• Welcome to Support Forum: Get Support for Patch My PC Products and Services.
 

PKI Certificate for Third-Party Update Code-Signing in SCCM

Started by Justin Chalfant (Patch My PC), December 28, 2018, 01:34:06 PM

Previous topic - Next topic

Justin Chalfant (Patch My PC)



Overview

  • In this video guide, we will cover how you can use a code-signing certificate from an Active Directly Certificate Services infrastructure or using a public certificate authority such as DigiCert for signing third-party software updates in Microsoft System Center Configuration Manager (SCCM). Using a trusted PKI based code-signing certificate can be an alternative to using a self-signed certificate.

Topics in Video

Helpful Resources:


RaslDasl

What would be the reason to use a PKI cert rather than letting SCCM create and manage the cert?

Justin Chalfant (Patch My PC)

PKI is generally considered a little more best-practice since certs are issues from a trusted CA and can be more easily revoked. Here are some resources that may be helpful

https://securingtomorrow.mcafee.com/other-blogs/mcafee-labs/self-signed-certificates-secure-so-why-ban/
https://en.wikipedia.org/wiki/Self-signed_certificate