A certificate credential (including a private key) that'll be used for signing system events. The certificate's subject DN will be used in the meta.security.authorIdentity field. The CA hierarchy or the validity of the certificate isn't considered. Supported private key algorithms are ECDSA (recommended) or RSA.