Issue software token in Certificate Manager
This article describes how to issue a software token in Smart ID Certificate Manager (CM). This task is done in the Registration Authority (RA) in Certificate Manager.
Software tokens can be issued in PKCS #12 format. Depending on the PIN procedure, the PIN code will be distributed in different ways.
Procedure with Key Archiving
If the procedure used to issue certificates implies key archiving, a key will be generated and archived by the server before storing it in the PKCS#12 file.
Procedure with Key Recovery
The certificate delivered together with the recovered key can be either a certificate issued during the recovery procedure or an old, reused, certificate. Which type of certificate that is delivered depends on how the key procedure is configured.
The officer may manually search for the certificate and key to be recovered. Otherwise the server will search for the keys to be recovered using the data in the certificate input fields. The key procedure specifies if only the last issued certificate and key should be recovered or if all archived keys for the user should be recovered.
A key recovery action is always issued to the server when generating a software token.