The Digidentity Certificate Manager product allows you to purchase and manage PKIoverheid (PKIo) certificates on behalf of your organisation.
Before Certificate Manager can be issued, we verify your identity, the organisation, and whether you are authorised to request certificates on its behalf.
When is an authorisation required?
You will usually need an authorisation if you are not listed in the Dutch Trade Register as an independently authorised representative of the organisation.
The letter must be signed by the legally authorised representative or representatives identified in the Trade Register.
Why is a Letter of Authorisation required?
Certificate Manager gives you permission to purchase and manage PKIo certificates on behalf of an organisation. If you are not independently authorised to represent that organisation, its legally authorised representative must approve your Certificate Manager application.
The Letter of Authorisation confirms that:
- The organisation is aware of your Certificate Manager application.
- The organisation’s legally authorised representative approves the application.
- You have permission to request and manage PKIo certificates on behalf of the organisation.
How do we determine who must sign?
During your Certificate Manager registration, we check the organisation’s official information in the Trade Register of the Dutch Chamber of Commerce (KvK).
We use this information to determine who is legally authorised to represent the organisation and who must sign the Letter or Letters of Authorisation.
We must follow the information recorded in the Trade Register and cannot change it.
If the registered representatives or their signing authority are incorrect, the organisation must first update its information with the Chamber of Commerce before the registration can continue.
Why did I receive multiple Letters of Authorisation?
Some organisations are registered with joint representation. This means that multiple authorised representatives must approve certain actions together.
If joint representation applies to your organisation, multiple Letters of Authorisation may be generated. Each letter must be signed and submitted by the authorised representative named on that letter.
This is not an error. It reflects the organisation’s official registration in the Trade Register.
How does the authorisation process work?
- You start the Digidentity Certificate Manager registration.
- You provide your organisation’s Chamber of Commerce number and details.
- We check the Trade Register to determine whether you are independently authorised to represent the organisation.
- If additional authorisation is required, we automatically generate one or more Letters of Authorisation.
- The legally authorised representative or representatives review and sign their letter.
- The signed letter or letters are submitted according to the instructions provided during the registration.
- We review the submitted documents.
- After approval, you can complete your Certificate Manager registration.
Once your Certificate Manager registration is complete, you can request a PKIo SBR or PKIo Server certificate through the Self Service Portal.
Is a Letter of Authorisation always required?
No. A Letter of Authorisation is generally required when:
- You are not registered as an independently authorised representative in the Trade Register.
- The organisation is represented jointly by multiple authorised representatives.
- Additional confirmation of your authority is required.
If you are registered as an independently authorised representative, a Letter of Authorisation is usually not required.
Why is this required if Digidentity has already verified me?
Personal identity verification and organisational authorisation are separate checks.
Even if Digidentity has already verified your identity or you use another Digidentity product, we may still need confirmation that you are authorised to request PKIo certificates on behalf of the organisation.
How long is the Certificate Manager authorisation valid?
The authorisation provided through Certificate Manager is valid for five years and is separate from any PKIo certificate you purchase.
Your Certificate Manager authorisation and PKIo certificates can therefore have different expiry and renewal dates.
For more information, see: What components does a Certificate Manager registration and PKIo SBR certificate consist of?
Please note: A Letter of Authorisation used during the registration is valid for 14 days.
This is different from the five-year validity of the Certificate Manager authorisation itself.