Ask a Question

Advanced Search

Solution ID : SO20518

Last Modified : 05/20/2019

How to install the Extended Validation (EV) Code Signing certificate


To pick up your Extended Validation (EV) Code Signing certificate, please select from one of the following methods below.

Certificate pick up using a DigiCert USB token

Step 1: Install the SafeNet Token Drivers onto a Windows Operating System

Prior to installing the Extended Validation (EV) Code Signing certificate on the USB token, install the SafeNet drivers by following this solution: SO20491

Note: EV Code Signing key generation and certificate pick up is only supported on Windows 7 or above and with Internet Explorer browser version 10.0 or above.

Step 2: Install the EV Code Signing Certificate onto the USB Token

Note: Before picking up the certificate, possession of the hardware token shipped by DigiCert is required.  Only the approved FIPS 140-2 token shipped by DigiCert will be allowed for completing the EV certificate installation.  If there are any questions regarding the status of the EV Code Signing Certificate order or the shipment status of the token, contact Customer Support.

After the USB token has been obtained, perform the following steps to pick up the EV Code Signing certificate

  1. Open the EV Code Signing Certificate order approval email that was received.
  2. Click the secure URL link within the email and follow the steps how to pick up certificate through the Trust Center.

  3. Log in to the Trust Center account.
  4. Enter the Username and Password, click Sign In.
    Note: If you do not remember your Username or Password, refer to this solution.
  5. From the list, select the corresponding certificate to download.
  6. Under the Order summary tab > Available Actions, select Pick up your certificate.
  7. Insert the USB token into the computer.
  8. If this is a new token, you would receive the below message to update your Token Password.
    Note: The default password is 1234567890
    If the default password does not work, use the following solution to initialize or reset the USB Token: INFO1912

  9. A prompt message that the password changed successfully will appear.
  10. Select the Signature hash algorithm (SHA) for the USB token.
  11. Click Continue to generate your private key and install your certificate.
  12. The Web Access Confirmation message window will appear. Click Yes.

  13. You should receive a prompt for the Token Password, and click OK.

  14. A confirmation windows will appear that the EV Code Signing certificate has successfully installed.

Step 3: Verify Installation of the EV Code Signing Certificate

To verify the installation of the EV Code Signing certificate onto your token, perform the following steps:

  1. Click Start.
  2. Go to Programs > SafeNet > SafeNet Authentication Client > SafeNet Authentication Client Tools.
  3. The SafeNet Authentication Client will load.
  4. Click Advanced View.

  5. Expand User certificates.
  6. The EV Code Signing certificate will be displayed.

    If the certificate is not displayed, please select the refresh icon.


Certificate pick up using the option "On another computer or hardware security module (HSM)"

To pick up your EV Code Signing certificate using "On another computer or hardward security module (HSM)", please refer to  SO29128  

Additional Information and Resources

For assistance with signing files using the EV Code Signing certificate, refer to following solutions:

Extended Validation (EV) Code Signing Certificate Signing Instructions
See solution ID:  SO20528

How to sign Microsoft Windows 64-bit kernel-mode software using Extended Validation (EV) Code Signing
See solution ID:  SO20529