Re: What kind of certificates to use for packages?
Re: What kind of certificates to use for packages?
- Subject: Re: What kind of certificates to use for packages?
- From: Jeremy Reichman <email@hidden>
- Date: Tue, 30 Mar 2010 12:41:28 -0400
- Thread-topic: What kind of certificates to use for packages?
I would expect that a certificate signed by any certificate authority that
is trusted for signing in the System Roots, System, or login keychains would
work, at a minimum. Users and admins can import CAs and certificates and
trust them for themselves and system-wide, respectively.
Then, given my recent experience with building installer packages, my
expectations are often dashed quite resoundingly even when there does seem
to be documentation and precedent.
I had asked something about signed packages on the Apple-CDSA mailing list
on 1/27/2010 -- I know dev.iceberg was involved in that thread -- but that
didn't indicate anything about any CA requirements. In that thread, Ken
McLeod used a test certificate to sign a package but didn't indicate how it
was or wasn't related to a CA -- or the kind of CA.
--
Jeremy
_______________________________________________
Do not post admin requests to the list. They will be ignored.
Installer-dev mailing list (email@hidden)
Help/Unsubscribe/Update your Subscription:
This email sent to email@hidden