The present invention relates to a method and a server for providing, in a tamperproof manner, a key certificate (Z) for a public device key (Kpub) of a user device (1), which is installed for a user, by means of a server (2) belonging to a service provider who provides the user with a service via the user device (1), wherein the server (2) provides the user device (1) with the key certificate (Z) if a signing request message (CSR) received by the user device (1) is successfully verified by the server (2) using a one-time password (OTP) generated for the user device (1) by the server (2).
展开▼