CCA Cryptographic Authorization Liaison

Class 3 Digital Signature Certificates (DSC)

Secure your corporate digital transactions. We coordinate the procurement of CCA-certified Class 3 DSCs and manage digital token mapping across the ICEGATE and DGFT platforms.

APPLY DSC

Configure & Buy Your Class 3 DSC

Select your options below. Prices update automatically and include 18% GST.

User Origin
Usage Type
Class Type
User Type
Validity
Certificate Type
KYC Type
Token Required

Note: Token prices include delivery charges. Delivery outside of INDIA is not available.

Certificate Charges ₹ 0
Token Charges ₹ 0
Total Price ₹ 0

* Prices are indicative, include 18% GST, and are subject to revision by the Certifying Authority. Final invoice will reflect the applicable CA rate at the time of application.

We Are Authorized Partners of CCA-Licensed Certifying Authorities

One Link Exim Solutions is an authorized channel partner for India's leading CCA-licensed Certifying Authorities, ensuring your Class 3 DSC is issued by a trusted, government-recognized provider.

All Certifying Authorities listed above are licensed by the Controller of Certifying Authorities (CCA), Government of India. View the official CCA licensed CA list. Logos are the property of their respective owners and are used with authorization for partner reference.

What is a Class 3 Digital Signature Certificate?

A Class 3 Digital Signature Certificate (DSC) is the highest class of cryptographic verification issued under the guidelines of the Controller of Certifying Authorities (CCA), Ministry of Electronics and Information Technology, India. Governed by the Information Technology Act 2000, a Class 3 DSC provides high-assurance security, verifying the authenticity, non-repudiation, and integrity of electronic document submissions. It is mandatory for most online regulatory filings on ICEGATE and DGFT portals for importers and exporters.

Validity
1, 2, or 3 Years
Renewal requires fresh verification
Legal Basis
IT Act 2000
CCA, MeitY, Government of India
Storage
FIPS USB Token
ePass2003, mToken, ProxKey
Required For
ICEGATE & DGFT
AD Code, e-RCMC, Bills of Entry

Why Your Business Needs a Class 3 DSC

For businesses engaged in international trade, a Class 3 DSC is mandatory for most online regulatory platforms. It is required to file import/export declarations such as bills of entry and shipping bills on ICEGATE, submit licensing requests on the DGFT portal, apply for electronic Registration-cum-Membership Certificates (e-RCMC), and register bank AD Codes at customs ports.

⚠️ The Class 3 DSC Combo Requirement for customs

Standard registrations on the DGFT portal can be executed using a basic Signature certificate. However, registering and mapping bank AD Codes or uploading EDI document filings on the ICEGATE customs portal requires a Class 3 Combo Certificate (which contains both individual Signature and Encryption components stored on a FIPS-compliant USB hardware token).

Signature vs Encryption vs Combo: Which Do You Need?

Certificate Type Purpose Required For
Signature Authenticates identity and legally signs documents DGFT filings, e-RCMC, standard registrations
Encryption Secures sensitive data files before transmission Encrypted email and data exchange
Combo (Recommended) Both Signature + Encryption on one token ICEGATE EDI filings, AD Code mapping, full customs clearance

Certified USB Hardware Cryptographic Tokens

Under CCA security guidelines, digital certificates cannot be downloaded directly as local files onto a computer. Instead, they must be securely stored on password-protected, FIPS-compliant USB hardware tokens (such as ePass2003, mToken, or ProxKey). This physical layer of security prevents unauthorized users from copying or exporting your private keys, protecting your business from transaction fraud.

CCA-Licensed Certifying Authorities We Work With

Class 3 DSCs are issued exclusively by Certifying Authorities licensed by the Controller of Certifying Authorities (CCA), Government of India. As an authorized partner, we procure certificates from the following trusted CAs:

vSign CCA-licensed Certifying Authority
XtraTrust CCA-licensed Certifying Authority
ProDigiSign CCA-licensed Certifying Authority
eMudhra CCA-licensed Certifying Authority
(n)Code Solutions CCA-licensed Certifying Authority
SignX CCA-licensed Certifying Authority
SpeedSign CCA-licensed Certifying Authority
PantaSign CCA-licensed Certifying Authority

All CAs listed above are licensed by the Controller of Certifying Authorities (CCA), Government of India. View the official CCA licensed CA list.

Procurement and Port-Mapping Process: Step-by-Step

Obtaining and mapping a digital signature involves precise identity verification and software configuration. We assist your trade teams through the process:

1

Profile Selection & Document Assembly

We analyze your business model to determine whether an Organizational or Individual Class 3 Combo certificate is required, and assemble your corporate registration documents.

2

Video & OTP Verification Coordination

We guide your authorized signatory through the mandatory mobile OTP and secure 30-second video verification processes required by licensed Certifying Authorities (CAs).

3

Hardware Token Loading

Once identity verification is complete and approved by the CA, we load the cryptographic keys onto a certified USB hardware crypto-token.

4

ICEGATE & DGFT PKI Mapping

We configure the necessary browser drivers and run the required Java PKI utilities to register and map your physical USB token inside your corporate ICEGATE and DGFT user profiles.

Required Document Checklist

  • PAN card copy of the applicant (authorized signatory).
  • Aadhaar Card copy or valid passport/voter ID for address verification.
  • For Organizational DSC: Company PAN, Certificate of Incorporation, Board Resolution, or official Authorization Letter.
  • An active, linked mobile number and corporate email address for verification.
  • FIPS-compliant USB hardware crypto-token (such as ePass2003).

Class 3 DSC Compliance FAQ

What is the validity period of a Class 3 Digital Signature? +
Class 3 Digital Signature Certificates are typically issued with a validity period of 1, 2, or 3 years. Once the certificate expires, you must complete the identity verification and procurement processes again to load a fresh, updated certificate onto your hardware token.
Can multiple people use a single Class 3 Organizational DSC? +
No. A Digital Signature Certificate is legally tied to the identity of a specific individual (the authorized signatory of the organization). Under the IT Act 2000, sharing your physical hardware token or its password compromises its legal non-repudiation status, making the authorized individual personally liable for all transactions signed by the token.
How can I resolve the "DSC Token Not Found" error on ICEGATE? +
This common issue is typically caused by missing or outdated hardware token drivers, utilizing an incompatible browser version, or missing Java PKI security configurations. We can assist by configuring your system's browser parameters and installing the necessary drivers to ensure your token communicates correctly with ICEGATE and the DGFT portals.
Which Certifying Authorities (CAs) are authorized to issue Class 3 DSCs? +
Class 3 DSCs are issued by CCA-licensed Certifying Authorities in India, including eMudhra, vSign, XtraTrust, ProDigiSign, (n)Code Solutions, SignX, SpeedSign, PantaSign, Capricorn, and NSDL e-Gov. One Link Exim Solutions is an authorized partner of vSign, XtraTrust, ProDigiSign, eMudhra, (n)Code Solutions, SignX, SpeedSign, and PantaSign. View the official CCA licensed CA list.
Is a Class 3 DSC mandatory for ICEGATE and DGFT filings? +
Yes. A Class 3 DSC is mandatory for most significant filings on the ICEGATE customs portal and the DGFT trade portal, including bills of entry, shipping bills, e-RCMC applications, and AD Code registrations. The specific certificate type (Signature vs Combo) depends on the transaction.
💬