Issues Resolved in 7.7.0

May 2026

New Features

DSS-3192 Add support for using a key URL to the JWT Authorizer

DSS-3320 Support for handling large input with the new -stdin flag

DSS-3387 Support for “-clientside” flag in SignClient in combination with the new “-stdin” flag

DSS-3475 Support for clientside hashing with PlainSigner and ML-DSA-EXTERNAL-MU

DSS-3535 Support for Composite signature in PlainSigner

DSS-3550 Support Generating SAN values in CSR

DSS-3579 Add support for NGINX as reverse proxy in SignServer Helm Chart

DSS-3633 Delete composite key

DSS-3689 Add get public key endpoint

DSS-3692 Add new Authenticode Signer using Jsign for all formats

Improvements

DSS-3243 OIDC environment variables for container

DSS-3310 Remove bundled selenium from SignServer

DSS-3383 Upgrade JJWT library

DSS-3668 Change loggings in CompositeHelper on each usage of a non-composite key to DEBUG

DSS-3688 Client-side hashing support for composites

DSS-3725 Update base image in container build for 7.7.0 release

DSS-3740 Upgrade log4j libs to version 2.25.4

Bug Fixes

DSS-3644 Can’t set composite key as a default key in CryptoToken.

DSS-3727 Regression: Container: 1G of memory not enough to deploy in WildFly