Amazon Signer logo

Amazon Signer

AWS Signer is a fully managed code-signing service to ensure the trust and integrity of your code. It manages the code-signing certificate public and private keys and enables central management and deployment of code signing certificates for Lambda functions and IoT devices.

1 APIs 0 Capabilities 6 Features
AWSCode SigningIoTLambdaSecurity

APIs

AWS Signer API

The AWS Signer API provides programmatic access to create and manage signing profiles, signing jobs, and signing platform permissions for code signing of Lambda functions and Io...

Features

Centralized Code Signing

Security administrators define signing policies and which IAM roles can sign code.

Certificate Management

Automatically manages code-signing certificate public and private keys.

Lifecycle Management

Central management and deployment of code-signing certificates.

Compliance Tracking

Integration with AWS CloudTrail tracks who generates signatures for compliance.

Fully Managed

No infrastructure to maintain — fully managed code signing service.

Signature Revocation

Revoke signing profiles and individual signatures with effective timestamps.

Use Cases

Lambda Code Signing

Sign Lambda deployment packages to ensure only trusted code is deployed.

IoT Firmware Signing

Sign firmware images for microcontrollers and over-the-air (OTA) updates via Amazon FreeRTOS.

Container Image Signing

Sign container images using Notation CLI with Amazon ECR and verify at EKS deployment.

Audit and Compliance

Track all signing operations via CloudTrail for audit and compliance requirements.

Integrations

AWS Lambda

Sign Lambda deployment packages; Lambda verifies signatures at deployment.

Amazon FreeRTOS

Sign firmware images for IoT microcontrollers and OTA updates.

Amazon ECR

Sign container images using Notation CLI stored in ECR registry.

Amazon EKS

Verify image ownership and integrity at Kubernetes deployment time.

AWS Certificate Manager

Create or import SSL/TLS certificates used for code signing.

AWS CloudTrail

Record and audit all API calls to AWS Signer for compliance.

AWS IoT Device Management

Sign code for IoT devices managed by AWS IoT Device Management.

Semantic Vocabularies

Amazon Signer Context

60 classes · 69 properties

JSON-LD

API Governance Rules

Amazon Signer API Rules

25 rules · 12 errors 9 warnings 4 info

SPECTRAL

Resources

🌐
Portal
Portal
🔗
Documentation
Documentation
📜
TermsOfService
TermsOfService
📜
PrivacyPolicy
PrivacyPolicy
💬
Support
Support
📰
Blog
Blog
👥
GitHubOrganization
GitHubOrganization
🌐
Console
Console
📝
SignUp
SignUp
🔗
Login
Login
🟢
StatusPage
StatusPage
🔗
Contact
Contact
🔗
SpectralRules
SpectralRules
🔗
Vocabulary
Vocabulary
🔗
NaftikoCapability
NaftikoCapability