Skip to main content

DigiCert Software KeyStore

A DigiCert provided certificate storage, where the certificate is installed locally, and the keys are protected by a PIN.

Key feature includes:

  • Support certificate operations

  • Support backup/restore and migration of the entire keystore

  • PIN-protected

  • Encrypted storage which prevents usage on another machine

Initialize token

As a first step, you need to initialize the DigiCert Software KeyStore token.

  1. To do this, click DigiCert Software KeyStore in the left pane and click Initialize token from Quick actions.

  2. Enter a new administrator password and a new user PIN and click Initialize.

Once you initialize the token, you can see the following options under Quick actions.

quick_actions.png

Opmerking

Refer to PIN management and Certificate management sections, for more information on the Quick actions.

Backup token

This option takes a backup of all the keys and certificates and stores it in a DigiCert Software KeyStore specific backup format that ends with *.bkup file extension. This option is useful in cases where you change your workstation or operating system.

  • Click Backup token and enter the token administrator password, user PIN and a password (minimum length 8 characters) for the backup file.

  • Click Backup to take the backup of keys and certificates.

Restore token

This option restores your keys and certificates from the backup file.

  1. Select Restore token and choose the backup file. Choose the backup file. Enter the administrator password, user PIN for the DigiCert Software Keystore. Also, provide the password for the backup file when it was created.

  2. Restoring token purges the existing keys and certificates in the current keystore. Enable the checkbox Archive existing keys and certificates to archive them as a zip file. The archived zip files are available in the ~/.digicert-trust-assistant/bkup directory.

Register provider (for Windows)

The option is only available when you use DigiCert Trust Assistant on Windows operating system. It allows you to install DigiCert Software KeyStore provider, enabling the use of keys and certificates stored at DigiCert Software KeyStore from browsers and other applications.

Support for DigiCert Software Keystore provider is available from DigiCert Trust Assistant version 1.1.0 and onwards.

Opmerking

The installation requires local administrator privilege.

  1. To register a provider, click Register provider which prompts a dialog.

  2. Clicking Submit triggers the execution of the DigiCert Software KeyStore provider installer. You will see a system pop-up requesting you to allow the application to make changes to your workstation if you do not have local administrator privilege.

    Opmerking

    This installer is available at <install directory>/resources/dsksprovider.msi

  3. Proceed with the on-screen steps to install and register DigiCert Software KeyStore provider.

Register token (for mac)

The option is only available when you use DigiCert Trust Assistant on mac operating system. It allows you to install DigiCert Software KeyStore token, enabling the use of keys and certificates stored at DigiCert Software KeyStore from browsers and other applications.

Support for DigiCert Software Keystore token is available from DigiCert Trust Assistant version 1.1.1 and onwards.

Opmerking

The installation does not require local administrator privilege.

  1. To register a provider, click Register token which prompts a dialog.

  2. Clicking Submit triggers the execution of the DigiCert Software KeyStore token installer.

    Opmerking

    This installer is available at <install directory>/resources/DSKSToken.pkg

  3. Proceed with the on-screen steps to install and register DigiCert Software KeyStore token.