AWS IoT Core Integration Guide

Provision IoT Devices to AWS IoT Core Cloud Services using JITR and our
X.509 digital certificates for device authentication

Quickly and Securely Provision IoT Devices to AWS IoT Core Cloud

GlobalSign engineers have developed an integration guideline to help customers more easily enroll their IoT devices into the popular AWS IoT Core cloud, using GlobalSign provisioned x.509 digital certificates. The integration enables secure authentication into AWS IoT Core cloud service through AWS’ Just-in-Time Registration (JITR) for device certificates.

JITR allows customers to use their own certificates when enrolling their devices into the AWS IoT. This is ideal for GlobalSign customers whose IoT devices carry valid GlobalSign provisioned x.509 certificate identity credentials.

GlobalSign’s IoT Identity Platform and IoT Edge Enroll Registration Authority enables each device or endpoint to enroll and receive a unique device identifier via an X.509 digital certificate to create a strong device identity. This primary identifier is known by many names; Birth Certificate; Initial Device Identifier (IDevID), or what AWS refers to as a bootstrap certificate, and can be used for authentication by AWS IoT.

Because AWS JITR enables automatic registration, it can scale to high volumes. Likewise, GlobalSign’s IoT Identity Platform and IoT Edge Enroll are highly scalable, capable of issuing over 3,000 certificates per second and millions per day - it's an ideal match with the high-volume AWS IoT ecosystem.

The useful integration guide shortens integration time, eliminates integration obstacles, and reduces time-to-market. This pdf download is for anyone who wants to learn how GlobalSign integrates with AWS IoT Core to provide a secure, scalable IoT cloud connection.