Integration & Signing Guides

Signum supports code signing through native operating system integrations, leveraging platform tools.

For more information on the platform-native cryptographic interfaces that Signum supports, see Interoperability.

CI/CD Integrations Overview

The CI/CD Integrations provide an additional method for incorporating Signum-based signing directly into automated build and release pipelines, enabling consistent, policy-enforced signing without manual intervention.

Signing Guides Overview

The Signing Guides cover how to use the Signum agents to sign artifacts across supported platforms. Each guide walks through the configuration and signing workflow for a specific operating system or environment, using the native signing tools available on that platform. The Signing Guides assume Signum is already set up.

Find the right signing approach by artifact type. Each row covers all available methods:

Artifact / Format

Guide

Windows / Authenticode

PE executables (EXE, DLL)

Sign Microsoft Files

MSI / MSIX / APPX

Sign Microsoft Files

MS Office macros

Sign MS Office Files

Catalog files (.cat)

Sign Microsoft Files

Java / JVM

JAR files

Sign JAR Files

Maven artifacts

Maven Integration

macOS / Apple

Apple binaries

Sign Apple Binaries

Linux / Open Source

RPM packages

Sign RPM Files

Debian packages (.deb)

Sign Debian Packages

Git commits

Sign Git Commits

Documents & Data

XML documents

Sign XML Files

Infrastructure & Generic

OVA / virtual machines

Sign Virtual Machines (OVA)

CMS / PKCS#7 signatures

Sign with OpenSSL CMS Command

Plain / raw signatures

Sign with OpenSSL CMS Command