Certificates and backup
Manage your company certificates under Certificates. An encrypted backup preserves them for restoration on this computer or another one.
Open certificate files using their certificate password. Open backups using the app password that was valid when they were exported, or the corresponding recovery key.
Fig. 1: Company certificate and certificate replacement
Add and select a certificate
- Open Certificates and select Add certificate.
- Select your
.p12or.pfxfile and enter its certificate password. - Check Certificate holder, Issued by, Valid until and Certificate fingerprint.
- For local files, select Use for sealing. The app marks the certificate as Selected for sealing (1).
You can store up to eight certificates; duplicate imports are rejected. Expired certificates and certificates that are not yet valid cannot be used for sealing.
For Memida requests, the fingerprint configured there determines the certificate. Your local selection does not override this assignment.
Replace a certificate
Select Replace certificate (2) to import a successor certificate and compare it with the previous one:
- Select the previous certificate, then Select and import successor certificate.
- Check the organization, DAkkS registration number, validity and fingerprint against your records.
- Confirm I have checked the organization and DAkkS registration number against my records.
- Select Select successor certificate for local sealing.
The previous certificate remains stored. Differences in organizations or DAkkS registration numbers are displayed; clarify missing numbers using your records. Only currently valid successor certificates can be activated.
For Memida requests, the successor certificate must also be configured in Memida. Replacing it locally does not transfer any approvals or permissions. Export a new backup after the replacement.
Remove a certificate
Select Remove on the certificate and confirm Remove certificate. To import it again, you will need the original file and its password, or a corresponding backup.
Create a new backup afterwards. Older backups retain their previous set of certificates.
Fig. 2: Export and restore a certificate backup
Export a backup
- Unlock the app and open Settings → Backup.
- Select Export backup (1).
- Choose a save location and wait for confirmation.
The backup contains all stored certificates. Update it after every certificate import, replacement or removal, and after every password change.
Backup matches the current certificates and password confirms the export. The app does not detect if the file is later moved or deleted.
Restore a backup
The import replaces your stored certificates. Back them up first if you still need them.
- Open Settings → Backup and select Import backup. Alternatively, select Import backup on the setup or lock screen.
- Enter the Backup's app password. Alternatively, select Use recovery key instead and enter the key and a new app password.
- Open the backup file with Select and import backup (2).
- When prompted, save the recovery key and export a new backup.
The backup must come from the same environment. If the password is incorrect, the file is damaged or the backup is incompatible, the import is canceled; your existing data is preserved.
Change or reset the app password
If you know your password, open Settings → Security → Change password. Confirm the previous password and set a new one. Your certificates and recovery key are preserved. Older backups retain the password used at the time.
If you have forgotten your password, select Forgot app password? on the lock screen. Enter the recovery key and set a new password. Then save the new key and a new backup.
Without the app password or the matching recovery key, Memida cannot unlock your stored certificates.