Signing Manager Controller (SMCTL)
Signing Manager Controller (SMCTL) provides a Command Line Interface (CLI) that facilitates manual and automated private key management, certificate management, and signing with or without the need for human intervention.
SMCTL comes with a built-in help function and provides instructions on all commands and subcommands to assist users in the CTL tool. See SMCTL command manual.
SMCTL provides secure key generation, application hash signing, and associated certificate-related requirements when the signing request does not require the transportation of files and intellectual property.
Prerequisites
Commands
To view all SMCTL commands:
smctl --help
or
smctl -h
Subcommands
These subcommands specify the actions you can apply to commands when using SMCTL.
All SMCTL commands begin with:
smctl <subcommand>
ショートカット | サブコマンド | 説明 |
---|---|---|
cert | 証明書を管理します。 | |
creds | OS の資格情報ストアの DigiCert® Software Trust Manager 資格情報を管理します。 | |
View and confirm the validity of the credentials and tools configured. | ||
kp | 鍵ペアを管理します。 | |
manual | Signing Managerのコマンドラインインターフェイスの最新の man ページを生成します。デフォルトでは、現在のディレクトリの下の man-pages ディレクトリにマニュアルページファイルが作成されます。 | |
署名、検証、削除を行います。 | ||
ユーザーデータを取得します。 | ||
Windows OS特有のコマンド |
Flags
Flags are used to modify the behavior of a subcommand by specifying parameters. Apply these flags to the subcommands above when using SMCTL.
Shortcut | Flag | Description |
---|---|---|
-v | --version | Version of SMCTL. |
--dir string | Specify the directory to write the man pages. Default is man-pages/. Format: --dir="<value>" | |
-h | --help | Help for SMCTL. |
What signing tools can SMCTL integrate with?
SMCTL integrates with and enables secure hash-based signing with the following signing tools while maintaining key protection, permission-based access and reporting all signing activities:
Download SMCTL
Sign in to DigiCert ONE.
Navigate to DigiCert® KeyLocker > Resources > Client tool repository.
Select your operating system.
Click the download icon next to Signing Manager Controller (SMCTL).
Set up environment variables
Follow the instructions in one of the following articles based on the operating system you will use to sign:
Verify connection
To verify that your client can properly authenticate to the DigiCert® KeyLocker service:
Open smctl.exe.
Run:
smctl healthcheck
Obtain latest versions of SMCTL and other client tools
Review the following table to understand how to obtain the latest version of SMCTL and other client tools:
SMCTL or client tools | Sample command |
---|---|
SMCTL (with auth) | |
SMCTL (without auth) | |
JCE | |