3/6 ✅ SOLUTION: Hybrid two-layer architecture
LAYER 1 - Classical PKI:
• X.509v3 certificates for legal entity identification
• Compatibility with existing PKI infrastructure
• Familiar trust mechanisms for IT teams
LAYER 2 - VDRs/EBSI (dPKI):
• Governance authorisation in verifiable registries
• DISINTERMEDIATED verification (no "phone home")
• Automatic cross-border interoperability via EBSI Trusted Issuers Registry