Skip to main content

Connectors

The DigiCert​​®​​ Software Trust Manager Integrations feature allows you to connect your DigiCert​​®​​ Software Trust Manager account with our partners ReversingLabs and Fossa for Threat Detection. Additionally, you can integrate with CertCentral global or Europe to order and manage publicly trusted certificates from your account. Publicly trusted code signing certificates must conform to strict CA/B forum guidelines and be validated by a third party trusted certificate authority like DigiCert.

Enable connectors

If your account is hosted by DigiCert, contact your account manager to enable these integrations. If your account is self-hosted, your system administrator can enable these integration by following the steps below:

  1. Sign in to DigiCert ONE.

  2. Navigate to DigiCert® Account Manager > Accounts.

  3. Expand the Features section.

  4. Scroll down to Software Trust Manager.

  5. Toggle to enable the feature:

    Feature name

    Description

    Public certificate issuance

    Toggle to enable CertCentral integration.

    Static binary analysis (SBA)

    Threat detection

    Toggle to enable ReversingLabs integration.

    Software composition analysis (SCA)

    Threat detection

    Toggle to enable FOSSA integration.

Add CertCentral connector

Software Trust Manager integrates with CertCentral to request publicly trusted code signing certificates from DigiCert, a publicly trusted Certificate Authority (CA).

Nota

To integrate with CertCentral, you will need to have a:

  1. Sign in to DigiCert ONE.

  2. Navigate to the Manager menu icon (top-right) > Software Trust.

  3. In the left navigation bar, select Integrations.

  4. Under Certificate authorities, click the CertCentral logo.

  5. Complete the following fields

    Field

    Description

    Where is your CertCentral account located?

    Select the radio button based on where your CertCentral is located:

    • CertCentral global

      https://certcentral.digicert

    • CertCentral Europe

      https://certcentral.digicert.eu/

    How would you like to connect your account?

    If you select Connect using my CertCentral API key, you will need to provide:

    If you select Connect using my CertCentral credentials, you will need to provide your:

    • CertCentral username

    • CertCentral password

    Nota

    For DigiCert single login users, there is an additional integration method. This method will automatically pull your CertCentral API key, provided that your CertCentral account is already linked to your single login account. This method is easier than existing methods that require you to provide your username and password or API key for your CertCentral account.

  6. Click Add to integrate with CertCentral.

Sugerencia

You are ready to manage your publicly trusted code signing certificates.

ReversingLabs integration

Software Trust Manager Threat detection integrates with ReversingLabs to scan your software for malware, vulnerabilities, secrets, and more. Advanced features enable capabilities such as threat differential analysis, software posture assessment, as well as generation of SARIF, SBOM and full risk reports.

Nota

If your account is hosted by DigiCert, contact your account manager to enable ReversingLabs integration.

If your account is self-hosted, your DigiCert ONE system administrator can enable ReversingLabs by following the steps below.

To integrate Software Trust Manager with ReversingLabs:

  1. Sign in to DigiCert ONE.

  2. Navigate to the Manager menu icon (top-right) > Software Trust.

  3. In the left navigation bar, select Integrations.

  4. Under Threat detection, select the ReversingLabs logo.

  5. Complete the following fields:

    Field

    Description

    License key

    Upload the ReversingLabs license key.

    Site key

    Provide the ReversingLabs site key.

    Service tier

    Select the ReversingLabs service tier.

    Provider account ID (optional)

    Enter the ReversingLabs account ID.

  6. Click Add button to complete the integration with ReversingLabs.

Sugerencia

You are ready to use Threat detection.

FOSSA Integration

Software Trust Manager Threat detection integrates with FOSSA to manage your open source components. FOSSA plugs into your development workflow to help your team automatically track, manage, and remediate issues with the open source you use.

Nota

To integrate with FOSSA, you will need to:

To integrate Software Trust Manager with FOSSA:

  1. Sign in to DigiCert ONE.

  2. Navigate to the Manager menu icon (top-right) > Software Trust.

  3. In the left navigation bar, select Integrations.

  4. Under Threat detection, select the FOSSA logo.

  5. Upload the FOSSA API key.

  6. Select Add to complete the integration with FOSSA.

Sugerencia

You are ready to use Threat detection.