A public key server (or Certificate Authority) is needed to support encryption on a server by providing public keys and certificates to clients. This enables asymmetric encryption and secure key exchange. Firewalls filter traffic, and private keys must be kept secret on the server itself, not exposed.