Sie sind auf Seite 1von 21

How to Download Digital

Signature Certificate
STEP I: Preconditions before installing
/ claiming your certificate:

Please ensure that:

1. Operating system is either Microsoft Windows XP (Service Pack-2) or Microsoft Windows


2000 (Service Pack-4) or above

2. Internet Explorer version is 6.0 or above.

3. All the latest patches and updates have been applied.

4. The system is free from any viruses, worms or spyware.

5. System time and date are correct.

6. Your e-mail adderess is correct and valid and there is enough space in your inbox (The
password for claiming your certificate will be sent by e-mail

7. Your spam protection will not bounce or delete any mails from MTNLtrustline.
STEP II: Change the Following Settings in Internet Explorer
and check the Interenet Browser Compitability:

 Active-X controls need to be


enabled in your Internet
browser.

 Open a Internet Explorer or


any other browser window.

 Click on Tools menu and then


click on Internet Options.

 You will see the following


window on that click on
'Security' tab on the top.

 Then Click 'Default Level' and


set it to 'Medium'
Test your Internet Explorer browser compatibility before
proceeding for Registration

 Click below to test your Internet Explorer browser


compatibility before proceeding for Registration

http://www.mtnltrustline.com/keygencheck.htm

 You must see the message "Congratulations You


may proceed for registration" after compitability
check. If it is appearing cloce the window and
proceed further.
STEP III: You must have receive two
mails from MTNL Trust Line

 Note: Please do not attach USB Token to USB Port while downloading the digitsal
signature.

 First Email : PreRegistration for MTNL Class 2 Individual Certificate. This Email is
sent to you as soon as we receive your documents and register you for a Digital
Certificate. In this email you will also have your Pre Registration Number (6
DigitNumeric). This is important. Store your Pre registration Number carefully.

 Second Email : Subject: Certificate Claiming password for Class 2 Individual


Certificate. This email you will receive after 24-48 hours of receipt of the first mail.
This Email is sent to you after your documents are verified and is found to be
correct. This Email contains Password : (8 Digit Alpha Numeric) . This detail you
will require to claim the certificate.

 Click here to claim Digital Signatures:


https://webra.mtnltrustline.com/eui/Class2Indvclaim.jsp
 After click on above link you will see the below window in which you have to give
information which had emailed to you in two emails.
After click on submit button you will see below window. In this window you have to give
your Gender, Date of Birth, Father's Name, & Nationality. Then click on Submit button.
After click on submit button you will see below window. In this window select Microsoft
Enhanced Cryptographic provider v1.0 and click on Generate Key.
After click on Generate Key You will see the below window where you have to click on
Yes button
After click on Yes button you will see the below window where you have to click on OK button
After click on Yes button you will see the below window where you have to click on Yes button
After click on Yes button you will see the below window where you have to click on OK button
After click on Ok button Your Certificate has been installed.
STEP IV: Installation of Hierachy Trust
Chains.

You will now need to Install the 'Hierachy Trust Chains'. To install the
'Hierachy Trust Chains', do the following:

1. Click the below link

http://www.mtnltrustline.com/cert/MtnlTrustLineHierarchy.p7b

2.Click Save to save the file


3.Right click the saved file and click install certificate
4. Next
5. Ensure that ""Automatically select certificate store is chosen"".
6. Next
7. Next
8. Finish
STEP V: Your certificate is now ready
for use.

 To see if the Digital Certificate


has been installed correctly, do
the following steps:

 Open a Internet Explorer or


browser window.

 Click on Tools menu and then


click on Internet Options.

 Then Click on 'Content' tab on


the top and then click the button
labelled 'Certificates'.
After click on Certificate Button Click on the 'View' button after highlighting the Certificate from the list shown
above. See picture below
Your Certificate details will be displayed as shown below. Please acquaint yourself with the
various details available on the form shown below.
Check the status of certificate by clicking certification path and the screen will
display as follows: Certification Status should be "This Certificate is OK."
This Certificate can be used to sign any document electronically. But before usage it is very
important to take Backup (Export) of Digital Signature Certificate.
STEP VI: How to take Backup of
Digital Signature Certificate:

 After downloading backup of digital signature is very imortant. For backup of DSC you
have to follow export procedure. Follow following steps:

1. Open Internet Explorer


2. Go to Tools, Internet Option, Content, Certificates.
3. Select the certificate which you want to export.
4. click on export button, then click next
5. Select Yes export the private key, click next
6. Select "Include All cetificate.........." & "Enable strong privatekey...............", click next
7. Provide password, click next
8. Click on browse, choose the destination where you want to save the DSC Backup, give file
name, click save, click next
9. Click finish, click ok
10. You will see one file with envelop & key icon to your desired location. Copy that file to any
media like, UDB Pendrive, Hard drive, CD, etc.

 Click here for screenshot of backup procedure:


http://www.pnddigisign.com/backup.pdf
STEP VII: CLICK HERE TO KNOW HOW TO INSTALL DIGITSL
SIGNATURE IN USB E-TOKEN

Installation of Digital Signature in UKEY USB E-Token:

 First Install the UKEY Driver: Click below link to download UKEY Driver :

http://www.pnddigisign.com/UKeyCSP.exe
 Then Install Digital Signature in Ukey: Click below link to know How to Install Digital Signature in Ukey

http://www.pnddigisign.com/usb.pdf
Installation of Digital Signature in PSA USB E-Token:

 This Token doesnot require saperate drivers installation

 Install Digital Signature in PSA: Click below link to know How to Install Digital Signature in PSA

http://www.pnddigisign.com/PSA.pdf
DO's

 Make a backup of the certificate as soon as it is installed correctly, by exporting it with a different password. To
enable the export, certificate should be installed with "Mark private key as exportable" option.

 Store the exported certificate in a reliable, media (eg. CD, USB Pen Drive, Hard drive), with atleast two copies, in
a secure place.

 Enable stong protection and high security while installing the certificate. USB token is recommended.

 Always use a difficult to guess, storng password for the certificate.

 Always change the defult PIN/password after installing the certificate.

 The PC on which the certificate with the private key is installed should be physically secure.

 If a certificate with private key is not needed on a PC any more, remove the certificate immediately.

 In case of compromise of password or Private Key, or loss or theft of smart card/ USB token, contact our RA
MTNL Trust Line and revoke the certificate immediately.

 For high security transfer, have the certificate into a smart card or USB token.

 Download and install the CRLs periodically.

 Remove the certificate from PC before sending it out for any repairs or h/w upgrades.
DONT'S

 Do not share the password with another person.

 Do not allow others to access the PC, where the key is stored/installed.

 Do not allow a person other than the one on whose name certificate is
issued, to use the certificate.

 Do not use web space or email account or a floppy disc to store the backup
copy of the certifciate.

 Do not transfer the smart cards or USB Tokens.

 Do not use digital signature on untrusted web sites and applications.

Das könnte Ihnen auch gefallen