|
|
Hi SAG,
our security department requests for signed software packages.
IBM has the ability integrated in SMPE:
GIM69270I SIGNATURE VALIDATION FOR FILE "/syi/smpnts/WRZMIM/STP71264/GIMPAF2.XML" WAS SUCCESSFUL. THE GIMZIP PACKAGE
WAS SIGNED BY A CERTIFICATE WITH SUBJECT NAME "CN=IBM Z Systems Software Product Package Signing - G1,
OU=IBM Code Signing, O=IBM Corporation, C=US", SERIAL NUMBER "15" AND SHA256 FINGERPRINT
"3cc6085e5834cddda61d23911cfcb7e1aadd1bfc7ff09d4a31af564f1dfe45e7". THE SIGNING CERTIFICATE WAS ISSUED BY
"CN=STG Code Signing CA - G2, OU=IBM Code Signing, O=IBM Corporation, C=US".
Please let me know when and how you plan do offer that service.
Thank you.
Best regards, Christian Krendl
| Use Case | More and more audits requests signed software packages. |