RUKKENZH
Ask AI
SectionsVAT & e-invoices (ESF)
How to Update the Digital Signature (ЭЦП) in 1C After Reissuing Keys
Article language:🇷🇺 RU🇰🇿 KK🇬🇧 EN🇨🇳 ZH

How to Update the Digital Signature (ЭЦП) in 1C After Reissuing Keys

СТ
Сапа Т.И. — 1C and accounting expert, practising trainer

If you have reissued your EDS keys (for example, after the certificate expired, requisites changed, or a reinstallation), you can update the certificate in 1C:Accounting for Kazakhstan yourself, without contacting technical support — this is done through the program settings. Below is a detailed procedure, as well as common mistakes and a list of what should be checked to make the exchange with the IS ESF work right away.

When you need to update the EDS certificate in 1C

Rebinding a new certificate to the program is required in several common situations:

  • the validity period of the previous EDS key has expired and a new set has been obtained from the NCA RK;
  • the keys were reissued due to a change in the organization's data, the full name of the manager or accountant;
  • the previous key medium was lost, damaged, or revoked;
  • you transferred the keys to a new computer or a new secure medium.

As long as the old (already invalid) certificate is specified in the 1C settings, sending and signing electronic invoices in the IS ESF will end with an error. Therefore, updating the certificate is a mandatory step after any reissue of keys.

Preparation before updating

Before changing the settings in the program, carry out the preparatory steps:

  • save the new EDS keys to the standard storage directory or to a secure medium that 1C has access to;
  • make sure that the new certificate is installed in the personal certificate store of the operating system (when working through a cryptographic provider) or is available as a file;
  • check that you have the password for the key container;
  • close unnecessary sessions with the IS ESF to avoid conflicts when changing the certificate.

Step-by-step procedure for updating the certificate

  1. Open the Administration section.
  2. Go to General settings.
  3. Open Electronic invoices.
  4. Go to Setting up electronic invoices.
  5. Find the IS ESF Users item and select the required user.
  6. In the "Select a certificate to log in to the IS ESF" field, specify the new certificate.
  7. Save the changes.

After this, 1C will use the updated EDS key to work with the IS ESF.

If there are several IS ESF users

In an organization, different employees may sign and send ESF — for example, the manager and the accountant. Each of them has their own EDS key. Therefore, if the key reissue affected several people, repeat the certificate replacement for each user in the IS ESF Users list separately. Specifying the certificate for only one user will not update the keys for the others.

Verification after updating

To make sure that the new certificate has been picked up correctly, perform control actions:

  • check that the certificate selection field displays exactly the new certificate with a current validity period;
  • perform a test connection to the IS ESF from the program (authorization under the required user);
  • try to sign and send one document (for example, a test or the next ESF) to make sure that the signing goes through without errors;
  • make sure that the status of the sent document in the IS ESF has changed to "delivered"/"processed".

Common mistakes

  • Forgot to update the certificate for all users. If the keys were reissued for both the manager and the accountant, but the certificate in 1C was changed for only one — the second employee will not be able to sign documents.
  • An old certificate was selected from the list. Previous (invalid) certificates often remain in the store. Carefully select the new one — go by the validity period and the issue date.
  • The new certificate is not installed in the system. If the keys are only copied to a medium but not added to the personal store/cryptographic provider, the program will not see them in the selection list.
  • The owner's data does not match. The certificate must correspond to the IS ESF user (their IIN/data). In case of a mismatch, authorization and signing will not go through.
  • Sessions have not been restarted. Sometimes, to apply the new certificate, you need to re-authorize in the IS ESF or restart the program.

What to do if the new certificate is not displayed

If the new key does not appear in the certificate selection field:

  • check that the certificate is actually installed and has not expired;
  • make sure that the key medium is connected and recognized by the system;
  • check the correct operation of the cryptographic provider through which 1C accesses the keys;
  • refresh the list of certificates in the selection form (reopen the settings window);
  • if necessary, reinstall the certificate in the personal store and repeat the selection.

What to check

  • The new certificate is specified in the section Administration → General settings → Electronic invoices → Setting up electronic invoices → IS ESF Users.
  • The certificate has been updated for all IS ESF users whose keys were reissued.
  • The validity period of the new certificate is current.
  • A successful test connection and sending of a document to the IS ESF has been performed.
  • Old invalid certificates are not selected by mistake.

Thus, updating the EDS after reissuing keys is performed using the standard tools of 1C:Accounting for Kazakhstan and does not require contacting support — it is enough to specify the new certificate in the IS ESF user settings and check the operability of the exchange.

Read also

Sources

🔎 Digital signature, NCA RK, NCALayer — is the outage on the government side or yours? Check whether it works right now: independent automated checks, 90-day history.
Was this article helpful?
💼 Need help with 1C or accounting? Слава КВЦ — many years of 1C practice in Kazakhstan. Explore the annotated Tax Code of RK 2026 or ask in the BuhGPT chat — answers in seconds.