Import certificates
Bring certificate inventory data from your certificate management systems into DigiCert® Quantum Central to build a centralized view of your cryptographic environment.
Quantum Central uses cryptographic details from each certificate, such as key algorithm, key size or curve, and signature algorithm, to assess quantum-safe status. This helps identify certificates that may require remediation or governance. Certificate imports do not include private keys.
Supported import sources
You can import certificate inventory data from the following sources:
Trust Lifecycle Manager - Connect directly with DigiCert ONE. No CSV upload required.
CyberArk Certificate Manager - Upload a CyberArk certificate CSV export.
Keyfactor Command - Upload a Keyfactor full certificate extract report.
CSV file - Upload a certificate metadata CSV in the provided format.
Start a certificate import
In Quantum Central, select Inventory from the left navigation.
Select the Certificates tab.
Select Import certificates.
In the Import Certificates panel, select the source you want to import from.
Import from DigiCert Trust Lifecycle Manager
Use this option to bring certificate inventory data from DigiCert® Trust Lifecycle Manager into Quantum Central without uploading a CSV file.
To connect Quantum Central to Trust Lifecycle Manager, see Integrate Trust Lifecycle Manager.
After the integration is configured, Quantum Central imports certificate data from Trust Lifecycle Manager every time you sign in. You can also refresh the data on demand by selecting the Sync Assets button.
Import from CyberArk Certificate Manager
Use this option to import certificate inventory data from a CyberArk Certificate Manager CSV export.
The CSV export must include the fields required by Quantum Central, including certificate identity, validity, subject and issuer details, and cryptographic details such as key algorithm and key size or curve.
The CSV export must include the following columns:
Column | Description |
|---|---|
CN | Certificate common name |
Thumbprint / Serial | Unique certificate identifier |
Not Before / Not After | Validity period, in ISO 8601 format |
Key Algorithm | Key algorithm, such as RSA, ECDSA, or ML-DSA |
Key Size / Curve | Key size or curve, such as 2048 or P-256 |
Issuer DN | Full issuer distinguished name |
Subject DN | Full subject distinguished name |
SANs | Subject alternative names, separated by semicolons |
To import the file in Quantum Central, select CyberArk Certificate Manager in the Import Certificates panel, upload the CSV export, and select Import.
Import from Keyfactor Command
Use this option to import certificate inventory data from a Keyfactor Full Certificate Extract Report.
Quantum Central accepts the report as a CSV file.
To prepare the file in Keyfactor Command:
Sign in to the Keyfactor Command Management Portal.
Open Reports, Report Manager.
Open Full Certificate Extract Report.
Select a certificate collection. To include all certificates, select All Certificates.
Choose whether to include revoked or expired certificates.
Run the report and export it as a CSV file.
To import the file into Quantum Central, select Keyfactor Command in the Import Certificates panel, upload the CSV file, and select Submit for analysis.
Import from another CSV file
Use this option when you have certificate inventory data from another source, such as an internal spreadsheet or export.
Quantum Central accepts a CSV file that contains certificate metadata only. The import does not include private key material.
To prepare the file, download the sample CSV from the Import Certificates panel and use it as a template. Match the sample template’s columns for the cleanest mapping.
To import the file:
In the Import Certificates panel, select Other CSV file.
Select Download sample CSV and prepare your certificate metadata file.
Drop the CSV file into the upload area, or select Browse files.
Select Import.
After you import certificates
After Quantum Central processes the import, the certificates appear on the Inventory page, under the Certificates tab.
Use the certificate inventory to review certificate details, assess quantum-safe status, and identify certificates that may require remediation or governance. You can also create Jira tasks for certificates that need follow-up, so remediation work can be assigned and tracked through your existing workflow.