You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
to Vault
We can store keys and a valid signing cert in Key Vault but there does not seem to be a crypto provider (CSP) that can be called from the code signing utilities. We would like to sign authenticode and Java binaries. Is it supported by Hashicorp key vault ?
Becca Petrin
unread,
Aug 9, 2019, 7:32:03 PM8/9/19
Reply to author
Sign in to reply to author
Forward
Sign in to forward
Delete
You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
to Vault
Hi Ashi,
Good question! Vault is written in Go and subsequently our engineering staff and infrastructure all focus around Go language and tooling. Thus, we haven't developed a Java CSP, and I also personally haven't heard of one existing externally. I'm aware of a Spring integration, more here, in case it's any help.
-Becca
angel visri
unread,
Aug 13, 2019, 6:08:58 AM8/13/19
Reply to author
Sign in to reply to author
Forward
Sign in to forward
Delete
You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
to Vault
Hi Becca,
Thank you.
My requirement is : I want to use the keys stored in hashicorp
vault to digitally sign Microsoft(Signing tool used is signtool.exe) and
java(signing tool used is jarsigner.exe) artifacts.
Is there any way of doing it ?
Thanks.
Becca Petrin
unread,
Aug 21, 2019, 12:48:18 PM8/21/19
Reply to author
Sign in to reply to author
Forward
Sign in to forward
Delete
You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
to Vault
Hi Ashi,
Ah! The Transit secrets engine can provide signatures.