Integration > OVA/OVF Signing
OVA/OVF Signing
OVA and OVF are packaging formats for virtual appliances, and can be digitally signed so a receiving virtualization platform can verify the package’s origin and integrity before deployment.
Use Cases
Sign virtual appliance packages before distribution, keeping the private key off the client machine.
HSM-Isolated Signing
Generates and holds the signing private key inside an HSM, so only a hash ever leaves the client.
Central Audit
Centrally audits every OVA/OVF signing request via a Signing Request Report.
Pre-Deployment Verification
Verifies signed OVA/OVF files before deployment on the target virtualization platform.
Integrations and Resources
CodeSign Secure
OVA/OVF Signing
Signs virtual appliance (OVA/OVF) packages using a private key held inside an HSM.
