The Short Answer: Your DSC Lives in Three Places
Your DSC — Digital Signature Certificate — is a digital identity document that lets you sign documents with legal effect in many Asian jurisdictions, including India and Malaysia. When people ask "where is my DSC," the answer is usually one of three places: the certificate store of the operating system you signed from (Windows or macOS), the certificate manager in your browser (Chrome or Edge), or the login portal of the certifying authority (CA) that issued it. Your CA delivered the certificate as a file — usually with the private key bundled in — and once installed, signing software reads it automatically from the system or browser store.
You do not need to be an IT professional to check it. In a few minutes you can open the right viewer, read the key fields, confirm whether it is still valid, and decide whether it needs renewal before your next GST return, e-tender submission, or company filing.
What a DSC Is — and What the Certificate Tells You
A DSC binds your identity to a cryptographic key pair. The private key stays with you and does the signing; the certificate proves to the verifying party that the public key belongs to you and that a licensed authority vouched for your identity when it issued the certificate.
In India, DSCs are issued by certifying authorities licensed by the Controller of Certifying Authorities (CCA), with Class 2 used for most business signing and Class 3 for high-value signing on hardware tokens — a practical market convention. In Malaysia, digital certificates sit under comparable trust-provider arrangements for online transactions with government and business systems. Rules vary by country, so follow the CA that issued your certificate and the official authority running the system you file into for anything that sets your legal obligations. If you are comparing providers, our roundup of electronic signature providers explains how certificate-based and document-based signing approaches differ.
When you open a certificate, the fields that matter most are:
- Issued to / Subject. The name (and, for many Indian DSCs, the PAN or similar identifier) the certificate is bound to.
- Issued by / Issuer. The CA — your source for renewal, revocation, and support.
- Validity period. The "valid from" and "valid to" dates. If today is outside this range, the certificate will not sign anything.
- Serial number and fingerprint. Unique identifiers to compare against your CA's portal or delivery email.
- Key usage. What the certificate may do — typically digital signature, and often data encryption for encrypted email or documents.
These fields answer most "my DSC stopped working" questions: who issued it, how long it lasts, and what it may do.
How to View Your DSC on Windows
On Windows, your DSC is almost always in the current user's Personal certificate store.
- Press Windows + R, type
certmgr.msc, and press Enter. - In the left panel, expand Personal and select Certificates.
- Find your certificate (usually under your name) and double-click it. The General tab shows issuer and validity dates; the Details tab shows serial number, thumbprint, and key usage; the Certification Path tab shows the trust chain — a warning there usually means an incomplete installation.
If you signed in with a different Windows user account, or the certificate was installed into the Local Machine store, it will not appear under Personal — check both locations before concluding it is missing.
How to View Your DSC on macOS
On a Mac, certificates live in Keychain Access.
- Open Keychain Access (Spotlight search, or Applications > Utilities).
- Select the login keychain, then the My Certificates category.
- Double-click your certificate. The window shows the validity period and trust settings; expand Trust to see how macOS evaluates it.
- For the serial number and fingerprint, expand the entry in the main list, select the certificate item underneath, and choose Get Info.
If your DSC came on a USB token, the certificate may only appear while the token is plugged in — insert it before opening Keychain Access.
How to View Your DSC in Chrome or Edge
The same certificate is visible from your browser, which helps when a web portal (such as an e-tender or filing site) cannot find it.
- Chrome: Settings > Privacy and security > Security > Manage device certificates. Look under Personal on the Your Certificates tab.
- Edge: Settings > Privacy, search, and services > Manage certificates under Security. This opens the standard Windows certificate manager, so look under Personal.
If a portal says "no certificate found" but the certificate is in your system store, the causes are usually a different user profile, installation under another user's store, or key usage that excludes digital signature. Comparing the serial number with your CA's portal settles it.
How to Check Your DSC's Validity and Status
A usable certificate is more than unexpired — the CA must also not have revoked it. Checking both takes about a minute.
Validity dates. Read the "valid to" date. Most DSCs run one to three years, so mark the renewal window in your calendar — Indian CAs typically accept early renewal, which beats discovering a lapsed certificate on filing day.
Revocation status. Certificates are revoked early if a key is compromised or identity details change. Signing software usually checks this automatically via the CA's certificate revocation list (CRL) or online certificate status protocol (OCSP). To confirm manually, log in to your CA's portal and use its certificate status tool with your serial number.
Signature evidence. Keep the signed copy and any audit record the platform provides. If a signature is challenged, a complete trail — who signed, when, how identity was verified, and which certificate was used — makes it defensible; our guide to whether digital signatures hold up in court shows what convincing evidence looks like.
DSC Checkup: A Quick-Reference Table
Run this five-minute check before any deadline where your DSC is required.
How to Protect the Private Key and Keep Uses Separate
The certificate is public — the private key is what makes it yours. If the key is copied, anyone holding it can sign as you. Three habits keep it safe:
Treat the private key like a password. Never email it, store it in plain text, or hand it to a caller. For high-value signing — company filings, large tenders, finance documents — use a hardware token so the key never leaves the device.
Install on a device you control. Shared or public computers multiply the risk of the key being copied or the store tampered with.
Separate your signing identities. If your DSC is your tax and company filing identity, do not blur it with personal signing. A compromised filing certificate means revocation, re-issuance, and notifying every authority that accepted your old signatures — a headache a separate certificate avoids. Certificate-based signatures are only as strong as the protection around the key, and our assessment of whether electronic signatures are safe for business agreements explains how identity verification and audit trails hold up in practice.
Re-issue rather than extend. Many CAs issue a fresh certificate on renewal. Renewing early keeps signing continuous and gives you a clean certificate with a full validity period.
Beyond DSC: One Signing Workflow for the Rest of Your Documents
Your DSC covers the portals that demand certificate-based identity. Most daily documents — vendor contracts, employment agreements, statements of work — do not need a DSC; they need a trustworthy electronic signature workflow. Managing the two side by side is where teams lose time, so pick a platform that gives the same audit-trail confidence for everyday documents that your DSC gives for regulated filings.
Nota Sign, FaDaDa's global e-signature platform, provides identity verification, tamper-evident audit trails, and legally valid e-signatures across 100+ countries and regions, with APAC compliance depth — including alignment with iAM Smart, Singpass, and SES/AES/QES frameworks — that matters when your counterparties sit across borders. It has been ranked #1 in IDC's China e-signature software market for consecutive years and charges by document volume rather than per-seat fees. To see what a volume-based plan looks like for your team, send the Nota Sign team your monthly document volume.
Beyond the signature, Nota Sign handles the work around it: templates for recurring documents, bulk sending and automated reminders for high-volume paperwork, and centralized archiving where every completed file carries a downloadable evidence report you can retrieve years later. For teams already tracking certificate expiry dates and portal logins, consolidating everyday signing into one auditable system removes an entire category of administrative overhead.









