A Country Signing Certification Authority (CSCA) certificate is a self-signed root certificate used to issue certificates for national Document Signers, Master List Signers, and other trusted entities within the ePassport Public Key Infrastructure (PKI).


The CSCA Certificates module provides a centralized view of all CSCA certificates imported into the NPKD Service. It also enables operators to import additional certificates and perform various management operations.


To access this functionality, navigate to Manage Certificates > CSCA Certificates. The following screen is displayed:



The configuration items are as follows: 


Items

Description

Subject DN

Displays the Subject Distinguished Name (DN), which uniquely identifies the CSCA certificate.

Issuer DN

Displays the Distinguished Name of the issuing authority of the certificate.

Valid From

Indicates the date and time from which the CSCA certificate becomes valid.

Valid To

Indicates the expiry date and time of the CSCA certificate.

Country

Specifies the country for which the CSCA certificate has been issued.

Source

Indicates the origin of the certificate. The available values are:

  • Manual: Certificate imported manually from the file system using the Import CSCA Certificate option.
  • ICAO PKD: Certificate retrieved automatically from the ICAO PKD during the download process.

Import CSCA Certificate

Allows the operator to import a CSCA certificate from the local file system. Selecting this option opens the import screen. This option is available via the vertical ellipsis menu at the top-right corner of the screen.

Make Trust Anchor

Registers the selected CSCA certificate as a trust anchor in the ADSS Trust Manager.

View Details

Displays detailed information about the selected certificate, including its source, validity, and import history.

Delete

Removes the selected CSCA certificate from the NPKD Service.



Importing CSCA Certificates

CSCA certificates can be imported manually from the local file system. To do so, click the vertical ellipsis (⋮) at the top-right corner of the screen and select Import CSCA Certificate.


This opens the following screen:




Viewing Certificate Details

To view detailed information about a CSCA certificate, click the vertical ellipsis (⋮) at the end of the corresponding row and select View Details. The system displays the certificate details, including import information and metadata:




Advanced Search

The Advanced Search feature is available on the CSCA Certificates screen and can be accessed using the search icon:



This feature allows operators to search for specific CSCA certificates using the following criteria:

  • Status
  • Subject DN
  • Issuer DN
  • Valid From
  • Valid To
  • Country
  • Source


See also

CSCA Certificates
DS Certificates