Summer Savings on Website Security
All summer long, protect your website with trusted SSL certificates at reduced prices — simple, secure, and cost-effective.
Get 10% off with coupon: SUMMER10

Ja. DigiCert KeyLocker Cloud-HSM-Signierung ermöglicht es Ihnen, über eine API ohne Token zu signieren, und unterstützt macOS- oder Linux-Build-Agenten, bei denen ein USB-Token nicht praktikabel ist.
Link kopieren
Comodo EV und Sectigo EV beginnen beide bei $287/Jahr und sind damit die günstigsten EV-Optionen auf dieser Seite. Mehrjährige Bestellungen senken die jährlichen Kosten, mit jährlicher Neuausstellung gemäß der 460-Tage-Regel.
Link kopieren
For kernel-mode drivers, yes; Microsoft’s WHQL portal rejects anything below EV. User-mode drivers can be signed with OV under the same Authenticode flow as ordinary applications.
Link kopieren
EV requires registered-organization vetting and is the only tier accepted for Windows kernel-mode drivers; OV permits individual developers at lower cost. EV vetting typically takes 3–5 business days longer than OV.
Link kopieren
Keine öffentlich vertrauenswürdige CA stellt sie aus. Die vollständige Begründung und die günstigsten kostenpflichtigen Alternativen finden Sie im obigen Abschnitt „Warum kostenloses Code Signing nicht realistisch ist“.
Link kopieren
Yes for general signing of cross-platform binaries, including .jar files and many container formats. macOS App Store distribution requires a separate Apple Developer ID program; Linux signing is less standardized but supported across most package formats.
Link kopieren
1–7 business days depending on the CA and validation level. EV usually takes longer than OV because the organization vetting is more involved, so plan extra time on a tight release deadline.
Link kopieren
Any EV code signing certificate. Microsoft’s WHQL portal and attestation signing flow both reject non-EV certificates outright.
Link kopieren
Maximum 460 days per issuance under current rules. Always sign with a timestamping authority (DigiCert’s tsa.digicert.com or Sectigo’s timestamp.sectigo.com) so binaries stay trusted past expiration. Full context in the 460-Day Validity section above.
Link kopieren
A hardware token is one of three options. Cloud signing services such as DigiCert KeyLocker and SSL.com eSigner skip the physical token entirely: the key sits in a CA-managed HSM and you sign over an API, which works well for CI/CD. See the hardware delivery section above.
Link kopieren