Lifecycle Management - Users
Users interact with the platform to perform actions on their assigned identity devices, such as smart
cards or mobile credentials, based on their access permissions and organizational guidelines.
The Identities option allows you to add new authenticators as well as manage the
lifecycle of the existing identity devices as per the organization’s policy. The lifecycle actions
for the smart cards/security keys, mobile devices, and mobile identities are managed separately. You can
perform the following lifecycle actions:
- Suspend
- Reactivate
- Renew
- Change PIN
- Report Incident
- Reset PIN with PUK
Select the identity and select Manage. Based on the status of the device the options are
displayed.
Identity Devices
The following are the possible lifecycle actions based on the status of the identity device (smart cards
or security keys).
Suspend
When an active device (smart card, security key) is lost/damaged, you can suspend the device to avoid
misuse. To suspend the device, select the identity, and select Manage
> Suspend. Select one of the below-listed reasons to suspend the
device and confirm.
- On leave
- Misconduct
- Misplaced device
- Other
Reactivate
To reactivate a suspended device, select the identity, and select Manage >
Reactivate.
Renew
You can renew the expired certificates on smart cards and security keys. This option is available only if
the certificates are eligible for renewal otherwise, it is unavailable.
- Select the connected device for which the certificates have expired. Connect the identity device.
- For Smart card: Connect a card reader to your computer and insert a smart card.
- For Security Key: Insert the security key into a USB port.
- Select Manage > Renew. Enter the device PIN, select the certificates to renew,
and select OK. The certificates are renewed.
Change PIN
This option is available for smart cards and security keys.
- Connect the identity device.
- For Smart card: Connect a card reader to your computer and insert a smart card.
- For Security Key: Insert the security key into a USB port.
- Select the connected identity.
- Select Manage > Change PIN.
- Enter the old PIN.
- Next, enter a new PIN, and confirm it.
- Select OK. The PIN is changed.
Report Incident
To report an incident regarding a lost, stolen, or damaged device, select the identity, and select Manage > Report Incident. Provide a reason and proceed to
suspend the device.
Reset PIN with PUK
If you have forgotten your PIV device PIN, you can reset it with the option Reset PIN with
PUK. You need to contact your helpdesk operator for the PUK number.
- Connect the identity device.
- For Smart card: Connect a card reader to your computer and insert a smart card.
- For Security Key: Insert the security key into a USB port.
- Select the connected identity.
- Select Manage > Reset PIN with PUK.
- Request your helpdesk operator to provide the PUK value.
- Enter it, then enter the New PIN and confirm the same.
- Select OK. Your device PIN is reset.
Mobile Devices
To manage the mobile device lifecycle actions, select the issued mobile identity. Select
Manage and choose an action to perform as described below. The process to perform
each action is similar to that of an identity device.
- Suspend
- Reactivate
- Report Incident
- Renew: Renew the expiring certificates issued.