Issued certificates
Anmerkung
This feature is available from version 1.2.0.
In the Certificate profiles window, you can view information about the certificates issued from the selected profile. You can see the details of each certificate and manually renew or recover it if eligible.
Issued certificates table
The table lists information about the issued certificate.
Action status column
Renewable: This certificate is eligible for renewal. It will be automatically renewed during the next background action for auto-configured profiles. You can also renew it manually using Quick actions, as explained in the section below. For a certificate to be renewable, the following conditions must be met:
Renewal window reached: The certificate must be within its renewal period.
Valid status: The certificate must be valid. Expired, revoked, or suspended certificates cannot be renewed.
Exists on the device: The certificate must be present on the device. Certificates issued on another machine’s software token cannot be renewed unless migrated.
Not already renewed: The certificate must not have been previously renewed.
Recoverable: This indicates that the certificate is recoverable. You can recover it manually using Quick actions, as explained in the section below. If the Enable auto recovery upon sign-in option is enabled during certificate profile creation, recoverable certificates will be automatically recovered during sign-in. For a certificate to be recoverable, the following conditions must be met:
Key escrowed: The private key of the certificate is stored in the DigiCert ONE cloud.
Does not exist on the device: The certificate is not available on the device. A certificate recovered on another machine can also be recovered.
Resumable: This indicates that the certificate was issued but failed to import during the enrollment or renewal process. You can resume the process through Quick actions, as explained in the section below. For a certificate to be resumable, the following conditions must be met:
Failed to import during issue/renew: An issue occurred that prevented the certificate from being imported.
Is not key escrowed: Certificates that are key escrowed will be shown as Recoverable. Only certificates that are not key escrowed will be shown as Resumable.
Token column
This column indicates whether the certificate exists on the device. If it does, you can click the token label link to be redirected to the token pane where the certificate is located.
Quick actions
Click the three-dot menu under the first column to open the Quick actions menu.
Details: Opens the Issued Certificates Details dialog, providing more information about the certificate. Additional details will be displayed when Advanced mode is enabled.
Renew certificate: Opens the Enrollment window for renewal. For more information, see Manual certificate enrollment and renewal.
Recover key: This option is available if the key is recoverable. Opens the Key recovery window for key recovery.
Resume enrollment: This option is available if the certificate is resumable. If you select this option, the Resume enrollment window is launched to resume the failed installation operation. Make sure that you are using the same machine you initially enrolled with, or the resume operation will fail.