Lifecycle Management - Users

Users interact with the platform to perform actions on their assigned identity devices, such as smart cards or mobile credentials, based on their access permissions and organizational guidelines.

The Identities option allows you to add new authenticators as well as manage the lifecycle of the existing identity devices as per the organization’s policy. The lifecycle actions for the smart cards/security keys, mobile devices, and mobile identities are managed separately. You can perform the following lifecycle actions:

  • Suspend
  • Reactivate
  • Renew
  • Change PIN
  • Report Incident
  • Reset PIN with PUK

Select the identity and select Manage. Based on the status of the device the options are displayed.

Identity Devices

The following are the possible lifecycle actions based on the status of the identity device (smart cards or security keys).

Suspend

When an active device (smart card, security key) is lost/damaged, you can suspend the device to avoid misuse. To suspend the device, select the identity, and select Manage > Suspend. Select one of the below-listed reasons to suspend the device and confirm.

  • On leave
  • Misconduct
  • Misplaced device
  • Other

Reactivate

To reactivate a suspended device, select the identity, and select Manage > Reactivate.

Renew

You can renew the expired certificates on smart cards and security keys. This option is available only if the certificates are eligible for renewal otherwise, it is unavailable.

  1. Select the connected device for which the certificates have expired. Connect the identity device.
    1. For Smart card: Connect a card reader to your computer and insert a smart card.
    2. For Security Key: Insert the security key into a USB port.
  2. Select Manage > Renew. Enter the device PIN, select the certificates to renew, and select OK. The certificates are renewed.

Change PIN

This option is available for smart cards and security keys.

  1. Connect the identity device.
    1. For Smart card: Connect a card reader to your computer and insert a smart card.
    2. For Security Key: Insert the security key into a USB port.
  2. Select the connected identity.
  3. Select Manage > Change PIN.
  4. Enter the old PIN.
  5. Next, enter a new PIN, and confirm it.
  6. Select OK. The PIN is changed.

Report Incident

To report an incident regarding a lost, stolen, or damaged device, select the identity, and select Manage > Report Incident. Provide a reason and proceed to suspend the device.

Reset PIN with PUK

If you have forgotten your PIV device PIN, you can reset it with the option Reset PIN with PUK. You need to contact your helpdesk operator for the PUK number.

  1. Connect the identity device.
  2. For Smart card: Connect a card reader to your computer and insert a smart card.
  3. For Security Key: Insert the security key into a USB port.
  4. Select the connected identity.
  5. Select Manage > Reset PIN with PUK.
  6. Request your helpdesk operator to provide the PUK value.
  7. Enter it, then enter the New PIN and confirm the same.
  8. Select OK. Your device PIN is reset.

Mobile Devices

To manage the mobile device lifecycle actions, select the issued mobile identity. Select Manage and choose an action to perform as described below. The process to perform each action is similar to that of an identity device.

  • Suspend
  • Reactivate
  • Report Incident
  • Renew: Renew the expiring certificates issued.