<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[How to buy a validated P12 cert?]]></title><description><![CDATA[<p>Our clients order reports from our app. The reports are rendered in jsreport at our server at AWS. I would like to sign these reports in jsreport so our clients and other recipients of this report can verify that the PDF is not modified.</p>
<p>The certificate should represent us as a company.</p>
<p>In the future we might want to add the possibility for the clients to provide their own certificate to be able to add a personal signing as well.</p>
<ol>
<li>
<p>How do I get hold of a trusted certificate for this use? Our regular SSL cert for the server API is issued by Amazon. I don't think they'll issue anything else but certificates for the domains we have registered with them.</p>
</li>
<li>
<p>When problem 1 is solved: How do I embed enough information in the PDF so the verification can be done even after the certificate has expired? See &quot;Establish long-term signature validation&quot; at the following link:</p>
</li>
</ol>
<p><a href="https://helpx.adobe.com/acrobat/using/validating-digital-signatures.html#validate_a_digital_signature" rel="nofollow">https://helpx.adobe.com/acrobat/using/validating-digital-signatures.html#validate_a_digital_signature</a></p>
]]></description><link>https://forum.jsreport.net/topic/1818/how-to-buy-a-validated-p12-cert</link><generator>RSS for Node</generator><lastBuildDate>Wed, 12 Aug 2026 08:49:39 GMT</lastBuildDate><atom:link href="https://forum.jsreport.net/topic/1818.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 18 Nov 2020 13:51:32 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to How to buy a validated P12 cert? on Invalid Date]]></title><description><![CDATA[<p>Our clients order reports from our app. The reports are rendered in jsreport at our server at AWS. I would like to sign these reports in jsreport so our clients and other recipients of this report can verify that the PDF is not modified.</p>
<p>The certificate should represent us as a company.</p>
<p>In the future we might want to add the possibility for the clients to provide their own certificate to be able to add a personal signing as well.</p>
<ol>
<li>
<p>How do I get hold of a trusted certificate for this use? Our regular SSL cert for the server API is issued by Amazon. I don't think they'll issue anything else but certificates for the domains we have registered with them.</p>
</li>
<li>
<p>When problem 1 is solved: How do I embed enough information in the PDF so the verification can be done even after the certificate has expired? See &quot;Establish long-term signature validation&quot; at the following link:</p>
</li>
</ol>
<p><a href="https://helpx.adobe.com/acrobat/using/validating-digital-signatures.html#validate_a_digital_signature" rel="nofollow">https://helpx.adobe.com/acrobat/using/validating-digital-signatures.html#validate_a_digital_signature</a></p>
]]></description><link>https://forum.jsreport.net/post/8064</link><guid isPermaLink="true">https://forum.jsreport.net/post/8064</guid><dc:creator><![CDATA[msageryd]]></dc:creator><pubDate>Invalid Date</pubDate></item><item><title><![CDATA[Reply to How to buy a validated P12 cert? on Invalid Date]]></title><description><![CDATA[<blockquote>
<p>How do I get hold of a trusted certificate for this use? Our regular SSL cert for the server API is issued by Amazon. I don't think they'll issue anything else but certificates for the domains we have registered with them.</p>
</blockquote>
<p>I don't have any experience here. I see here some notes and option to purchase but haven't tried it<br />
<a href="https://www.sslmarket.com/ssl/aatl-certificates-for-trusted-pdf-signing" rel="nofollow">https://www.sslmarket.com/ssl/aatl-certificates-for-trusted-pdf-signing</a></p>
<p>I'm busy now to try this out, but if you go through the process, please write down notes and share it.<br />
We will happily add it to the documentation then.</p>
<blockquote>
<p>When problem 1 is solved: How do I embed enough information in the PDF so the verification can be done even after the certificate has expired? See &quot;Establish long-term signature validation&quot; at the following link:</p>
</blockquote>
<p>It seems the long term validation is enabled by default. Am I missing something?</p>
<p><img src="/uploads/files/1605714437311-upload-cfc65c6c-c7b2-434b-bcea-60900371e024.png" alt="0_1605714438812_upload-cfc65c6c-c7b2-434b-bcea-60900371e024" class="img-responsive img-markdown" /></p>
]]></description><link>https://forum.jsreport.net/post/8072</link><guid isPermaLink="true">https://forum.jsreport.net/post/8072</guid><dc:creator><![CDATA[jan_blaha]]></dc:creator><pubDate>Invalid Date</pubDate></item><item><title><![CDATA[Reply to How to buy a validated P12 cert? on Invalid Date]]></title><description><![CDATA[<p>Thank you!<br />
The link was an eye opener. Those certs are quite expensive, especially since their certs are only usable for n signings per year (2000, 5000). I did find other vendors who did not have a cap on the usage, for example: <a href="https://ssl.comodo.com/document-signing-certificates" rel="nofollow">https://ssl.comodo.com/document-signing-certificates</a>.</p>
<p>Either way we'll have to wait until the underlaying bug is fixed so we can sign and password protect the pdfs at the same time. (see: <a href="https://forum.jsreport.net/topic/1817/how-to-use-pdfpassword-successfully">https://forum.jsreport.net/topic/1817/how-to-use-pdfpassword-successfully</a>).</p>
<p>Having LTV enabled by default is great. I didn't see this because I tested with a private cert.</p>
]]></description><link>https://forum.jsreport.net/post/8077</link><guid isPermaLink="true">https://forum.jsreport.net/post/8077</guid><dc:creator><![CDATA[msageryd]]></dc:creator><pubDate>Invalid Date</pubDate></item><item><title><![CDATA[Reply to How to buy a validated P12 cert? on Invalid Date]]></title><description><![CDATA[<p>One more question. I didn't se a setting for supplying an image with logo or written signature with the signing. Is this possible to do via the API?</p>
]]></description><link>https://forum.jsreport.net/post/8078</link><guid isPermaLink="true">https://forum.jsreport.net/post/8078</guid><dc:creator><![CDATA[msageryd]]></dc:creator><pubDate>Invalid Date</pubDate></item></channel></rss>