Welcome to NGWS Authenticode. This help file walks through the first signing and the controls you will use again on the next release.

Before you sign, have these ready:

  • A code-signing certificate in the Windows certificate store, a YubiKey with that certificate, or a local PFX and its password.
  • The file or folder you want to sign.
  • A timestamp server. DigiCert is selected until you choose another.

The first time you open the program:

  • SignTool is placed in C:\ProgramData\NGWS\Authenticode when this account can write there. Otherwise it is placed in %AppData%\NGWS\Authenticode.
  • The machine code for this PC is saved in that folder as MachineCode.txt.
  • If a full license is not stored yet, the evaluation window opens. You can continue the evaluation or enter a license there.

A normal signing is then:

  • Choose the certificate, or drop a PFX on the PFX box and enter its password.
  • Drop a file or folder on the path box, or browse for it.
  • Test the timestamp server.
  • Click Sign and verify.

The screen log shows what happened. If Append display log is checked, that text is also added to display.log in the signing-tools folder.