Signaturjournal

Help

Azure, wrapper, and local journal

Secure Azure setup

  1. Create your own Artifact Signing account, identity validation, and certificate profile in Azure.
  2. Assign the “Artifact Signing Certificate Profile Signer” role.
  3. Install Windows SignTool, the .NET 8 Runtime, and Artifact Signing Client Tools.
  4. Run az login separately. If device-code flow is needed, enter that one-time code only on Microsoft's browser sign-in page.
  5. Open Help > Azure configuration in Signaturjournal and enter the regional endpoint, code-signing account name, and certificate profile, or select an existing JSON file.
  6. Use Wrapper support to place the wrapper locally and deliberately update your own build command.

The app never requests a password, token, client secret, or device code. Sanitized metadata remains in the user's LocalAppData and is excluded from this website and all downloads.

Microsoft quickstart SignTool integration Roles Azure sign-in