Home / Resources / Fix PKI Token Error on ICEGATE

Troubleshooting

How to fix the PKI token error on ICEGATE

"Error connecting to PKI component" or "No PKI Applet Found" are the most common errors ICEGATE users hit when trying to sign Bills of Entry or Shipping Bills. Here's why it happens and how to fix it.

Same-Day Verification Free PAN India Delivery Authorized RA for 4 Licensed CAs 4.8★ Rated Need a DSC? Enquire →
Same-Day Verification Free PAN India Delivery Authorized RA for 4 Licensed CAs 4.8★ Rated Need a DSC? Enquire →

What causes this error

ICEGATE relies on a local PKI component (a small utility running on your computer) to communicate between your browser, your DSC token, and the ICEGATE website. The error appears when that local component isn't installed, isn't running, or your browser is blocking it from communicating on localhost.

How to fix it, step by step

Work through these in order, most cases are resolved by the first two or three steps.

1

Install or reinstall the ICEGATE PKI component

Download the correct PKI component (32-bit or 64-bit, matching your system) from the ICEGATE utilities section, right-click the installer and choose Run as Administrator.

2

Install your token's drivers

Confirm your USB token's drivers (Proxkey, InnaIT, HypSecu, etc.) are installed and up to date, the PKI component depends on the OS detecting your token correctly.

3

Restart your browser (and computer, if needed)

Fully close and reopen your browser after installing the PKI component. If the error persists, restart your computer as well.

4

Check your browser is supported

ICEGATE's signing tools historically work best in Internet Explorer/Edge in IE mode, though the newer web-based signer utility supports Chrome, Edge and Firefox, use whichever your specific ICEGATE flow recommends.

5

Run your browser as Administrator

Right-click your browser shortcut and choose Run as Administrator before logging into ICEGATE and attempting to sign again.

6

Check for port conflicts

If you have multiple DSC-related utilities installed (from different CAs or portals), they can conflict trying to use the same local port. Try closing other signing utilities before using ICEGATE.

Screenshot placeholder, ICEGATE PKI component error message

Still stuck after trying these steps?

PKI component errors can be fiddly to diagnose remotely without seeing your screen, we're happy to help troubleshoot directly.

Remote troubleshooting for ICEGATE signing errors
Support regardless of which vendor issued your original DSC
Guidance on the right Combo DSC setup for ICEGATE

Frequently asked questions

ICEGATE requires encrypted submission for customs documents, so you need a Combo (Signing + Encryption) DSC, a Signing-only certificate will not register successfully.

Not usually, the PKI component error is a local software/driver issue, separate from your certificate's validity. Check your certificate expiry separately if signing still fails after fixing this.

Browsers can't directly access your USB token's private key for security reasons, the local PKI component acts as a secure bridge between your browser, the token, and the ICEGATE website.

Related guides & services

Trusted & associated with

eMudhra Capricorn Identity Services SpeedSign Certifying Authority vSign Watchdata Proxkey HyperSecu Precision InnaIT
eMudhra Capricorn Identity Services SpeedSign Certifying Authority vSign Watchdata Proxkey HyperSecu Precision InnaIT