Skip to main content
Skip table of contents

System Certificates

Communication protection

The IDMS web API, web page, and client platforms all enforce mutually authenticated, encrypted connections for all transactions.Each transaction is governed and protected by SSL/TLS rules using the strongest cipher suites. The table below lists the different certificates that are used, and the respective location for each certificate.


IDCertificate Type/SystemDescriptionLocation
1SSL Certificate / Credential Management SystemUsed by the Web Server that is hosting the CMS. This certificate provides a means for the client to verify the CMS server.IIS Web Server Store
2SSL Certificate / IDMSUsed the by Web Server that is hosting the IDMS. This certificate provides a means for the client to verify the IDMS server.IIS Web Server Store
3Client certificate for IDMS to connect to CMSUsed by the IDMS to connect to the CMS API. This certificate enables the CMS to verify the IDMS.Current User, Personal Store of the account the IDMS is configured to run as.
4Enrollment Agent for CMS to connect to CA (Microsoft CA Only)Used by the CMSCurrent User, Personal Store of the account the CMS is configured to run as.
5Client certificate for IdExchange connect to IDMS.Used by the IdExchange microservice to communicate with the IDMS.Local Computer, Personal Store of the server where the IdExchange Microservice is installed.
6Client certificate for operators to connect to the IDMS and CMS systems.Used by the CMS and IDMS systems to authenticate operators and administrators.On the PIV credentials of the badge holders.



JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.