Documentation Index

Fetch the complete documentation index at: https://docs.axiad.com/llms.txt

Use this file to discover all available pages before exploring further.

Upcoming Releases

Prev Next

July 29nd 2026

Conductor HI

UCMS 4.35.1, UP 2.26.2

This release extends Axiad Conductor's derived PIV credential capabilities with a dedicated Digital Signature certificate for Mobile PKI, issued automatically alongside the authentication certificate during enrollment. It also broadens device coverage with support for YubiKey 5.8.0 and adds more flexible Virtual Smart Card PIN/key configuration for administrators. Rounding out the release are targeted fixes across derived credential enrollment and device management, along with the latest third-party dependency security updates.

Features

PM-17611 – Digital Signature certificate for Mobile PKI derived credentials The Mobile PKI Credential Provider now issues a dedicated Digital Signature certificate alongside the authentication certificate during derived PIV credential enrollment. Issuance is transparent to the end user with no additional steps, the certificate is shown with its key usage in the credential list, and it supports the same lifecycle actions (renew, suspend, revoke) as existing certificates. Administrators can enable or disable each certificate independently and select the appropriate certificate template for the Digital Signature slot.

Enhancements

PM-19877 – Support for YubiKey 5.8.0 Added support for the latest YubiKey 5.8.0 firmware so these devices can be used for credential issuance and management.

PM-19136 – Configurable offline unlock key for Virtual Smart Cards Added an "Offline unlock key" option to the Virtual Smart Card credential profile. When both an AES and a TDES master key are configured, administrators can now choose which key is used to generate the offline PUK (AES by default, or TDES).

Bug fixes

PM-19338 – Derived PIV credential enrollment fails when dynamic role management is enabled Resolved an issue where derived PIV credential (DPC) enrollment failed when dynamic role management was enabled, because the required roles were not available when the enrollment QR code was scanned.

PM-17678 – Focus not set on the PIN entry field during Mobile PKI enrollment Resolved an issue where the cursor was not automatically placed in the PIN entry field at the start of Mobile PKI (derived PIV credential) enrollment, requiring users to click into the field before entering their PIN.

PM-19623 – Device update and PIN reset failing on YubiKey 5.7.3 FIPS devices Resolved an issue where device update and PIN reset operations failed on YubiKey 5.7.3 FIPS devices (non-FIPS devices were unaffected).

PM-19631 – Issuance failure with the FIPS crypto backend on Android Resolved an issue where credential issuance failed on Android when using the FIPS crypto backend.

Security fixes

PM-20029 – Addressed vulnerabilities: CVE-2026-55955, CVE-2026-53434.

PM-20043 / PM-20044 – Addressed vulnerability: CVE-2026-41710.

PM-20109 – Addressed vulnerability: CVE-2026-54291.

PM-20197 / PM-20198 – Addressed vulnerability: CVE-2026-59889.

PM-20064 / PM-20177 – Addressed vulnerabilities: CVE-2026-54399, CVE-2026-54428.

PM-20030 – Addressed vulnerability: CVE-2026-13149.