Releases
Releases protect keys by restricting their use to pre-approved dates and times. The pre-approved date and time selected for a release is sometimes referred to as a release window. During a release, organizations can control which keypairs can be used, who can sign with them, and the maximum number of signatures that can be used during the release.
Offline keys can only be used to sign during a release. When a keypair with an offline status is assigned to a release, you must be listed as a signer for the release to be able to sign.
Online keys can be used to sign with at any time. When a keypair with an online status is assigned to a release, all signatures you make will be associated with the release, if:
You are assigned to the keypair.
You are listed as a signer for the release.
You sign with the key during the release.
However, none of your signatures will be associated with the release, if:
You are assigned to the keypair.
You are not listed as a signer for the release.
You sign with the key at any time.
Nota
A keypair can only be assigned to one release at a time.
Create a release
You require the Request release window
permission to create a release.
To create a release:
Sign in to DigiCert ONE.
Navigate to: Manager menu (top right) >DigiCert® Software Trust Manager > Releases > Create release.
Complete the following fields:
Field
Description
Release name
Name to uniquely identify this release.
Version
Enter a version number for the release. This is an optional field.
Keypair category
Team
Select a team that can access and work on this release. When you select a team, you will only be able to select keypairs that the selected team has access to.
This field will only be available if you have Teams enabled under Account settings.
Keypair with default certificate
Select True or False.
Release type
Select Online (Online releases uses online keypairs that can be used at any time by users who have access.), Offline (Offline releases uses offline keypairs that can only be used during a release window.), or Test (Test releases uses test keypairs that can be used at any time by users who have access.).
Release status
For offline releases, select Pending or Approved.
Keypair
Select one or more keypair that should be used for this release.
Users
Select users that can sign in this release. This field will not be available if you have Teams enabled under Account settings.
Date range
Choose a release window by selecting a start and end date.
Maximum signatures
Limit how many signatures can be used in this release.
Note
Insert a custom note that can give additional details about the release. This is an optional field.
Click Create release.
Update a release
Sign in to DigiCert ONE.
Navigate to: Manager menu (top right) >DigiCert® Software Trust Manager > Releases.
Click on the release name that you want to update.
Click on the edit icon.
Update the fields.
Click Update.
What can be updated?
The following fields can be updated for an existing release:
Release status | Release type | Fields that can be updated |
---|---|---|
Completed, Failed, or Rejected | All | Name |
Version | ||
Notes | ||
In progress | Offline | Users with approval permission for this release can update all fields. |
Other users can only update the name, version, and notes. | ||
In progress | Online | The creator of the release window can update all fields. |
Other users can only update the name, version, and notes. | ||
Active, Pending, or Approved (releases that have not started) | All | All fields |