Releases and release windows
The DigiCert® Software Trust Manager release feature offers key security by confining their use to specific approved timeframes, sometimes referred to as "release windows." Within these defined timeframes, you have comprehensive control over keypairs, authorized users that can sign, and the maximum allowable signatures.
Assigning an offline key to a release indicates that you can only sign during the release window. In contrast, when assigning an online key to a release, you have more flexibility. Online keys can be used to sign inside or outside a release window.
To sign a release with an online keypair, the following conditions must be met for your signatures to be assigned to the release:
The release's keypair is restricted and the authorized user is mapped to the keypair. Or, the release's keypair is open.
The user is listed as a participant of the release.
The user has sign permissions.
The user uses the releases's online keypair to sign within the release timeframe.
Nota
One keypair can be assigned to one release at a time.