Search in this section
Code Signing Certificates are a means for developers on all platforms to digitally sign their applications and software that they make available over the internet. Signed code is marked with the name of the publisher, providing protection against the introduction of malware and other subsequent modifications.
Introduction
All Code Signing Certificates use a unique cryptographic hash to bind the identity of the publisher to the software. Security warnings displayed for unsigned code are replaced with information about the publisher of the software. This helps prevent users from aborting the installation out of uncertainty. Code signing therefore adds an important level of trust to the installation process.
Code signing shows that the signed software is authentic, comes from a known software vendor and that the code has not been modified since it was signed. Code signing helps to alleviate users’ security concerns, reducing the number of installation abortions. It also prevents the code from being changed with malicious intent or the identity of a trusted software vendor from being misused by others.
Feature overview
Here is a brief overview of the features included for Code Signing Certificates:
- A single Code Signing Certificate for all applications:
- Microsoft Authenticode
- Adobe AIR
- Apple OS X
- SunJava
- Mozilla & Netscape Objects
- Macros & VBA
- Eliminates "Unknown Publisher" security warnings when downloading code
- Due to the time stamp service, the signature does not expire, even if the certificate expires
- Signs an unlimited number of applications
- Protects your brand and reputation
Features | Code Signing Certificate | EV Code Signing Certificate |
---|---|---|
Information displayed in the certificate | Company name | Company name |
Eliminates the "Unknown Publisher" security warnings | ||
Instant reliability with Microsoft Smartscreen | ||
Sign an unlimited number of applications | ||
Compatible with popular platforms (MS Authenticode, Office VBA, Java, Adobe AIR, Mac OS, Mozilla) | ||
Signature does not expire when time stamp is applied | Time stamp available and recommended | Time stamp available and recommended |
Ordering a Code Signing Certificate
Enclosed are some brief overviews of the process flow for ordering code signing.
DigiCert and Sectigo
- Orders are carried out via our systems
- A CSR is mandatory to place an order
- Verification of the company takes place on the basis of the commercial register entry and a telephone verification
- The email with the certificate is sent
- The certificate is ready for use immediately
GlobalSign
- Orders are carried out via our systems
- A CSR is mandatory to place an order
- A pickup password is mandatory to place an order
- Verification of the company takes place on the basis of the OV or EV guidelines
- The USB token is sent by a service provider located in Germany
- The email with download link is sent simultaneously
- After receiving the USB token, the certificate is downloaded via the SafeNet Authentication Client with link and password
- After installation, the certificate is ready for use
Note
The USB token is sent on behalf of GlobalSign by a service provider based in Germany. The initial password of the USB token is 0000.
We recommend changing the password of the USB token by using SafeNet Authentication Client before installing the certificate.
General notes
For some applications, it may be necessary to convert the delivered Code Signing Certificate. Use tools like the MS SSL ToolKit for this.
IInstructions for using the included time stamp function can be found under the following links:
Depending on the CA, the delivery of the Code Singing Certificate varies:
Code Signing Certificate | EV Code Signing Certificate | |
DigiCert | By email | - |
GlobalSign | Cryptographic USB token (incl.) | Cryptographic USB token (incl.) |
Sectigo | By email | - |
The USB token is sent free of charge by GlobalSign and is already included in the basic price of the certificate. A cancellation of the USB token is not possible.
If the USB token is shipped outside the EU, customs duties may be incurred under certain circumstances, which are to be borne by the certificate holder.