Signing executables and root certificate

09/04/2007
I'm using secureBlackbox to sign some executable files with our certificate for code-signing, issued by Thawthe. When this executable is distributed to a new PC sometimes the Thawte root certificate is not installed, and the verification process fails.

Can I include the root certificate on our executable in order to make the verification successfull? or I'm confused and the only way is install the root certificate on the PC?

Thanks in advance.
09/04/2007
by Eugene Mayevski (Team)

You can include the certificate chain with your signature. You just need to get the right CA certificates from Thawte.

09/04/2007
Ok, thanks, but how to do it in code? Is there any function or I need to AddCertificate for every certificate on the chain?
09/04/2007
by Eugene Mayevski (Team)

Yes, you need to call AddCertificate for each certificate in chain

