Signing Policy Inventory

The Signing Policy Inventory page displays all configured signing policies in your AppViewX environment. Each policy defines the hash function, signing type, timestamping authority, and key mapping used during code signing operations.

Overview

Use the Signing Policy Inventory page to create, manage, and monitor signing policies across your organization. The page lists all configured policies along with their hash function, signing type, timestamping authority, key mappings, and usage details.

Navigate to the Signing Policy Inventory

To open the Signing Policy Inventory:

  1. Go to Menu > Code Signing > GROUPS & POLICIES > Signing Policy.
  2. Select Signing Policy.

    The Signing Policy Inventory page displays a list of all configured signing policies.

Signing Policy Inventory

The following table describes the fields displayed in the Signing Policy Inventory.
Table 1. Signing Policy Inventory
Fields Description
Policy Name The name of the signing policy. Select the policy name to view or edit its configuration.
Hash Function The cryptographic hash algorithm configured for the policy. For example: SHA-256.
Signing Type The method used for signing. Possible values: File Based Signing, Hash Based Signing.
Timestamping Authority The timestamping authority (TSA) configured for the policy. For example: Digicert.
Key Mapping Displays the keys mapped to the policy. Select View to open the View Keys panel. See View Keys.
Usage Displays the number of users assigned to the policy. Select the assigned count to open the View Usage Count panel. See View Usage Count. Displays NA if no assignments exist.
Meta Information Displays additional metadata associated with the policy, if configured during policy creation. Displays NA if no metadata is available.

Create a Signing Policy

To add a new signing policy, select Create on the Signing Policy Inventory page. For detailed instructions on configuring a signing policy, see Create a Signing Policy.

Delete a Signing Policy

To delete one or more signing policies:

  1. Select the checkbox next to each policy you want to delete.
    Note: Deletion of a signing policy is restricted if it is associated with a signing record.
  2. Select Delete.
CAUTION: Deleting a signing policy removes it permanently.

View Keys

The View Keys panel displays the cryptographic keys mapped to a signing policy.

To open the View Keys panel, select View in the Key Mapping column for the policy.

The following table describes the columns in the View Keys panel.

Table 2. View Keys Column Descriptions
Fields Description
Key Name The name of the cryptographic key mapped to the policy. For example: CodeSigningCertificate.
Key Type The algorithm type of the key. For example: RSA.
Tip: A policy can have one or more keys mapped to it. Use the pagination controls to navigate through multiple entries.

View Usage Count

The View Usage Count panel displays the usage limits and current consumption for each user assigned to a signing policy.

To open the View Usage Count panel, select the assigned count link in the Usage column for the policy.

The following table describes the columns in the View Usage Count panel.

Table 3. View Usage Count Column Descriptions
Fields Description
User Name The name of the user assigned to the signing policy.
Limit The maximum number of signing operations permitted for the user within the configured frequency period.
Count The number of signing operations the user has consumed in the current frequency period.
Frequency The reset period for the usage count. For example: DAILY resets the count every day.
File Type The file type the user is permitted to sign under this policy. For example: jar.
Status The health status of the assignment. A status of HEALTHY indicates the user is within the permitted usage limit and signing operations.
  • HEALTHY, 0–69%
  • WARNING, 70–89%
  • CRITICAL, 90–99%
  • EXHAUSTED, 100%
Tip: Monitor the View Usage Count panel regularly to identify users approaching their signing limit before operations are blocked.