Delete and extend SUA certificate |
|
In the Payroll Setup - Domain setup - Swissdec Setup - General, a separate certificate must be stored for all clients.
When ordering the certificate, the information in the company data is included. Therefore, the information on the ELM insurance profile must match the company data; if there are discrepancies, this information must not simply be overwritten. You must contact the insurance company; you may also need to contact the BFS so that the data in the UID Register can be corrected.
If all the information is stored correctly, the following must be set up in the Swissdec setup menu: 1.To ensure that the correct URLs for the distributor and the distributor renewal are entered in the KLE and SUA sections, run the “Restore Default” function. 2.In SUA, click the “Order SUA Certificate” button. If the order was successfully processed, the user will receive the following confirmation: The new certificate does not yet have a password associated with it. This will be sent to you by mail. 3.Swissdec will then send the password letter via A+ Mail. Swissdec sends out password letters every Day 11 4.Once the password letter has been received, the password can be entered in the certificate list. To do this, open the certificate list in the Swissdec setup under “General” and enter the password for the corresponding certificate 5.Finally, the entered password must be sent back to Swissdec; to do this, step 2 must be repeated
Only now has the secure connection to the insurer been established.
The following description of the ordering process is very technical and is provided for informational purposes only. It explains what happens behind the scenes during the ordering process.
With the Get UID certificate (SUA) feature, the client to be set up sends a certificate template to Swissdec with our PrivateKey. Swissdec accepts it and records your PrivateKey. The unsigned certificate is then sent back and saved in the certificate table. A password is emailed at the same time. As soon as the password is entered, the certificate template can be signed with Swissdec. The password must be entered with a hyphen and resent using the Get UID certificate feature. The certifi-cate is sent back to Swissdec, with the password. Only now does the signed certificate template return. A correct UID PKCS12 certificate is created from it. Only from this point on can the certificate be used for communication with ELM V5.0, KLE and SUA.
The SUA certificate is valid for one year. SwissSalary notifies early enough about its expiration and that it must be renewed. If a new case is reported during this time, it is automatically extended by one year. If a SWS KLE management task queue is set up, it prevents the certificate from expiring.
IMPORTANT: If the passwords are set up in multiple clients, the password must always be stored in the relevant client via the Swissdec settings.
Renewal can be carried out a maximum of twice. A new certificate must be applied for after three years at the latest. The details of a deputy can be stored in the system as additional information. As a rule, this is a fiduciary office. The delegate (representative) is a third party appointed by the company (e.g. trustee, broker, etc.) who transmits the event report on behalf of the company using a Swissdec-certified ERP system and, depending on the order and agreement with the company, acts as the contact for all matters relating to the event. |