maketing2
SSL Support

 

SSL certificate installation guide


Depending on your choice of the type of server-related installation guide, at the same time, please refer to your own server software on the SSL certificate of documentation to the server software documentation shall prevail. Note: If your site is a virtual host, virtual host on the needs of service providers to help provide installation support.

If the server software is Microsoft's IIS, please refer to the following guidelines for Chinese: Microsoft: HOW TO: To enable users to your website SSL.

NOTE: If you need to install a root certificate WoSign intermediate, intermediate downloading and installing the root certificate.

If your server is not listed, as long as your server can support SSL certificate to use SSL certificate.
A B
Alteon SSL Accelerator BEA Weblogic 5.1
Apache-SSL / Apache ModSSL(Chinese and English) BEA Weblogic 6.0
Apple PowerSchool BEA Weblogic 7.0
BEA Weblogic 8.1
C BEA Weblogic 9.0
Citrix Secure Gateway 1.12  
Cobalt Raq3 F
Cobalt Raq4 F5 Big IP Controller 3.0
Cobalt Raq550 F5 Big IP Controller 4.0
Cobalt XTR
CPanel Mail Server I
CPanel Web Server IBM HTTP Server
Covalent Server iPlanet 4.0
C2Net Sronghold iPlanet 6.0
 
G L
Groupwise 6 Netware Email Server Lotus Notes Domino 5.0
Lotus Domino Go
J  
J2EE Application Server (Chinese and English) N
Jetty Java HTTP Servlet Web Server Netscape Directory Server
Netscape Enterprise Server 3.51
M Netscape Fast track
Mac OS X Netscape Messenger Server
Microsoft ISA Novell Console One
Microsoft IIS 5.0 (In English, with IIS6) Novell iChain
Microsoft IIS 6.0 (Chinese and English)  
P
O Plesk 5
Oracle Wallet Manager Plesk 6
Oracle Web Server OAS 4.0.8 Plesk 7
Orion Web Server Postfix
O' Reilly Website Professional PowerWeb Server
 
Q R
Qpopper Raven
Resin
S Roxen
SAP Business Connector  
Sambar T
  Tomcat (Chinese and English)
W Tarantella Enterprise
4D WebSTAR 4.x  
4D WebSTAR 5.x Z
WS_FTP Webserver Zeus Web Server

Return to top

 

 

 

Multi-domain wildcard SSL certificate and the certificate-based SSL Installation Guide - Windows 2003 Server IIS 6.


For the average single-domain SSL certificate, because of a physical server (an IP), only 443 of a port for the default SSL port if there are other Web server to install SSL certificate, you can only use the other ports. However, multi-domain WoSign-SSL certificate support for a number of different domain names with the same SSL certificate, and the wildcard-SSL certificate is a certificate of supported the *. domain.com all sub-domains are met with an SSL certificate In a number of Web servers, but for IIS really is only one 443-port, we need to do some of the settings makes use of all Web servers can use port 443.

Reference documents related to Microsoft's Web site, Windows 2003 Server IIS finishing the installation guide is as follows:

In order to prevent piracy, this step has been omitted, and WoSign please direct contact with customers WoSign customer service support

Return to top

 

 

SSL certificate to import and export backup Installation Guide


SSL server certificate is installed successfully, must SSL certificate from the server back up, so that the server hardware or software system does not work when the system may need to re-re-server SSL certificate. Although WoSign commitment to a certain period of time can be issued free of charge to the new digital certificate, but will only delay the time your customers, but also to increase our workload, it is better to you immediately after the successful installation of backup, in a safe place , Is etched in the best physical CD in a safe place.

Different operating systems have different ways to back up and import, please refer to the operating system's SSL certificate to back up guide, the backup and only guide into the Chinese version of Windows 2003 Server operating system.

In order to prevent piracy, the following steps have been omitted, and WoSign please direct contact with customers WoSign customer service support.

1. "Console" window:
?
2. Console in the main menu, select "Add / Remove Snap-in:
3. Click on the "add" after the following interface, look down to select "certificates":
4. Click "add" after the following interface, select the "Computer Account" click on "Next":
5. Occur after the interface is as follows click on the "completed" can be
16. If you did not select Export to back up, "contains all the certificates in the certificate path", shows that you do not have certificates to back up the entire chain, into the installation may be a problem. The remedy is to manually import the root certificate Intermediate: If you buy that super-real SSL, you need to download (or download) one of the root-level certificate; If you buy the SGC is a true super-SSL, you need to download (or download) Among the root-level certificate; If you buy the ultra-fast SSL, you need to download (or download) one of the root-level certificate; and in accordance with the following icon in the "mid-level certification authority" - "certificate" after right-click the "mission" "Import" to the success of the installation:

This completed a backup of digital certificates and import, at the same time setting the correct client authentication (if necessary). Now, you can withdraw from the Control Panel, you will be prompted to manipulate to preserve your Control Panel settings, the server's "management tool" will be able to see your saved settings control panel, click here for the next direct access to management

 

Return to top

WoSign SSL certificate issued free of charge to self-help guide


You bought WoSign SSL certificate, we recommend that you immediately after the successful installation at the index page and other pages to add the following code shows the dynamic signature authentication security:
<script src="https://siteseal.wosign.com/seal_generator.dll"> </ script>

However, users must log in to your account WoSign the opening of the safety of your signature certification, or even add the code will only show "invalid certificate (can not verify the validity of the certificate)."

At the same time, you can log in to your account WoSign set to show the security of the signature design signature, you can page your situation to choose a square or a long-signature signature, signature show can also choose Chinese or English. At the same time, can also customize their own security signature in order to strengthen the corporate image and reach a more appropriate site.

WoSign SSL certificates are mainly three types: ultra-fast SSL, really super-SSL and SGC really super-SSL, due to different product stringent authentication and encryption strength is not the same, so the security of the signature shows that the content is not the same, as follows:
  L Square The meaning of signature
Super-real SSL Chinese
????
Dynamic signature generation, transmission networks show that it is safe (in support of SGC, a mandatory 128-bit encryption), the Web site at the same time has passed strict identity verification, the unit displayed the name or initials and the name of the current date. Click after the show in detail the application of information units.
English
Size
199 X 50
80 X 80
Super-real SSL Chinese
Dynamic signature generation, transmission networks show that it is safe, at the same time through the Web site has strict identity verification, the unit displayed the name or initials and the name of the current date. Click after the show in detail the application of information units.
English
Size
199 X 50
80 X 80
Ultra-fast SSL Chinese
Dynamic signature generation, transmission networks show that it is safe, do not show the name, date of the show only. After the show just click on the domain name, the name does not show.
English
Size
180 X 39
80 X 80

Return to top

 

 

 

WoSign SSL certificate issued free of charge to self-help guide


SSL Cert WoSign commitment in the life of an unlimited number can be re-issued free of charge, mainly to take into account users may be due to various reasons (such as: re-server) and the loss of the original Certificate SSL, but can not find documentation to back up; or After the backup has not generated the private key can not be issued with a certificate (public key) can not match the success of the installation. Free self-help re-issued You will be asked to log in to your account WoSign, find your original order information, and click to re-awarded. CSR or documents sent to us, we will deal with as quickly as possible.
General re-issued as a working time.

The following table sets out in detail each of the products presented to the conditions and requirements:
Product Name Ultra-fast SSL Super-real SSL SGC really super-SSL

Upgrade or change the server operating system

Can

Can

Can

Private key is lost

Can

Can

Can

Unit to change the name of the department(OU)

Can not

Can

Can

30 days to change the domain name SSL certificate

Can not

Can

Can

To amend the technical contact information

Can not

Can

Can

Return to top

Microsoft code signing certificate application guide, installation guide and backup guide


First, code signing certificates on-line application

WoSign you sign up for digital certificates on-line application system after the online application for a certificate signed WoSign code. Or directly to you on our Web site to apply for an application.

Application interface are shown in Figure 1, fill out the online e-mail address to receive a certificate, the issuer name of the software, information such as name, age and choose to buy a certificate, and then click on the "application", a warning prompted, click "yes" to Private key to generate documents and to submit a certificate request file, and prompts the application is successful, WoSign waiting for the certificate.

Please note the following:
(1) e-mail address to receive a certificate or power of attorney must be specified in the contract to buy the mail, the post office proposed the use of corporate accounts, make sure to send and receive e-mail Email to normal;

(2) software must be the name of the issuer and the name of the unit, with proof of the same name, could be either Chinese or English. If the documents are Chinese, English must be the name of the conventional words in English translation, or the need to provide proof of the name in English;

(3) where the provinces and cities have to fill out the full name, such as Guangdong Province, Shenzhen City, in Chinese or English. If Chinese enterprises, the country can only be filled CN; if Hong Kong is a business, you can fill in HK; If Taiwan companies, you can fill in the TW; if it is in other countries / regions, to fill in the standard two-letter country / Abbreviation for the region, such as: United States: US; Singapore: SG, and so on;

(4) to preserve the private key file default manner: C: \ mykey.pvk, proposed changes in mind for the good of the file name and save it to the specified directory where the signature instrument. Keep in mind that your private key password; if you apply for a certificate signed code for Hong Signed Office, the private key option for preservation: CSP, the certificate will be installed directly into your IE, no need to format conversion Acer Office for signature;

(5) If you would like to install the certificates directly to the Windows IE, select the private key for the preservation of the way "CSP", the system default encryption service providers (CSP) for: Microsoft Enhanced Cryptographic Provider V1.0, will not generate mykey . pvk file;

(6) If you wish to opt for USB Key encryption as a service provider (CSP) to generate and store the private key of keys, you must first install the USB Key CSP management software, and USB Key into the computer's USB population. Drop the "choice of CSP" column, you choose to use the USB Key name of the CSP, at the same time, select "Save private key" for the "CSP"

First, code signing certificates on-line application

WoSign you sign up for digital certificates on-line application system after the online application for a certificate signed WoSign code. Or directly to you on our Web site to apply for an application.

Application interface are shown in Figure 1, fill out the online e-mail address to receive a certificate, the issuer name of the software, information such as name, age and choose to buy a certificate, and then click on the "application", a warning prompted, click "yes" to Private key to generate documents and to submit a certificate request file, and prompts the application is successful, WoSign waiting for the certificate.

Please note the following:
(1) e-mail address to receive a certificate or power of attorney must be specified in the contract to buy the mail, the post office proposed the use of corporate accounts, make sure to send and receive e-mail Email to normal;

(2) software must be the name of the issuer and the name of the unit, with proof of the same name, could be either Chinese or English. If the documents are Chinese, English must be the name of the conventional words in English translation, or the need to provide proof of the name in English;

(3) where the provinces and cities have to fill out the full name, such as Guangdong Province, Shenzhen City, in Chinese or English. If Chinese enterprises, the country can only be filled CN; if Hong Kong is a business, you can fill in HK; If Taiwan companies, you can fill in the TW; if it is in other countries / regions, to fill in the standard two-letter country / Abbreviation for the region, such as: United States: US; Singapore: SG, and so on;

(4) to preserve the private key file default manner: C: \ mykey.pvk, proposed changes in mind for the good of the file name and save it to the specified directory where the signature instrument. Keep in mind that your private key password; if you apply for a certificate signed code for Hong Signed Office, the private key option for preservation: CSP, the certificate will be installed directly into your IE, no need to format conversion Acer Office for signature;

(5) If you would like to install the certificates directly to the Windows IE, select the private key for the preservation of the way "CSP", the system default encryption service providers (CSP) for: Microsoft Enhanced Cryptographic Provider V1.0, will not generate mykey . pvk file;

(6) If you wish to opt for USB Key encryption as a service provider (CSP) to generate and store the private key of keys, you must first install the USB Key CSP management software, and USB Key into the computer's USB population. Drop the "choice of CSP" column, you choose to use the USB Key name of the CSP, at the same time, select "Save private key" for the "CSP"

Second, get a certificate signed code

WoSign your application code signing certificate, WoSign will apply to verify the identity of the unit, once verified, will be immediately awarded a certificate. You will receive an e-mail from WoSign, e-mail reads as follows as shown in Figure 2, to the sender: WoSign, the theme of e-mail: Your WoSign Code Signing certificate is ready for collection! (Your code WoSign signature certificates have been issued !).
Please note: This e-mail to UTF-8 encoding, if you see is garbled, please e-mail content encoding settings for UTF-8.

E-mail in your order, click on the e-mail in English "here" or Chinese "here" can be linked to WoSign Web site, as shown in Figure 3, click on the "back and install the certificate" may, whether or not to be prompted to Add a certificate, choose "Yes" to complete the installation of the certificate and the certificate back. Please note: The default public key certificates to preserve the signature file directory for the file: C: \ mycert.spc, proposed changes to the directory where the signature instrument.

Please note:

(1) If you apply for the certificate is to use the USB Key as a CSP, then you click on the "back and install a certificate" before we must first start the USB Key CSP management software and USB Key to insert a computer, or can not get success Back to the certificate;

(2) in the back of the certificate files at the same time the public key certificate has been installed on your Windows, you can IE browser's "Tools" - "Internet Options" - "content" - "certificate" - "personal "You see the certificate (public key);

(3) If you choose to apply for the certificate is a certificate directly to the installation of Windows IE, then your public key and private key certificates directly installed in IE, you can export documents for the certificates. PFX format backup. In this way, you can use Windows Certificate store in a certificate signed the code, and the different mykey.pvk and mycert.spc convert. Pfx file format. Please back up on the selection of export "to export the private key" and select "contains all the certificate path."

Return to top

 

 

Microsoft code signing certificate Guide


Microsoft code sign certificate(.pvk/.spc)signing Guide
Use this guide to demonstrate how to use the code WoSign to sign a certificate to the Microsoft code signing, Thawte and VeriSign code signing certificate is also using the same method, just use a different time stamp URL.

On-line users to apply for a certificate signed code will generate a certificate private key file, such as: myCert.pvk, and code signing certificate issued after the success of the paper certificates for public key documents, such as: myCert.spc, also known as: software to issue certificates (Software Publishing Certificate). Code signing certificates and are based on the general public key and private key of the separation of the two papers, suitable for DOS command-line mode code signing. If you want your code signing certificate into the Windows certificate store, so as to simplify the operation of the signature, please refer to: Guide to the different format conversion certificate.

WoSign code signing certificates for the root certificate chain: UTN-USERFirst-Object - WoSign Code Signing Authority

Microsoft's use of SignCode.exe Microsoft will be able to sign the code, if you do not have this file, click here to download. Signcode.exe can use the DOS command line mode to achieve the signature, we recommend the use of digital signature users guide the way, easy and convenient. Please note: If you develop the ActiveX for IE add-ons, each of the first digital signature of the CAB file. Dll and. Ocx and other documents, and then packaged into these documents. Cab files after the digital signature. Cab file to To ensure that all IE add-ons are IE verification and trust, otherwise they will show that "not verified" and that may affect the normal operation.

Signed specific guide the process as follows:

(1) run Signcode.exe, requires you to select the signature of the document: executable file (*. exe; *. dll; *. ocx); Cabinet packed file (*. cab) files and directories (*. cat ), As shown in Figure 1 (such as: TestSign.cab), please note: If you have documents signed by digital signatures, they will be covered by a new signature:
(2) Click "Next", you will be asked to choose "the type of signature," default "classic" type of signature; select the "custom" signature type:
(3) Click on "Select from the files" signing certificate (public key), such as: WotoneCS.spc:
(4) click on the "next step", you will be asked to choose private key documents, such as: WotoneCS.pvk, other parameters that do not have to move:
(5) Click "Next" will be prompted to enter the private key password requirements:
(6) click on the "next step" will be prompted to choose hash algorithms (Abstract algorithm, microfilm map algorithm), the default for sha1, can be elected md5:
(7), click on the "next step" after the choice of which digital signatures to the certificates, including in directly click on the "next step" can be, that is, the default option, including the root certificate:
(8) fill out the requirements of the signature features of the code description must earnestly recommended to fill in, because this information will be end-user to download the code when the show will help end-users to understand the function of the code to determine whether or not to download and install. The first line "description" is the code word to describe the function of the second line "Web location" to allow end-users click on text to describe in detail to understand the function of the code and how to use and so on, the presentation of "Web location" for WoTrust Code signing certificate profile page:
(9) Click "Next", select the "time-stamp will be added to the data", use:

WoSign free service provided by the time stamp URL: http://timestamp.wosign.com/timestamp

Time-stamp service is very important to add time-stamp, even if your code signing certificate has expired, but because your code is in the life of a certificate signed, time-stamp service to ensure the continued credibility of this code, end-users can rest assured that Download, making the code even if the signature certificate has expired, you need not re-signed and re-release has been signed by the code.
(10) click on the "next step" would have prompted the completion of a digital signature Wizard, click on the "completion" After the private key will be prompted to enter your password code signatures on a certificate of completion of the sign code.
(11) now need to check chktrust.exe have signed the code, chktrust.exe documents have been packaged in the signtool.rar. Into the DOS command prompt, and have access to the signature file directory (for example: d: \ sign \ TestCA.cab), type the command: chktrust testcs.cab, will show the actual application in the IE browser to download the page, For Win XP operating system, the software displays the name and the name of the issuer, which is the name of the software in your article (8) enter step-by-step description, click on this link to your name in paragraph (8) to complete the step-by-step Web site, and click Issue Name, it will show your signature information and time stamp information. For Win2000 operating system, a slightly different story, line 1 of the red line is part of the time stamp recorded at the time of signature local time, please note: This is not a time to get the signature of the computer, but to provide services to stamp out the server computing The signature of the host computer's time zone local time. No. 1 line of blue text that is in step 8 of the type described in the text, click on the blue text will be able to visit at the 8th step-by-step description of the type of Web page. Line 2 is the blue text of the code of the issuer, which is code signing certificate of the applicant (owner) (such as: Shenzhen City Wo-E-Services Limited), click to view certificate details; No. 2 There are red lines underlined part of the show "by distributors reliability WoSign Code Signing Authority to verify" This is the code signing certificates were awarded certificates.
(12) Click "yes" or "Run", will prompt "TestSign.cab: Succeeded" said TestSign.cab code to verify the signature and effective, can be put on the site. Please note: After the signature of the CAB file on the site need to use the object methods.

Please note: not only signed CAB file, CAB package all the DLL files must have a package after sign, and then signed CAB file, or IE browser will display a "proven not issuing" normal use, and even anti-virus software The drug will be considered to be deleted!

 

Return to top

Adobe AIR code signing certificate application guide, installation guide and backup guide


Adobe AIR code signing certificates on-line application

WoSign you sign up for digital certificates on-line application system after the online application for Adobe AIR code signing the certificate. Or directly to you on our Web site to apply for an application.

Application interface are shown in Figure 1, fill out the online e-mail address to receive a certificate, the issuer name of the software, information such as name, age and choose to buy a certificate, and then click on the "application", a warning prompted, click "yes" to Private key to generate and submit a certificate request file, and prompts the application is successful, WoSign waiting for the certificate.
Please note the following:
(1) e-mail address to receive a certificate or power of attorney must be specified in the contract to buy the mail, the post office proposed the use of corporate accounts, make sure to send and receive e-mail Email to normal;

(2) software must be the name of the issuer and the name of the unit, with proof of the same name, could be either Chinese or English. If the documents are Chinese, English must be the name of the conventional words in English translation, or the need to provide proof of the name in English;

(3) where the provinces and cities have to fill out the full name, such as Guangdong Province, Shenzhen City, in Chinese or English. If Chinese enterprises, the country can only be filled CN; if Hong Kong is a business, you can fill in HK; If Taiwan companies, you can fill in the TW; if it is in other countries / regions, to fill in the standard two-letter country / Abbreviation for the region, such as: United States: US; Singapore: SG, and so on;

(4) ways to save the private key: CSP, that the certificate will be installed directly into your IE, without conversion to the format for signature; encryption system default service provider (CSP) for: Microsoft Enhanced Cryptographic Provider V1.0, Proposal will not move.
Second, get a certificate signed code

WoSign your application code signing certificate, WoSign will apply to verify the identity of the unit, once verified, will be immediately awarded a certificate. You will receive an e-mail from WoSign, e-mail reads as follows as shown in Figure 2, to the sender: WoSign, the theme of e-mail: Your WoSign Code Signing certificate is ready for collection! (Your code WoSign signature certificates have been issued !). Please note: This e-mail to UTF-8 encoding, if you see is garbled, please e-mail content encoding settings for UTF-8.
E-mail in your order, click on the e-mail in English "here" or Chinese "here" can be linked to WoSign Web site, as shown in Figure 3, click on the "back and install the certificate" may, whether or not to be prompted to Add a certificate, choose "Yes" to complete the installation of the certificate. Please note: The public key certificate options generally useless, you can not Let it be.
Third, export certificate PFX format

This certificate of public key and private key certificates directly installed in IE, you can export documents for the certificates. PFX format for signature. AIR file. You can IE browser's "Tools" - "Internet Options" - "content" - "certificate" - "personal" to see your certificate, please choose Export to back up when the "private key to export" and select " Contains all the certificates path, "and remember your password certificate, signed when to use

Return to top

 

 

Adobe AIR code signing certificate Guide


According to the guidelines for the use of the Adobe website translation of documents related to finishing, please refer to the original text as follows:
(1) Adobe AIR entry
(2) Packaging an AIR installation file using the AIR Developer Tool (ADT)
(3) Digitally signing Adobe AIR applications

Please note: The above documents requested by FireFox browser Firefox Adobe AIR application code signing certificates, more complicated. WoSign fully aware of the vast number of users is already very familiar with the WoSign Microsoft code signing certificate application and use, so that our "Adobe AIR application code signing certificate Guide" is Microsoft's code with a certificate signed as a way to use IE browser to apply for a certificate, as Adobe AIR digital signature at the same time support the Java keystore file (. Keystore) and PKCS12 file (. P12 or. Pfx) certificate format, and so on. Based on this guidance IE browser application PFX format of the certificate to document signed AIR.

1. Signed tool to download and install the

Make sure that you have to download Adobe AIR and download the free Adobe AIR SDK, at the same time, but also to ensure that your computer has to download and install SUN Java 6 JDK, the signature tool needs to support Java. Note: Users only need to use the environment to download and install the Adobe AIR can, and do not engage in the confusion.

2. Adobe AIR why a digital signature? Adobe AIR the use of code signing certificates and signatures from the use of Visa Signature book What is the difference?

Application of digital signature software is to allow users to network (Internet or intranet) can download the code was not convinced that this illegal and distort the credibility of the source, thereby protecting the integrity of the code, protecting the user will not be viruses, malicious code and Against the spyware, of course, will protect the interests of software developers so that software developers can quickly and safely through the network software release. In order to protect software developers and end users, Adobe AIR software, digital signatures are mandatory requirements.

As the Adobe AIR software, digital signature is mandatory for the convenience of software developers in the absence of a certificate purchasing before the first to try the effect of digital signatures and the benefits and convenience of testing software code, Adobe AIR support to produce their own signature certificates. If you are using Adobe AIR to provide the tools to use the signature books signed visa, after the software to run the show the following results as shown in Figure 1, will show a big red question mark: Publisher: unknown, at the same time show a red cross: the identity of publishers: Unknown .

If you use WoSign issued by the Adobe AIR code signing certificate signed documents air, after the software to run the show the following results as shown in Figure 2, will show a big yellow question mark: publishers: your company name (in Chinese or English) and at the same time Display a green tick: the identity of publishers: to verify. This shows that software publishers is the true identity of the authority of third-party verified.
3. Packing paper and sign guidelines

In order to prevent piracy, this step has been omitted, and WoSign please direct contact with customers WoSign customer service support.

Return to top

 

 

 

Symbian Signed applications and guidelines for Symbian Signed certification guidelines


Symbian Signed in accordance with the guidelines document "How to make your Symbian application was signed," TC TrustCenter and taking into account the relevant documents, in particular,

Chinese customers are based on the actual application has been prepared to deal with the situation, more practical and more focused.

First, a prerequisite for

Symbian system has only been in the local (Native C + +) Symbian and AppForge MobileVB applications effectively. At present, Symbian is only used for part of the

000 interface signature.
If any of the following provisions apply to you, you will not have to use the Symbian Signed applications:
* Based on the development of the Nokia 9200 series of applications, developers will continue for Nokia.OK testing and the use of their signature products.
* MIDP developers can use Sun's Java certification program, Symbian to work closely with these projects to ensure that based on the Symbian operating system

The mobile phone has been able to support.
* In addition to the use of C + + and AppForge MobileVB (such as OPL) other than the language development of the developers. Symbian is the language of these tests and how to Symbian

Signed with the evolution of integration.
Important! Strongly recommend that you read the "frequently asked questions and answers" https: / / www.symbiansigned.com / app / page / overview / faq

Second, the signature process

Given access to the application of the necessary steps to sign.
1. Certification Center (TC TrustCenter) to apply for a certificate publisher (TC Publisher ID), Chinese users directly to the application WoSign
2. To obtain the use of the publisher of your certificate. SIS file signatures.
3. Your application will be sent to www.symbiansigned.com testing.
4.'s Test will be based on the standard test for your application to be tested.
5. If the application to pass the test, you will be able to download through the Symbian Signed applications.

Third, steps 1 - from the TC TrustCenter / WoSign publishers to obtain a certificate
In order for your application for signature, you need certification from the center (TC TrustCenter) to obtain a publisher certificate
(Authenticated Content Signing Publisher ID-certified content of the publisher signed the certificate). Publisher certificates (also known as a certificate in his capacity as developer

, Symbian Certificate) only to prove the identity of the supplier of software and at the same time through the Symbian software in the signature, can also provide software to track

Persons. If you already have a publisher certificate, and your. SIS documents have been adopted by the publisher signed the certificate, go to Step 3 - to submit applications

测试.

1. To sign the purchase contracts, payment and online application
Users enter into contracts and contract WoSign received 1600 yuan, please use the TC Trust Center for custom applications WoSign Web site:
https: / / api.wosign.com / PublisherID_apply.htm (in English), if you have good English, can also direct the use of TC Trust Center

Chinese users to customize the application site: https: / / www.trustcenter.de/cs-bin/PublisherID.cgi/en/155312.

Please note: Symbian Signed and the Symbian Web site documents related to the application site is the TC-oriented customers around the world to apply a common Web site:

https: / / www.trustcenter.de/cs-bin/PublisherID.cgi/en/155102, only for online credit card payment, and the TC is scheduled for WoSign

The system is a Web site used to apply for tickets Coupon way, no credit card, direct payment of RMB can be at home, and the country default option is China.

On-line application process please note the following:
(1) must use IE browser to apply online (recommended to use Windows XP, not Windows Vista), and get back on the same computer certificate (no admission

Before the certificate can not re-PC);
(2) the company name to fill in only the English name of the unit if the applicant can only submit the name of the Chinese business license, the English name is the only common English words

The literal translation. Pinyin is the only company names or English. TC Trust Center recognized WoSign review and translation of the Chinese name of the business license as proof of

;
(3) to fill in the technical contacts (Technical Contact) must fill out to submit invoices on the telephone charges can be linked to contacts;
(4) certificate in the application process required users to fill in password management certificate (Revocation password), please keep in mind some of this code, after the suspension of certificates to

Using this password;
(5) apply to the final payment (Payment) stage, the right to tell WoSign enter your Coupon Code (tickets), or else will be considered to be non-TC

Xiao refused to handle the application.

2. To provide supporting documentation

After the application is successful, you will receive an Email, as shown in Figure 3 is as follows, Email tell you then have the need for annual inspection of a copy of a copy of business license, technology in conjunction

One copy of the ID card system (already signed), as well as the annex to the e-mail print PDF documents and signatures:

Figure 4 shows the following message in the annex to the PDF document needs signature, the first general useless 2. The first line needs to fill in the application of technical contacts

Required to fill in the order in English and signed, and the second line need to apply for a certificate signed by the person in charge of the unit, according to the requirements of the order to fill in and sign in English:
Please have the signature of the PDF file on the first page, together with a copy of a copy of business license, ID card copy of the technical contact, as well as a certificate to apply for units in telephone charges

Invoice (if not from the telephone Yellow Pages Web site: www.yellowpage.com.cn or www.chinayp.com.cn local 114 directory assistance or confirm any) together

Email scanning made to: tcpubid@wosign.com or fax to 0755-33975112.

3. Get your publisher certificate (TC Publisher ID)

After you submit your request, WoSign will phone you to fill in the technical contact for authentication, and you sort out the translation of documents submitted to the TC

Trust Center, once completed will be made to verify the identity of an Email to the user.
As long as users click on the link in the e-mail to the TC Trust Center Web site to get a certificate, as shown in Figure 3, click "Install Certificate"

To complete the installation of the certificate:

4. Export certificate and the certificate format conversion
(1) Please open the IE browser, in the "Tools" - "Internet Options" choice "content" and then click on the "certificate" will be able to see your signature certificates

. However, Symbian's signature two-needed tool for the certificate file (. Pvk and. Cer) to sign SIS files, so users need to have installed in IE to guide certificate

Out for. PFX format, such as: myID.pfx;
(2) to download a certificate format conversion tools to export. Pfx format conversion tool and a certificate in the same directory in DOS mode, enter the following command conversion card

Book:

tcp12p8 myID.pfx pfxPassword private.key public.cer

Of which: myID.pfx is derived. Pfx file name, pfaxPassword is derived. Pfx format of the certificate to set a password, private.key is the conversion

After the private key file, public.cer is converted public key certificate file.


Fourth, step 2 - publisher certificate. SIS file signatures

(1) Signed SIS file

The private key (private.key) and public key (public.cer) to copy the file. PKG file directory, and then add the following line of code on behalf of his party

To the code. PKG documents specified above, this document was copied to the device.
* "Private.key", "Public.cer", KEY ="****"
,**** Which is the private key password. If the private key is no password protection on the line to add the following:
* "Private.key", "Public.cer"

UIQ to the following as an example of. PKG documents here have joined the appropriate code:

; Languages
& EN, FR

; Header and app name, KExample UID - 0xdeadbeef
# ( "Example-EN", "Example-FR"), (0xdeadbeef), 1, 2, 3, IU, SH

; Supported Platform Definitions
(0x101F617B), 2, 0, 0, ( "UIQ20ProductID", "UIQ20ProductID")

; Signing files (and password if applicable)
* "Private.key", "Public.cer", KEY ="****"

; And finally, the files to install
"\ symbian \ UIQ_70 \ epoc32 \ release \ thumb \ urel \ tExample.exe "-"!: \ System \ tExample.exe"
"\ symbian \ UIQ_70 \ epoc32 \ release \ thumb \ urel \ tExampleData.dat" --
"!: \ System \ tExampleData.dat"

Create your MakeSIS implementation. SIS file, so you have to have a signed and submitted to the test. SIS file.
Note: Signed in the process of packing paper and related MakeSIS nomenclature For more information, you can refer to the current Symbian OS SDK in the text MakeSIS

File.

Symbian MakeSIS used to generate SIS:

Makesis myapp_gcce.pkg

In the "myapp_gcce.pkg" in the document, which defines the requirements for the installation of the path of the file to install.

SignSIS use to sign SIS files, users need a certificate of public key and private key documents: mykey.key and mycert.cer (If you are Open

Signed, you use the certificate application developers (Developer ID) public key certificate):

signsis myapp_gcce.sis myapp_gcce.sisx mycert.cer mykey.key mypassword

The "myapp_gcce.sisx" is the output of the document had been signed.


(2) verify the signatures

Please download a new signature verification tools, and use the following command to verify the signature of the SIS has:

VerifySymbianSigned filename.sis


V. Step 3 - Submit your application for testing

5.1 Registration

The submission of the application, you must be Symbian Signed Web site to register. When you submit the application (or re-submit applications), with

Login information available is very simple. If you register for the first time, in accordance with the following:
1. Symbian Signed Web log: www.symbiansigned.com.
2. Here you can find a wide range of questions and answers to frequently asked questions, as well as test cases on the test's useful information (as long as the appropriate choice of the left hand side of the chain

Then).
3. Registration, click on the link register.
4. Follow the on-screen prompts to provide the requested information (note that the information provided will be used for Symbian applications directory).
5. When the success of the registration, you can use your publisher to submit a certificate signed the application.

5.2 submit applications

Submitted in accordance with the following steps need to test the application:
1. Symbian Signed Web log: www.symbiansigned.com.
2. Registered to use when creating a user name and password.
3. In the left hand side of the screen, select 'Submit New'.
4. You need to test the application of the testing companies.
Note: WoSign recommended users contact the company to test Test House: MphasiS, taking into account the 3 major test of the only companies in Shanghai have to do

Office, the Chinese user, at the same time the cost of testing is to test 3 companies in the cheapest (on-line public for the price: 185 euros, 2,000 million). A

Body contact information: Atlas Wang, Tel: 021-5080 7360, Email: wang.hao @ mphasis.com.
5. When you have chosen a testing company, will be asked to fill in your user information. If you are willing to submit, you can add and edit your letter

Interest rates.
6. At this point, you need to submit the application details, including the application name, description, as well as where to run on a mobile phone. Note: to avoid

Some cell phone number of options (for example, you can not choose the same time, Sony Ericsson P800 and Nokia 6600, because these two based on different mobile platforms

Different needs. SIS).
7. Finally, submit your application and related materials.

5.3. ZIP file will have to submit what

When you submitted. ZIP file contains the following required documents / files:
(1) Your. SIS file (using your certificates signed after the publisher of the paper). The document will be installed for testing applications, if successful

, It will only use the certificate application (Content ID) on. SIS file re-signed, and returned to you for publication.
(2). PKG used to create the document. SIS file. Testing conducted by the company before and after the control platform to ensure that the objectives and norms of correctness.
(3) a complete Readme.txt. Notes version of it should be included and how to use the application summary of the recommendations (or in the. ZIP file contains

A separate User's Guide)
NOTE: If you are interested. ZIP files have any questions, you can pre-site testing tools Sample.zip documents submitted to the district.

5.4 submit applications before an important check

In order to ensure that you submit any information through the course of testing, inspection is necessary. The purpose of this process is to reduce developers and companies to test anti -

The resumption of discussions. This will not only speed up your have a legitimate signatures. SIS file listing the speed at the same time so that your costs at least. Therefore, you should be security

Card has completed the following steps:
(1) https: / / www.symbiansigned.com / app / page / overview / testcriteria reading test norms and guidelines, and to ensure that your

Correct application of compliance provided by the guide. To avoid a submission that since you are not testing applications. In the same vein, to avoid the testing process as a test of your

The application of a way to the hope of finding any fault or flaw - this is not a cost-effective method of error correction.
(2) certificates are issued by the application of the signature before you check provided by the needs of the signature. SIS file to install it correctly to the cell phone. When you have

With publishers on the certificate application was signed, it must be Symbian Signed can be installed on most handheld devices.
(3) to verify that you will be submitted. ZIP file contains the required documents and complete documentation.
Note: the application was signed and is ready to enter the market, you should have been verified to ensure a common interface / style guidelines, because of your. SIS

Documents to make any changes need to re-submit.

5.5 Symbian Signed list

(1) to ensure that all your files and resources, all users can see the text of the spelling and grammar are correct.
(2). SIS file contains documents to help (if applicable).
(3) have the correct version of the information "About" screen.
(4) in the cell phone / user interface and / or other industrial applications in line terms.
(5) to ensure that the application in accordance with the documents provided by the operation.
(6) to ensure the application of the appropriate use of color scheme.
(7) to ensure that the application in the target cell phone use in the right font (and the value of the pound)

Sixth, steps 4 - Test Test

End to submit your application, it will be sent to you to choose the testing company.
The test will verify the validity of the certificate publisher and. SIS file signatures. If proved to be successful, the Test House will check your application process

Order, and to send you a test run of the cost of the offer. Throughout this process you will receive e-mail notification. If you would like to inquiries received by the offer, you can

Direct contact with the test, other details can be found in www.symbiansigned.com.
Note: Only when you accept the test's quotations, the test will start.
Symbian Signed Web site to accept the use of quotation, follow the steps described.
1. The use of registration created a user name and password to log on.
2. The left hand side of the screen to choose the "Applications".
3. You will see the application submitted by its current state list.
4. I hope you choose to accept the offer of the application, the application details will be revealed.
5. The page will allow you to accept the offer and arrangements for the company to pay for the test.
After complete testing, a wide range of test reports by mail will be sent to you. If your application has been through the test,

Symbian signed. SIS file will test the company to upload to your online account. Access to the same "Applications" domain, you may be able to receive

For the distribution of applications.
If your application failed to pass one or more tests, you need to test the company to send the report to describe the content be modified, and then

Time to submit your application for testing. When you re-submit an update. ZIP file, in the use of www.symbiansigned.com

"Applications" domain to upload your application. When you select the applications and visit all the details, this will be a new "Upload"

Option. It's the latest document to replace the original. ZIP file, and repeat the testing process. On the re-test the pricing information in the test under the company information

Can be found. This cycle will be repeated until the implementation of your application through all the tests.

Seven, when applications pass the test

Once your application has successfully passed the test of the company under the management of all the tests will upload your application to the CA TC

TrustCenter. TrustCenter first publisher to use a certificate to verify the signatures, and then on the Symbian root certificate re-sign the application and send it back

Testing companies. Testing will let you know that you download from the Web site of the Symbian Signed applications.
Please note: TrustCenter will revoke the certificate database (revocation database) stored in the details of the application, if the application is

Malicious, through cancellation of the certificate to the realization of malicious software has been installed in the phone failure of the malicious program. Revoked (revocation) is considered to be the last

Means, so this means before and ISV software developers to carry out wide-ranging discussion.

7.1 applications directory

This application provides a directory of a strong mechanism to distributors and network operators can see your application. For the Symbian Signed test

The industry standard test has been defined in detail, the distributors who are convinced that Symbian Signed applications are ready for sale. Therefore, we hope, as opposed to

Unsigned applications, Symbian Signed applications will be subject to preferential treatment.
The directory itself as the signature of the application provides a convenient information base, has laid down a successful test of the application profile. This directory

Only those third-party applications, distributors can see, and hide any application documents. The use of the directory, and must sign a ymbian Association

That in order to ensure that your data will not be abused. Through proper and comprehensive presentation of your application, the user list is likely to contact you. This will be dug

Dig a larger potential market and ultimately increase revenue.
Note: The directory that contains your contact details and your application in detail, but does not include the application itself.
Once your application has been Symbian Signed, if you want to in the application of the directory that contains your application in detail (in the application

Submit a form to use the default "ticked"), it will immediately appear in the directory. Although most of the recommendations of Symbian software developers should be their ISV

With the procedures contained in the directory, but you can always join or withdraw from the directory.
Note: Only complete applications can be signed in the directory display.

Pat, how to get help
If you have any questions about Symbian Signed, or is a sign of the effective application of relevant process and the need to pay attention to the issue of clearance is not very

Chu, please contact symbiansigned@symbian.com. Or go directly to Symbain Developer Forum Chinese Forum posting up:

http://developer.symbian.com/forum/forum.jspa?forumID=37, you will be back in time and support.

Return to top

 

 

 

The use of Microsoft code signing certificate signed Java code to use guide


This guide has been purchased for WoSign / Thawte / VeriSign Microsoft code signing certificates, needed to use this code to sign a certificate signed Java JAR file has been prepared, if you do not have a signature tools, SUN go to the company's Web site for free download: http:// java.sun.com/j2se /, recommended to download JDK1.4.2 or later to support the Solaris SPARC/x86, Linux86 and the Windows operating system. Please note: WoSign Microsoft code signing certificates only to support the J2SE 1.5.008 version of the above.

Step 1 to. Pvk and. Spc convert. Pfx format
Microsoft code in your application has been successfully signed certificate private key to generate a document mycert.pvk, also signed the code certificate (public key) mycert.spc, you need to convert the file into a two PKCS12 format of the document mycert.pfx , The conversion of specific steps are as follows:

(1) to download Microsoft software conversion tools: pvkimprt.rar, and the success of the installation;

(2) Make sure your computer has installed the code signing certificate issued by the intermediate root certificate, and if not, please click to install:
WoSign root certificate for the Intermediate: WoSign Code Signing Authority
Thawte root certificate for the Intermediate: Thawte Code Signing CA
VeriSign root certificate for the Intermediate: VeriSign Class 3 Code Signing 2004 CA?

(3) in DOS mode, to preserve access to two documents signed certificate mycert.pvk and mycert.spc directory, type the command:

Pvkimprt mycert.spc mycert.pvk

Prompted for a password by the private key, the certificate to start the import process, according to the number of return on successful completion of the certificate into the Windows certificate store, in the IE browser's "Tools" - "Internet Options" - "content" -- "Certificates" - "personal" will be able to see your signature certificate, and then click on the "export" can be signed certificate contains the public key and private key. Pfx certificate format.

Please note: In the export should be selected, "if possible, all the certificates, including certificates to the path" and select the proposal "if the export success of the delete key" to prevent the illegal export of others. If you need to import used to import again, this time into the default is "not allowed to export the private key" in order to guarantee the safety of the signature certificates.

Please note: pvkimprt tool does not support cross-operating system, that is, if you are in the Windows 2000 operating system to generate the private key file. Pvk, and then only in Windows 2000 operating system pvkimprt the use of tools.

In order to prevent piracy, the following steps have been omitted, and WoSign please direct contact with customers WoSign customer service support.

Step 2 to PFX format certificate signed into Keystore
Step 3 Digital Signature Applet

Step 4 signature verification

Once signed, it could have been signed JAR files on the Internet for users to download, the Java client will show your signature certificate information, if the signature has been tampered with the documents or damage, the system will remind users to install and refused to .

Return to top

scanv