Key Manager Plus Cloud facilitates integration with emSign signing authority (powered by eMudhra), making it possible for enterprises to automate the end-to-end management of web server certificates signed and issued by emSign from a centralized platform. This document discusses the steps to manage the life cycle operations of SSL/TLS certificates issued by emSign directly from Key Manager Plus Cloud, right from importing existing orders, certificate request and provisioning, to deployment, and thereupon.
Refer to the sections that follow to learn more about emSign integration and certificate management with Key Manager Plus Cloud:
To begin managing SSL certificates issued by emSign from Key Manager Plus Cloud, users should add their emSign account in Key Manager Plus Cloud via your unique API Key. If there is no emSign account, contact the emSign team for sign up and get the login credentials.
Once the emSign account is created, follow the steps below to generate an API key to begin the integration process:
Upon submitting the request, you will get an access key generated by the system to use the emSign platform via REST API.
Additional Detail
Refer to this emSign documentation for more information about generating an API key from the emSign portal.
Now, log in to Key Manager Plus Cloud, and add your emSign credential with the unique Account Number and Access Key by performing the below steps:

Once the emSign account details are linked to Key Manager Plus Cloud, the system retrieves vital information such as accounts, groups, organizations, and domains and organizes them under the individual tabs with corresponding details. These details are crucial as emSign CA issues certificates based on them. For further manual synchronization, users can use the Sync Groups, Sync Organizations, and Sync Domains options from the More dropdown in the tab by selecting the respective credentials.
Upon successful integration of the emSign account into Key Manager Plus Cloud by providing the Username and Access key, you can import certificate orders from the emSign portal or create emSign certificate orders and retrieve certificates directly from Key Manager Plus Cloud.
If users have an active emSign account, it is likely that they currently have ongoing certificate orders. Key Manager Plus Cloud offers the convenience of initiating new certificate orders and importing and effectively managing all existing orders from the emSign portal through its user-friendly interface. The next step is to import all certificate orders from the emSign portal into Key Manager Plus Cloud.
To import the existing certificate orders, follow the steps below:

All the existing certificate orders associated with your emSign account will be imported into Key Manager Plus Cloud.
To place a new certificate order, follow the steps below:

Additional Detail
Users have the option to either paste the CSR content directly or choose the CSR created via Key Manager Plus Cloud, eliminating the need to select it from the local files.
Additional Detail
For any discrepancies in the emSign-related details (Organization/Product/Domain) shown here, please verify the information on the emSign portal. Then, perform a manual synchronization under emSign >> Manage in Key Manager Plus Cloud to view the updated details. For any other issues related to the emSign account, please contact the emSign customer support team.
Once a certificate order is successfully created, you can view it under the Integrations >> Public CA Integrations >> emSign tab, with its status displayed to the right. To track the certificate availability for an order, select the order and click Check Order Status from the top pane. Once a certificate is issued, it is fetched and added to Key Manager Plus Cloud. You will be able to view it under SSL >> Certificates.
Additional Detail
Certificates issued will be added to Key Manager Plus Cloud only if there is enough license count available. If the license count reaches the provided limit, you should renew your Key Manager Plus Cloud license before retrieving or importing any certificates. However, this will not remove the certificate request from emSign CA and the certificate remains accessible and manageable through the emSign portal.
Key Manager Plus Cloud allows you to revoke emSign certificates right from its interface. To revoke a certificate from Key Manager Plus Cloud, follow the steps below:

To delete emSign certificate orders from Key Manager Plus Cloud, follow the steps below:
Upon execution, the certificate orders will be deleted from Key Manager Plus Cloud and the related certificates will remain intact in the SSL tab.
Additional Detail
The Delete option only removes the certificate order from Key Manager Plus Cloud, and you can no longer manage it from Key Manager Plus Cloud. However, it does not delete the certificate order from emSign CertHub - the certificate can still be viewed and managed from the emSign portal.