Update
If one or more certificates on your card expire, or you want to issue a new certificate, perform the update operation.
The administrator configures user permissions for card update operation. For more information, see Administrator guide.
Update a card
The administrator defines the list of update options in policy settings. The following steps describe how to update a card with the maximum set of options.
Connect a card to the workstation.
Select Update in the card menu.
Select certificate templates.
Administrator settings
The user can select certificate templates if you enable the Select optional certificates when card is updated option in policy settings (Workflow → User permissions → Issued card operations).
Enter User PIN.
If your card stores third-party certificates, select the certificates to register them in Axidian CertiFlow.
Administrator settings
The user can select certificates if you enable the Search for certificates when card is issued or updated to track validity period and Allow user to select tracked certificates options in policy settings (Workflow → General).
Click Update.
Send documents for approval
The card update operation can be suspended if, according to your company's regulations, the certificate is updated only after documents are approved by the CA or the administrator. In the card update window, you will see the message Card update operation pending and the card gets the Pending status.
The administrator defines the document approval settings. For more information, see Administrator guide.
Types of documents
Depending on the regulations, the set of documents varies:
- Certificate request — submitted to the CA for approval. The administrator can precheck the request.
- Certificate — submitted to the administrator for review after the CA approves the certificate update.
- Certificate request and certificate — first the CA approves the request, then the administrator reviews the certificate.
How to send documents
Send the documents for the certificate update:
- In Axidian CertiFlow, if the internal document management functionality is configured.
- Outside Axidian CertiFlow, by any other means authorized in your company. For example, by email.
- Through Axidian CertiFlow
- Outside Axidian CertiFlow
To send a document for approval:
Open the card menu and go to the Contents tab.
Open the document:
- For a certificate request — click
next to the required certificate template.
- For a certificate — click
next to the required certificate template and select Certificate.
- For a certificate request — click
Sign the document. How to sign documents
Repeat steps 2 and 3 for each requested document.
Wait for approval. The certificate status on the Contents tab changes depending on the stage:
- Pending — the request has been submitted, the CA or administrator has not yet made a decision.
- Valid — the CA has approved the request, the certificate is awaiting administrator review.
- Approved — all checks have been passed, the certificate is ready to be written to the card.
When the certificate gets the Approved status, open the card menu and click Resume updating.
If the request is rejected in the CA, you have the following options:
- Revoke and clear the card, then issue it again.
- Cancel the update, then start the card update operation again.
If you do not have the corresponding permissions, contact the administrator.
If the administrator rejected a document, correct the errors and re-upload the document to Axidian CertiFlow.
- Provide the administrator with signed documents in accordance with your company’s regulations.
- Wait for approval. On the Contents tab in the card menu, the certificate status changes from Pending to Approved.
- Open the card menu and click Resume updating.
If the request is rejected, you have the following options:
- Revoke and clear the card, then issue it again.
- Cancel the update, then start the card update operation again.
If you do not have the corresponding permissions, contact the administrator.
If the administrator configured automatic email notifications, you will receive emails about the progress of approval:
- Document approved — the administrator approved the document.
- Card update operation approved — the certificate is ready to be written to the card.
- Card update operation rejected — the card update operation is rejected.
If notifications are not configured, monitor the certificate status on the Contents tab and the appearance of the Resume updating option in the card menu.
Cancel update
You can cancel the card update if the following conditions are met:
- The administrator has configured the cancel update permission in the policy settings.
- The certificate update request is configured to be verified by the CA (the certificate has the Pending or Rejected status)
To cancel the card update:
- Select Cancel update in the card menu.
- Enter User PIN.
- Connect the card to the workstation and click Cancel update.
The card returns to the Issued state.