architecture.jpg 1600w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\"><em>Image caption: This X9 Financial PKI architecture illustration is based on an <\/em><a href=\"https:\/\/pkic.org\/events\/2025\/pqc-conference-austin-us\/WED_PLENARY_1430_Jeff-Stapleton_X9-FI-PKI-PQC-Readiness-and-crypto-agiltity-for-FI-Services.pdf\"><em>X9 presentation graphic by Jeff Stapleton<\/em><\/a><em>, Executive Director and Cybersecurity Researcher at Wells Fargo.<\/em><\/figcaption><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">We\u2019ll speak more about the ASC X9 governing body in just a few moments. But the main takeaway here is that X9\u2019s Financial PKI shifts the dynamic of PKI as we\u2019ve traditionally known it, creating a dedicated security framework that puts financial institutions firmly in the driver\u2019s seat. Putting it another way, X9 PKI addresses the needs of this distinct community, which are different than those of the Web PKI.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Sign Up for DigiCert&#8217;s Webinar to Learn More About the X9 PKI<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Click on the banner below to visit <a href=\"https:\/\/digicert.registration.goldcast.io\/webinar\/a98be869-d3fc-41b7-99e6-dd2d1dc9ea58?utm_source=thestores&amp;utm_medium=thestores&amp;utm_campaign=ssl-store-blog&amp;toc=701Vu00000iWXAtIAO\">DigiCert&#8217;s X9 PKI webinar event registration page<\/a>:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><a href=\"https:\/\/digicert.registration.goldcast.io\/webinar\/a98be869-d3fc-41b7-99e6-dd2d1dc9ea58?utm_source=thestores&amp;utm_medium=thestores&amp;utm_campaign=ssl-store-blog&amp;toc=701Vu00000iWXAtIAO\" target=\"_blank\" rel=\" noreferrer noopener\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"640\" src=\"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/x9-pki-webinar-banner-v4-1024x640.jpg\" alt=\"Banner image to promote a webinar on the new X9 PKI for the Financial Services industry\" class=\"wp-image-18301\" srcset=\"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/x9-pki-webinar-banner-v4-1024x640.jpg 1024w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/x9-pki-webinar-banner-v4-300x188.jpg 300w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/x9-pki-webinar-banner-v4-768x480.jpg 768w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/x9-pki-webinar-banner-v4-1536x960.jpg 1536w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/x9-pki-webinar-banner-v4.jpg 1600w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/a><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Compare This to the Existing Traditional Web PKI<\/h2>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Traditional Web PKI involves dozens of publicly trusted <a href=\"https:\/\/www.thesslstore.com\/blog\/what-is-a-certificate-authority-ca-and-what-do-they-do\/\">certification authorities<\/a> (CAs) issuing certificates. This means the security of Web PKI is only as good as the security of its least secure CA.<\/li>\n\n\n\n<li>Web PKI standards and security requirements and recommendations are set by a group of entities that include non-financial sector organizations such as Google, Apple, Mozilla, and Microsoft (via the <a href=\"https:\/\/cabforum.org\/working-groups\/\">CA\/Browser Forum<\/a> or CA\/B Forum for short).<\/li>\n\n\n\n<li>These non-financial sector organizations have their own focuses and priorities when it comes to digital security that don\u2019t always align with those of financial entities.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Here\u2019s a quick reminder of what traditional <a href=\"https:\/\/www.thesslstore.com\/blog\/pki-architecture-fundamentals-of-designing-a-private-pki-system\/\">PKI architecture<\/a> looks like, which consists of many root CAs and even more subordinate and issuing CAs that chain back to them:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"488\" src=\"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/web-pki-architecture-1024x488.jpg\" alt=\"A basic conceptual illustration of the traditional Web PKI and the different standards and governance organizations, certification authorities, etc. \" class=\"wp-image-18304\" srcset=\"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/web-pki-architecture-1024x488.jpg 1024w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/web-pki-architecture-300x143.jpg 300w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/web-pki-architecture-768x366.jpg 768w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/web-pki-architecture-1536x732.jpg 1536w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/web-pki-architecture.jpg 1600w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\"><em>Image caption: This basic Web PKI architecture illustration provides a simplified overview of the ecosystem that includes many CAs, governance and standards bodies, and other organizations.<\/em><\/figcaption><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\">Why Financial Services PKI \u2260 Web PKI<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">The X9 Financial PKI is similar to the traditional browser-oriented public key infrastructure in that it uses public key cryptography and a certification authority (CA) issues trusted digital certificates to organizations that are responsible for managing them securely.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">However, the similarities end there. This is because the X9 PKI framework is specific to the sector\u2019s unique needs to ensure interoperability and improve data security against modern and future threats (i.e., <a href=\"https:\/\/www.thesslstore.com\/blog\/researchers-are-moving-up-the-clock-for-q-day\/\">Quantum Computing<\/a>). It\u2019s likely to offer a bit more flexibility to meet the sector\u2019s broad range of use cases.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Knowing this, there are some key differences between X9 Financial PKI and the traditional PKI ecosystem used by organizations globally:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>X9 trust hierarchy would be built on a stable, dedicated root. <\/strong>The X9 PKI framework requires a dedicated, PQC-ready root CA that wouldn\u2019t be used for other applications. At this time, DigiCert is the only CA that has been authorized to create such a dedicated root of trust (i.e., \u201ctrust chain\u201d or \u201c<a href=\"https:\/\/www.thesslstore.com\/knowledgebase\/ssl-support\/explaining-the-chain-of-trust\/\">chain of trust<\/a>\u201d).<\/li>\n\n\n\n<li><strong>This system is designed specifically with financial security and infrastructure in mind.<\/strong> It would be designed to serve the unique needs of financial services providers and their technologies (i.e., ATM machines, POS systems, etc.) rather than web browsers and website users. For example, payment processors have massive deployments of fixed-function equipment in use globally, which makes it virtually impossible to upgrade on a regular basis. &nbsp;<\/li>\n\n\n\n<li><strong>The standard wouldn\u2019t be influenced by irrelevant parties.<\/strong> Web PKI is oriented to meet the needs of browsers and is governed by the CA\/B Forum and other entities, some of which aren\u2019t relevant to financial organizations. X9 PKI is a standard that aligns with financial service providers\u2019 needs rather than being shaped by browsers and other non-financial services entities.<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\">What Are ASC X9 and ASC X9F?<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/x9.org\/\"><strong>The Accredited Standards Committee X9 Inc.<\/strong> (<strong>ASC X9<\/strong>)<\/a> is a non-profit organization that develops and maintains national and international standards for the financial services sector. <a href=\"https:\/\/x9.org\/x9-member-companies\/\">X9 members<\/a> include:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>American Bankers Association<\/li>\n\n\n\n<li>Credit card companies like Discover Financial Services, MasterCard Europe Sprl, and VISA<\/li>\n\n\n\n<li>NACHA (the Electronic Payments Association)<\/li>\n\n\n\n<li>NIST<\/li>\n\n\n\n<li>PCI Security Standards Council<\/li>\n\n\n\n<li>Thales e-Security, Inc.<\/li>\n\n\n\n<li>USDA Food and Nutrition Service<\/li>\n\n\n\n<li>U.S. Treasury Department\u2019s Office of Financial Research<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>ASC X9F<\/strong> (also known as the Data and Information Security Subcommittee) is the subgroup that\u2019s charged with creating the independent X9 Financial PKI framework to meet the unique needs of the U.S. Financial Services industry. <a href=\"https:\/\/x9.org\/x9f-public-key-infrastructure-pki-study-group\/\">ASC X9\u2019s PKI Study Group<\/a> has:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>identified the sector\u2019s specific PKI use cases (of which now there are 34 as of 2024)<\/li>\n\n\n\n<li>developed a framework and <a href=\"https:\/\/csrc.nist.gov\/glossary\/term\/certificate_policy\">certificate policy<\/a> (CP) that\u2019s designed to meet financial organizations\u2019 needs for more secure and trustworthy tokenization, certificate and key management, and data encryption<\/li>\n\n\n\n<li>will oversee the X9 Financial PKI as its governing body.<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\">What Will the X9 PKI System Be Used For?<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Examples of some specific use cases include:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Cryptographically securing ATM machines\u2019 connections with banking systems to prevent data theft and malware installation<\/li>\n\n\n\n<li>Securing POS systems\u2019 credit card data in transit to protect consumer data<\/li>\n\n\n\n<li>Use of load keys to enable PIN encryption for ATM and POS devices<\/li>\n\n\n\n<li>Ensuring the integrity and security of inter-bank digital communications without relying on external dependencies<\/li>\n\n\n\n<li>Providing a verifiable means of document provenance<\/li>\n\n\n\n<li>Signing financial services software<\/li>\n\n\n\n<li>Facilitating digital signatures for financial transactions<\/li>\n\n\n\n<li>Securing the new <a href=\"https:\/\/www.iso20022.org\/iso-20022-message-definitions\">ISO 20022 messages<\/a>, which will take effect on July 14, 2025 (previously set for March 10, 2025) for the Federal Reserve\u2019s <a href=\"https:\/\/www.frbservices.org\/resources\/financial-services\/wires\/iso-20022-implementation-center#:~:text=FRFS%20will%20adopt%20the%20ISO,messages%20with%20ISO%2020022%20messages\">Fedwire<\/a><\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\">What the X9 Financial Services PKI and Standard Aim to Achieve<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Ultimately, the goal of X9 PKI is to provide organizations with the tools, skills, and knowledge to overcome PKI complexities and address the industry\u2019s ever-evolving cybersecurity threats and concerns.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This project involves expanding modern public key infrastructure in a way that works specifically for the Financial Services industry without external interference. But what are the advantages of creating a unique and separate private PKI for this specific industry?<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Stronger data security and confidentiality.<\/strong> Designing PKI to meet specific use cases (such as transport layer security [TLS] for ATMs and POS devices) will enable financial entities to better protect their sensitive data in transit.<\/li>\n\n\n\n<li><strong>Simplified deployment and enhanced interoperability.<\/strong> We saw what happened when <a href=\"https:\/\/groups.google.com\/g\/mozilla.dev.security.policy\/c\/RHBHXJOG8Io\/m\/FJuaWeXAAQAJ?pli=1\">Web PKI standards shifted from SHA1 to SHA-2<\/a> \u2014 chaos reigned as financial organizations were left scrambling for interoperability solutions. X9 PKI aims to improve integration and increase interoperability in part by enabling organizations with existing PKIs to cross-certify with the X9 RCA.<\/li>\n\n\n\n<li><strong>Improved cryptoagility.<\/strong> Financial organizations need to have the tools and framework to combat the advanced threats posed by cybercriminals using modern tools and future quantum computing technologies.<\/li>\n\n\n\n<li><strong>Reduce outages and decrease costs<\/strong>. It\u2019s no secret that outages and inadequate security have a direct impact on a business\u2019s bottom line. This means everything from the costs of responding to <a href=\"https:\/\/www.thesslstore.com\/blog\/2-cyber-incidents-that-cost-one-companys-clients-6m\/\">cybersecurity incidents<\/a> or operational interruptions to the revenue losses stemming from a brand\u2019s reputational damages. Implementing a secure and stable PKI that\u2019s tailored to the sector\u2019s needs can help mitigate these issues and reduce direct and indirect costs. &nbsp;<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\">X9 PKI Is the Next Security Transition for Financial Services<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">The financial sector is no stranger to data privacy and security-related changes:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Adoption of Europay, Mastercard, and Visa (EMV) technology (i.e., smart chips) in payment cards,<\/li>\n\n\n\n<li>Implementation of the <a href=\"https:\/\/www.thesslstore.com\/blog\/demystifying-pci-dss-compliance\/\">PCI Data Security Standards<\/a> (PCI DSS)<\/li>\n\n\n\n<li>Incorporation of multifactor authentication (MFA)<\/li>\n\n\n\n<li>Compliance with other data security and privacy regulations (e.g., NYDFS, GDPR, etc.)<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">The development of X9 Financial PKI isn\u2019t something that\u2019s happened overnight. It\u2019s something that has been in the works for the better part of a decade:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"354\" src=\"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/x9-financial-pki-timeline-1024x354.jpg\" alt=\"A timeline graphic that illustrates the development of the X9 PKI system and framework for the financial sector\" class=\"wp-image-18305\" srcset=\"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/x9-financial-pki-timeline-1024x354.jpg 1024w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/x9-financial-pki-timeline-300x104.jpg 300w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/x9-financial-pki-timeline-768x265.jpg 768w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/x9-financial-pki-timeline-1536x531.jpg 1536w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/x9-financial-pki-timeline.jpg 1600w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\"><em>Image caption: This timeline illustrates the processes that have taken place over the last eight years to bring us to where we are in the X9 Financial PKI development process.<\/em><\/figcaption><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">Something to note is that this year (2025) is when X9 study group members will begin to see the fruits of their labor. For example (the following dates are estimates):<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Q2 2025:<\/strong> <a href=\"https:\/\/www.digicert.com\/blog\/author\/dean-coclin\">Dean Coclin<\/a>, Senior Director of Digital Trust at DigiCert who is chair of the ASC X9 PKI Study Group and <a href=\"https:\/\/cabforum.org\/about\/leadership\/\">CA\/B Forum<\/a>, said he expects the key ceremony for the creation of its X9 dedicated root and issuing CA for testing will be held in April.<\/li>\n\n\n\n<li><strong>Q3-Q4 2025:<\/strong> DigiCert will hold a key ceremony to create its X9 production root and issuing CAs. A WebTrust CA audit will also be required to ensure the CA\u2019s <a href=\"https:\/\/csrc.nist.gov\/glossary\/term\/certification_practice_statement\">certification practice statement<\/a> (CPS) and operations align. An additional check will verify that the CPS meets the X9 CP PKI requirements.&nbsp;<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\">Let\u2019s Wrap This Up: Why a Dedicated Financial PKI Is Necessary<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">The need for X9 PKI boils down to different needs and use cases of the Financial Services industry. For example, the ways that POS systems connect to credit card companies and ATM machines connect to banks are very different from a human using a browser to visit websites.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">If your organization needs to secure data in transit for a payment system, then the X9 PKI may be a better fit for your needs than traditional <a href=\"https:\/\/www.thesslstore.com\/products\/ssl.aspx\">SSL\/TLS certificates<\/a> from a browser-trusted CA. <a href=\"https:\/\/www.thesslstore.com\/contact.aspx\">Reach out to our PKI team<\/a> and we\u2019ll help you determine if X9\u2019s PKI will meet your needs. <\/p>\n","protected":false},"excerpt":{"rendered":"<p>After about eight years of planning and development, the Accredited Standards Committee X9 Inc. (ASC X9) is ready to launch its new PKI system \u2014 one that&#8217;s custom-built to meet&#8230;<\/p>\n","protected":false},"author":17,"featured_media":18307,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":"","tve_updated_post":"","tve_custom_css":"","tve_user_custom_css":"","tve_globals":{},"tcb2_ready":0,"tcb_editor_enabled":0,"tve_landing_page":"","_tve_header":"","_tve_footer":""},"categories":[13107,17,10200],"tags":[13317,13315,13316],"class_list":["post-18299","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-beyond-hashed-out","category-industry-lowdown","category-monthly-digest","tag-financial-services","tag-x9","tag-x9-pki","post-with-tags"],"views":6657,"jetpack_featured_media_url":"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2025\/02\/x9-pki-feature-image3.jpg","_links":{"self":[{"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/posts\/18299","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/users\/17"}],"replies":[{"embeddable":true,"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/comments?post=18299"}],"version-history":[{"count":0,"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/posts\/18299\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/media\/18307"}],"wp:attachment":[{"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/media?parent=18299"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/categories?post=18299"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/tags?post=18299"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}