Skip to main content

DigiCert Software Trust Manager for U.S government agencies

This chapter provides guidance for configuring and operating DigiCert​​®​​ Software Trust Manager within a FedRAMP-authorized environment. It describes the cryptographic controls, key-protection model, roles and permissions, signing and release workflows, and audit capabilities available in the FedRAMP deployment of Software Trust Manager.

Use this guidance alongside your organization’s approved security, key-management, access-control, and change-management procedures. It is intended to support FedRAMP authorization and ongoing compliance activities; however, your organization remains responsible for identifying, implementing, approving, and monitoring the controls and configuration requirements applicable to its environment.

Important

FedRAMP certification status

DigiCert for Government is pursuing FedRAMP certification. Publishing this documentation doesn't indicate certification or agency authorization. For the current status, refer to the DigiCert for Government listing in FedRAMP Marketplace.