Ext4Fsd icon indicating copy to clipboard operation
Ext4Fsd copied to clipboard

I am an MS partner and have an EV Code signing cert

Open JasonJShuler opened this issue 2 years ago • 47 comments

I dropped the cheese on an EV code signing cert for my ill-fated start-up and haven't had a good opportunity to use it. This kind of project is exactly what I had in mind when I acquired it.

If you don't mind the drivers being signed by Stand Back Labs LLC, I'd love to help out. I will host them in a repo under my org @standbacklabs. Let me know if you would be interested in looping me into your releases!

JasonJShuler avatar Mar 22 '22 19:03 JasonJShuler

That would be great! Have you signed drivers before so you know the process?

Bo Branten

bobranten avatar Mar 22 '22 19:03 bobranten

Nope. Virgin territory. I'm still trying to get it to build - turns out VS 2022 is kinda limited...

JasonJShuler avatar Mar 22 '22 22:03 JasonJShuler

I am theoretically signed up as a hardware developer, so in theory I could submit it for WHQL or whatever

JasonJShuler avatar Mar 22 '22 22:03 JasonJShuler

Ok making progress - seem to have the right requirements, but VS2019 has many errors when I try to build: image

JasonJShuler avatar Mar 22 '22 22:03 JasonJShuler

Ok, disabled treat warnings as errors and now it can't find #include "mountmgr.h" in enumDisk.cpp.

image

I had too many Windows SDKs installed - needed to reinstall the latest

JasonJShuler avatar Mar 22 '22 23:03 JasonJShuler

ok, I got it to build and have the output files. Sounds like for Windows 10 and 11, I only need to do attestation signing whihc is actually pretty easy, but not what I expected. I pack into a cab, sign the cab, upload to partner center and supposedly 10 minutes later I can download a package now signed by Microsoft that will play nice with secure boot.

Any other signing methods apply to pre-Win 10. So I'm too tired to figure out the cab packing, but I am somewhat familiar with signtool - at least in the java world. Regroup tomorrow?

JasonJShuler avatar Mar 23 '22 07:03 JasonJShuler

That was nice progress. Thank you for youre time!

Bo Brantén

bobranten avatar Mar 23 '22 12:03 bobranten

Have you done any progress?

Bo Brantén

bobranten avatar Mar 29 '22 19:03 bobranten

@JasonJShuler How is signing the driver going? Because I need to use it on a system with Secure Boot enabled and would rather not enable testsigning

kristibektashi avatar Jun 07 '22 10:06 kristibektashi

@bobranten @JasonJShuler any progress?

kristibektashi avatar Sep 18 '22 13:09 kristibektashi

@bobranten @JasonJShuler any progress?

I have not heard from him in a while but it did sound promising to begin with...

Bo Branten

bobranten avatar Sep 18 '22 14:09 bobranten

Ok making progress - seem to have the right requirements, but VS2019 has many errors when I try to build: image

Those warnings is because I have only tryed to compile the driver with Win10 WDK but you used the latest Win11 WDK and some functions are marked deprecated, but that is only advisory warnings anyway and you managed to turn them off.

Bo Branten

bobranten avatar Oct 11 '22 08:10 bobranten

@JasonJShuler @bobranten Any progress? Is this project dead?

kristibektashi avatar Oct 26 '22 15:10 kristibektashi

I have not been able to reach the person who offered to sign the driver so there is no progres on that but the project itself is alive, I maintain the driver and try to fix bugs but signing it would be very helpful for the users.

Bo Branten

bobranten avatar Oct 26 '22 17:10 bobranten

I have not been able to reach the person who offered to sign the driver so there is no progres on that but the project itself is alive, I maintain the driver and try to fix bugs but signing it would be very helpful for the users. Bo Branten

Maybe try emailing them? Based on their GitHub contributions they seem somewhat active

kristibektashi avatar Oct 26 '22 17:10 kristibektashi

ping @JasonJShuler (just in case:)

sskras avatar Nov 29 '22 22:11 sskras

I have not been able to reach the person who offered to sign the driver so there is no progres on that but the project itself is alive, I maintain the driver and try to fix bugs but signing it would be very helpful for the users. Bo Branten

Maybe try emailing them? Based on their GitHub contributions they seem somewhat active

i checked the Website linked in the StandbackLabsrepo he linked above and it lead me to an entirely diffrenty site marked as fishy by ublockorigin which seemingly had nothing to do with what StandbackLabs claims to be based on their GitHub-Repo.

Not to be the boooo-man but this raises a few red flags for me.

@bobranten pinging for attention ;)

Shadowphoenix avatar Nov 30 '22 17:11 Shadowphoenix

@JasonJShuler @bobranten any progress in signing the driver?

kristibektashi avatar Jan 23 '23 20:01 kristibektashi

[Pro tip: Do NOT purchase/register a domain through the office 365 Admin portal]

Sorry all - my cert expired, and since Microsoft messed up my domain renewal, it was swiped by a scam squatter as noticed by @Shadowphoenix. The new domain is standbacklabs.org. To use a new domain, I will probably have to go through the vetting process again. I seem to still be setup as a MS hardware developer - don't know if I need an active CSS. I'll have to look.

Hopefully the squatter will not renew the domain in a few months, and I can get it back...

As I mentioned previously, I have zero experience with driver development - I will need guidance on how to properly build and test for any supported platforms.

Thanks!

JasonJShuler avatar Jan 27 '23 15:01 JasonJShuler

Sorry to hear about the problems but it is very nice of you to want to help us, we will see how it goes.

Bo Branten

bobranten avatar Jan 27 '23 16:01 bobranten

FYI - looks like I should be able to renew the csc. It's a $300 investment and is only good for a year.., so... I hope someone will have some time to help me with the steps to get it certified.

JasonJShuler avatar Feb 02 '23 09:02 JasonJShuler

I wonder if you could also get ERAM (A RAM Disk driver) to be signed so it can be used in Windows 10 and 11. Its source code is at https://github.com/Zero3K/eram.

Zero3K avatar Apr 16 '23 16:04 Zero3K

Possibly - I haven't started the vetting yet - the .com domain registration expires next month and I'm hoping the squatter doesn't renew (since my previous cert was tied to the .com domain). Sorry about the weird stuff...

On Sun, Apr 16, 2023, 12:14 PM Bryan Kirk @.***> wrote:

I wonder if you could also get ERAM (A RAM Disk driver) to be signed so it can be used in Windows 10 and 11. Its source code is at https://github.com/Zero3K/eram.

— Reply to this email directly, view it on GitHub https://github.com/bobranten/Ext4Fsd/issues/20#issuecomment-1510423502, or unsubscribe https://github.com/notifications/unsubscribe-auth/AHDGDXPPKW3ZSVL46YKYQJLXBQLHLANCNFSM5RL2W4AQ . You are receiving this because you were mentioned.Message ID: @.***>

JasonJShuler avatar Apr 16 '23 17:04 JasonJShuler

So, 300 a year?

Ernesto Villarreal

On Sun, Apr 16, 2023 at 11:39 AM Jason Shuler @.***> wrote:

Possibly - I haven't started the vetting yet - the .com domain registration expires next month and I'm hoping the squatter doesn't renew (since my previous cert was tied to the .com domain). Sorry about the weird stuff...

On Sun, Apr 16, 2023, 12:14 PM Bryan Kirk @.***> wrote:

I wonder if you could also get ERAM (A RAM Disk driver) to be signed so it can be used in Windows 10 and 11. Its source code is at https://github.com/Zero3K/eram.

— Reply to this email directly, view it on GitHub <https://github.com/bobranten/Ext4Fsd/issues/20#issuecomment-1510423502 , or unsubscribe < https://github.com/notifications/unsubscribe-auth/AHDGDXPPKW3ZSVL46YKYQJLXBQLHLANCNFSM5RL2W4AQ

. You are receiving this because you were mentioned.Message ID: @.***>

— Reply to this email directly, view it on GitHub https://github.com/bobranten/Ext4Fsd/issues/20#issuecomment-1510439919, or unsubscribe https://github.com/notifications/unsubscribe-auth/AAUHEDIRXOJR7BD4XCYB5E3XBQVFZANCNFSM5RL2W4AQ . You are receiving this because you are subscribed to this thread.Message ID: @.***>

netomx avatar Apr 16 '23 21:04 netomx

Yes, and I renewed it specifically for this... I am full of bright ideas 😜

On Sun, Apr 16, 2023, 5:50 PM netomx @.***> wrote:

So, 300 a year?

Ernesto Villarreal

On Sun, Apr 16, 2023 at 11:39 AM Jason Shuler @.***> wrote:

Possibly - I haven't started the vetting yet - the .com domain registration expires next month and I'm hoping the squatter doesn't renew (since my previous cert was tied to the .com domain). Sorry about the weird stuff...

On Sun, Apr 16, 2023, 12:14 PM Bryan Kirk @.***> wrote:

I wonder if you could also get ERAM (A RAM Disk driver) to be signed so it can be used in Windows 10 and 11. Its source code is at https://github.com/Zero3K/eram.

— Reply to this email directly, view it on GitHub < https://github.com/bobranten/Ext4Fsd/issues/20#issuecomment-1510423502 , or unsubscribe <

https://github.com/notifications/unsubscribe-auth/AHDGDXPPKW3ZSVL46YKYQJLXBQLHLANCNFSM5RL2W4AQ

. You are receiving this because you were mentioned.Message ID: @.***>

— Reply to this email directly, view it on GitHub <https://github.com/bobranten/Ext4Fsd/issues/20#issuecomment-1510439919 , or unsubscribe < https://github.com/notifications/unsubscribe-auth/AAUHEDIRXOJR7BD4XCYB5E3XBQVFZANCNFSM5RL2W4AQ

. You are receiving this because you are subscribed to this thread.Message ID: @.***>

— Reply to this email directly, view it on GitHub https://github.com/bobranten/Ext4Fsd/issues/20#issuecomment-1510497545, or unsubscribe https://github.com/notifications/unsubscribe-auth/AHDGDXNWNEF7TFOOTVPB7Q3XBRSSXANCNFSM5RL2W4AQ . You are receiving this because you were mentioned.Message ID: @.***>

JasonJShuler avatar Apr 16 '23 23:04 JasonJShuler

So, if you get the cert, maybe you can accept donations?

I would like to have the app working.

Ernesto Villarreal

On Sun, Apr 16, 2023 at 5:10 PM Jason Shuler @.***> wrote:

Yes, and I renewed it specifically for this... I am full of bright ideas 😜

On Sun, Apr 16, 2023, 5:50 PM netomx @.***> wrote:

So, 300 a year?

Ernesto Villarreal

On Sun, Apr 16, 2023 at 11:39 AM Jason Shuler @.***> wrote:

Possibly - I haven't started the vetting yet - the .com domain registration expires next month and I'm hoping the squatter doesn't renew (since my previous cert was tied to the .com domain). Sorry about the weird stuff...

On Sun, Apr 16, 2023, 12:14 PM Bryan Kirk @.***> wrote:

I wonder if you could also get ERAM (A RAM Disk driver) to be signed so it can be used in Windows 10 and 11. Its source code is at https://github.com/Zero3K/eram.

— Reply to this email directly, view it on GitHub < https://github.com/bobranten/Ext4Fsd/issues/20#issuecomment-1510423502 , or unsubscribe <

https://github.com/notifications/unsubscribe-auth/AHDGDXPPKW3ZSVL46YKYQJLXBQLHLANCNFSM5RL2W4AQ

. You are receiving this because you were mentioned.Message ID: @.***>

— Reply to this email directly, view it on GitHub < https://github.com/bobranten/Ext4Fsd/issues/20#issuecomment-1510439919 , or unsubscribe <

https://github.com/notifications/unsubscribe-auth/AAUHEDIRXOJR7BD4XCYB5E3XBQVFZANCNFSM5RL2W4AQ

. You are receiving this because you are subscribed to this thread.Message ID: @.***>

— Reply to this email directly, view it on GitHub <https://github.com/bobranten/Ext4Fsd/issues/20#issuecomment-1510497545 , or unsubscribe < https://github.com/notifications/unsubscribe-auth/AHDGDXNWNEF7TFOOTVPB7Q3XBRSSXANCNFSM5RL2W4AQ

. You are receiving this because you were mentioned.Message ID: @.***>

— Reply to this email directly, view it on GitHub https://github.com/bobranten/Ext4Fsd/issues/20#issuecomment-1510513967, or unsubscribe https://github.com/notifications/unsubscribe-auth/AAUHEDMI5R7K4OT6QHVINDDXBR35ZANCNFSM5RL2W4AQ . You are receiving this because you are subscribed to this thread.Message ID: @.***>

netomx avatar Apr 17 '23 00:04 netomx

It is great that you want to help us! Thank you.

Bo Branten

bobranten avatar Apr 17 '23 12:04 bobranten

@JasonJShuler It's been a few months. Have you gotten your domain back?

kristibektashi avatar Jul 07 '23 07:07 kristibektashi

Ping @JasonJShuler :)

sskras avatar Jul 19 '23 09:07 sskras

if i read the graph correctly he has not been active in several months. i doubt that a ping would change that

Shadowphoenix avatar Jul 20 '23 00:07 Shadowphoenix