To Create the Code Signing Project:
-
Log into Aperture by going to
https://[IP_address_of_Venafi_TPP]/Aperture/codesigning -
To open the project configuration wizard, Click Add Project on the project list screen
-
Enter the details for Project Name and Description. Click Next
-
The Project window will be displayed in the Properties tab, add the appropriate individuals or groups to the Key User field
-
Now, in the Environment tab, Click on Add environment and from the drop-down select "Certificates and Keys for Authenticode based signing or any certificate based signing"
Further you can create new keys or certificates, or you can choose the existing ones.
-
To create an environment that generates a new certificate and private key,
-
In the Environment Type drop-down, select the type of environment
-
In the Certificate Provider drop-down list, select the appropriate certificate provider to associate with this environment.
-
If only one certificate provider is assigned to this environment, that provider is automatically selected and the drop-down is not editable
-
In the Environment Name box, enter a name for this environment
-
Verify the Key Storage location points to HSM connector created earlier for Utimaco HSM
-
Verify "Create New" radio button is selected
-
Enter the remaining details
-
Click, Create
-
Alternatively, if you want to use an existing key and certificate, skip step 6.
-
To create an environment that uses the existing key and certificate from the HSM,
-
In the Environment Type drop-down, select the type of environment
-
In the Certificate Provider drop-down list, select the appropriate certificate provider to associate with this environment.
-
If only one certificate provider is assigned to this environment, that provider is automatically selected and the drop-down is not editable
-
In the Environment Name box, enter a name for this environment
-
Verify that the Key Storage location points to HSM connector created earlier for Utimaco HSM
-
Select "Use Existing Key in HSM" radio button
-
Select the Public HSM Key & Private HSM Key from the drop-down
-
Enter the remaining details
-
Click, Save
-
-
Click, Next
-
To create new certificate and private key on approval, Click Submit for Approval
-
To use existing key or certificate instead, click Save, if the project is already approved