This article describes how to change certain parameters of a Certificate Authority (CA) in Smart ID Certificate Manager (CM). The name of the CA can be modified and the CA can be closed or reactivated.
Furthermore, CM includes functionality to renew CA certificates without breaking the certification chain of already issued end user certificates. Renewed CA certificates must replace the existing ones in the trust stores of all third party client software, server software and devices. The serial number and signature of the renewed CA certificate will differ from the certificate it replaces. A later expiry date and a different signing algorithm can optionally be chosen at time of renewal. After renewal, the old certificate will not remain in the database.
This task is done in Administrator's workbench (AWB).
Prerequisites
Step-by-step instruction
Related information
- Administrator's workbench (AWB)
- Authority administration tasks in Certificate Manager
- CA tasks in Certificate Manager
- Connect to a Certificate Manager host
- Create CA in Certificate Manager
- Publish CA in Certificate Manager
- Revoke CA in Certificate Manager
- Sign tasks in Certificate Manager
- Smart ID Certificate Manager