Features

File

  • Open project loads a saved .ngws file: path, extensions, certificate, PFX path, timestamp, and description.
  • Save project writes the open project. Save project as writes a new name. The PFX password is not stored.

Recent projects

  • The File menu keeps up to eight opened or saved projects. Open loads one.
  • Remove from recent drops one entry. Clear recent projects clears the list and does not delete the files.

License

  • Enter license code pastes a code, loads one from a file, and saves it only if it reloads as valid.
  • Purchase opens the pay link with this PC's machine code. Copy machine code copies that code.

Help and About

  • Help opens NGWSAuthenticode.chm beside the program. The same help is on the website and in PDF.
  • About shows the version, publisher, license name, and the machine code for this PC.

Certificate Store

  • The list shows code-signing certificates from Current User and Local Computer, with expiry and private-key status.
  • Refresh reads the store again after a YubiKey is inserted or a certificate is installed.

Local PFX

  • Drop a .pfx on the box, or use PFX to browse. If a PFX is present, it is used instead of the store certificate.
  • Show reveals the password. A wrong password stops signing and leaves the other settings unchanged.

Folder or one file

  • Drop a file or folder on the path box, or browse. Extensions and Include subfolders apply to a folder.
  • Ordinary files are signed first. An installer, or a file named setup, install, or bundle, is signed last.

Timestamp

  • The address in the box is the server used for signing. Save URL keeps a custom server. Remove URL drops a custom one.
  • Test sends a real RFC 3161 request. Signing stops if the reply is not a granted timestamp.

Description

  • The description is a label stored in the signature.
  • The publisher name still comes from the certificate, not from this box.

Sign, verify, and preflight

  • Sign and verify signs, then checks the result. Verify only checks files that are already signed.
  • Preflight does not sign. It reports expiry, the private key, and the files that would be signed.

Logs and report

  • Append display log adds the screen text to display.log. The default folder is ProgramData, or AppData if that cannot be written.
  • history.csv records each sign or verify. A release report is written beside the files after they verify.