Skip to main content

Renew certificates

To perform this action, you must have a user role that contains the Solution administrator permission.

Use Renew certificates to extend the validity of device certificates before or after they expire, helping maintain continuous device authentication and uninterrupted operations.

Certificate renewal behavior is determined by the associated certificate management policy and profile settings, including whether a new key pair, CSR, or approval workflow is required.

  1. In the Device Trust Manager menu, go to Certificate management > Certificates.

    The certificates table displays details of all the certificates issued on your account.

  2. Select the required certificate from the list.

  3. Select More actions > Renew.

  4. Under the Key generation settings, choose one of the available options:

    1. I have the keypair and will provide the CSR or public key in the request:

      • Choose this option if you already have a key pair. You must upload a CSV file or a ZIP file containing the device data.

      • If needed, download the provided template to ensure the file is formatted correctly.

    2. Key pairs will be generated on the server side by this application, and the private key and certificate will be included in response:

      Choose this option if you want Device Trust Manager to generate the key pair for you.

      Tip

      Key generation type behavior

      The Key generation type option is dynamically displayed based on the selected Device group and the associated Certificate management policy. Only the key generation methods that are supported by the chosen combination are presented to you.

  5. Optionally, enter a Description.

  6. Select Renew certificate.