Private Key Files

Part of the PKI approach used in TLS, means, every Certificate file a computer wants to use fully, it must also ha ve a matching Private Key file.

Private Key files is critically important, and must be kept very secure. They allow any computer with a matching certificate to represent itself as what's in the certificate.

For example, the Host System 1 has both Client and Server certificates. These certificates contain information stating they is for the system host1.

Because only Host System 1 have the private key files for these certificates, it's the only one that can say "I am host1".

If a unauthorised person is to obtain one of the these key files, they could make their own certificates claiming one of the IR Systems is host1 instead. This could potentially give them access to your virtualisation servers, which are not what do you want.

