← Back to Services

Start

DSC Renewal, Replacement & Revocation

An expiring, lost or changed DSC is not simply extended: the licensed CA issues a new certificate, normally against a new key pair and current identity/authority checks.

National regulator framework / issuer process

Last Reviewed: 29 July 2026
Next scheduled review: 29 October 2026
Reviewed by: IndiaBusiness.ai Editorial

Who it’s for

Subscribers whose certificate will expire before the next filing or tender.
Authorised signatories whose organisation, role, PAN mapping or certificate fields changed.
Subscribers with a lost, damaged or potentially compromised token.
Organisations replacing a departed authorised signatory.

When you may not need it — Do not renew a former employee’s or former director’s certificate for organisational convenience. If the authority ended, revoke/discontinue that certificate and issue the appropriate certificate to the new authorised person. A portal accepting eSign may not require a reusable DSC.

Verified at-a-glance facts

“Renewal” outcome
New certificate; do not describe it as adding years to the old certificate
Cryptographic key
A re-keyed/reissued certificate uses a new key pair and serial number
KYC
Current issuer/CCA identity-verification requirements apply
Expired signatures
A certificate’s expiry does not automatically invalidate a signature that was validly made and can be validated, but the expired key cannot be used for a new signature
Lost/compromised token
Revocation should be initiated; waiting for normal expiry is unsafe

Decision table

Certificate approaching expiry; identity and authority unchanged
Apply for new certificate before the filing window
Token lost or private-key control uncertain
Revoke promptly, then apply for replacement
Person left organisation or signing authority withdrawn
Organisation requests revocation where appropriate; issue to correct subscriber
Name/PAN/organisation field incorrect
New/modified certificate process under issuer rules; portal mapping may also need correction
Middleware error only
Diagnose driver, signer utility, browser and portal mapping before buying a new DSC

Process

Step 1

Read the certificate’s issuer, serial number, expiry, subject fields and intended portals.

Step 2

Determine whether the issue is expiry, technical failure, field mismatch, loss, compromise or authority change.

Step 3

Back up non-secret configuration information; never export or copy the private key contrary to token rules.

Step 4

Complete the licensed CA’s current KYC/subscriber agreement.

Step 5

Generate/store the new key in the approved environment.

Step 6

Download the new certificate, register it on each portal and test.

Step 7

Revoke the old certificate if compromised or no longer authorised; update the lifecycle register.

Documents needed

  • Existing certificate details and issuer information.
  • Current PAN/identity/address evidence under the selected KYC route.
  • Organisation proof and fresh authority for organisational-person DSC.
  • Portal list, roles and upcoming deadlines.
  • Loss/compromise statement or revocation authorisation where relevant.

What IndiaBusiness takes care of

  • Root-cause check before replacement.
  • Renewal/re-key/revocation decision note.
  • Licensed-CA application support and portal remapping.
  • Expiry calendar with 60/30/15-day reminders as an internal service standard.
  • Signatory exit checklist integrated with HR/secretarial controls.

Questions founders ask

Can my old token be reused?

Possibly, if the device remains compliant, functional and supported by the issuer. This is an issuer/device decision; it must never lead to copying or exposing a private key.

Should I renew only after expiry?

No. Apply early enough to complete KYC and portal remapping before a filing or bid. IndiaBusiness may use reminder targets, but it must not call them statutory renewal windows unless a portal specifies one.

Do I need to unregister the old DSC from every portal?

Portal workflows differ. Some require registering the new certificate; others retain history. Follow each portal’s procedure and ensure an unauthorised old certificate is revoked.

Is renewal free?

No universal statement is safe. The licensed CA’s displayed certificate, token, tax and service charges apply. IndiaBusiness fees must be shown separately.

Information is general and reflects sources reviewed on the date shown. Eligibility, documents, fees, timelines and outcomes depend on the applicant’s facts and the current law, authority portal or platform policy. IndiaBusiness provides advisory and execution support; approval and enforcement decisions remain with the relevant authority, certification body, platform, bank or other decision-maker.