Creating the Code Signing Project

To Create the Code Signing Project:

  1. Log into Aperture by going to https://[IP_address_of_Venafi_TPP]/Aperture/codesigning

  2. To open the project configuration wizard, Click Add Project on the project list screen

  3. Enter the details for Project Name and Description. Click Next

  4. The Project window will be displayed in the Properties tab, add the appropriate individuals or groups to the Key User field

  5. Now, in the Environment tab, Click on Add environment and from the drop-down select "Certificates and Keys for Authenticode based signing or any certificate based signing"

Further you can create new keys or certificates, or you can choose the existing ones.

  1. To create an environment that generates a new certificate and private key,

    1. In the Environment Type drop-down, select the type of environment

    2. In the Certificate Provider drop-down list, select the appropriate certificate provider to associate with this environment.

    3. If only one certificate provider is assigned to this environment, that provider is automatically selected and the drop-down is not editable

    4. In the Environment Name box, enter a name for this environment

    5. Verify the Key Storage location points to HSM connector created earlier for Utimaco HSM

    6. Verify "Create New" radio button is selected

    7. Enter the remaining details

    8. Click, Create

Alternatively, if you want to use an existing key and certificate, skip step 6.

  1. To create an environment that uses the existing key and certificate from the HSM,

    1. In the Environment Type drop-down, select the type of environment

    2. In the Certificate Provider drop-down list, select the appropriate certificate provider to associate with this environment.

    3. If only one certificate provider is assigned to this environment, that provider is automatically selected and the drop-down is not editable

    4. In the Environment Name box, enter a name for this environment

    5. Verify that the Key Storage location points to HSM connector created earlier for Utimaco HSM

    6. Select "Use Existing Key in HSM" radio button

    7. Select the Public HSM Key & Private HSM Key from the drop-down

    8. Enter the remaining details

    9. Click, Save

  2. Click, Next

  3. To create new certificate and private key on approval, Click Submit for Approval

  4. To use existing key or certificate instead, click Save, if the project is already approved