About Redtrust
Discover what Redtrust is, how it safeguards certificate private keys, and how it controls who uses them, where, and when.
Discover what Redtrust is, how it safeguards certificate private keys, and how it controls who uses them, where, and when.
Complete reference for the Redtrust agent installation parameters, including those supported on macOS.
Configure email alerts for certificate use and expiration through a TLS-capable SMTP service.
Digital certificates verify online identity and enable secure communication; learn how Redtrust manages them.
Configure your browser to work with the Redtrust extension so you can use certificates on sites that require digital identification.
Create a policy to control which users can use a certificate and in which applications or sites.
Define access to the eCAC domains of Brazil's Receita Federal, specifically the DCTF procedure, using site groups and regular expressions.
Set up mapped sites to control certificate use on services that authenticate through a centralized gateway such as VÀLid or Giltza.
Define which domains a user can reach when authenticating through a third-party application with client TLS, such as Brazil's PJe.
A domain in Redtrust defines the authentication method a group of users uses to access the service.
Sample SOAP requests and responses for common operations in the Redtrust DSS API.
Reference for the methods of the Redtrust DSS signing service, compliant with the OASIS DSS standard.
The Events section centralizes system activity logs so you can monitor certificate use and meet traceability requirements.
Get started with Signtrust, the Redtrust web and mobile signing tool, to sign documents with your certificates from any device.
Understand which security layer Redtrust controls over certificate use and how it fits alongside your other layers of protection.
Learn the first steps to use a certificate with Redtrust, from creating a policy to verifying your setup on the Spanish DGT online portal.
Install, configure, and uninstall the Redtrust agent on Debian, Red Hat, and Ubuntu to use signing certificates through PKCS#11.
Install, configure, and uninstall the Redtrust agent on macOS and iOS, including Firefox support through PKCS#11.
Mapped sites bring services that authenticate through gateways or intermediary applications under Redtrust's control.
Policies define the rules and restrictions that determine how certificates can be used in Redtrust.
What you can do with Redtrust on macOS and iOS, and how it differs from other platforms.
Block specific browsers from accessing Redtrust when a policy already allows full application access.
Block access to a single AEAT procedure, such as Modelo 190, while keeping the rest of the site available using a blocklist policy.
Reference for the Result object the GetAccessibleCertificates method returns in the DSS API.
Reference for the role permissions that control access to certificates, users, and admin console features.
Redtrust uses role-based access control (RBAC) to define which actions each user can perform.
An example scenario that illustrates how roles, users, and priorities work in Redtrust.
Sign PDF documents with a certificate-based digital signature that verifies the document's origin and integrity.
Reference for the events the server mode agent writes to the Windows event log to help you diagnose problems.
Overview of the DSS-related schemas included in the service definition and their purpose.
Set a user PIN for the first time and change it, an extra layer of security for using certificates in Redtrust.
Integrate Redtrust with SharePoint so users can sign documents from their libraries using Azure as the identity provider.
Enable unattended browsers mode to use Redtrust certificates in browsers without the extension, in automated environments.
Learn about the different signing modes in Redtrust and how each fits user or automated-system signing.
Define signature profiles and timestamp servers for the Redtrust DSS signing service.
Reference for the web signature settings and how they affect the signed document.
Reference for the JSON parameters the SharePoint integration sends to the Signtrust signing endpoint.
Reference for the response codes SignResponse returns in the DSS API.
System certificates, such as email certificates, are distributed automatically to all Redtrust clients.
Why automatically configuring the Redtrust extension in incognito and InPrivate can't be guaranteed, and the supported alternatives available to you.
Unattended browsers mode lets automated systems use certificates in browsers without the extension.
Sign documents unattended or in bulk with the Redtrust agent and AutoFirma, without user interaction.
Renew or replace a CA certificate in Redtrust so agents receive it at their next sign-in.
Upgrade or downgrade the Redtrust agent and unit, including high-availability deployments.
Use a digital certificate with Redtrust and confirm the agent works correctly, with no prior knowledge required.
The user PIN is an extra layer of security that helps prevent unauthorized use of certificates.
Install and uninstall the Redtrust agent on Windows using standard, silent, or server mode installation for unattended environments.