Profile Signer

Profile signer.

PKCS#7-sign a .mobileconfig with SSL or P12 so installation can show Verified.

Click or drop an unsigned .mobileconfig
XML plist · max 8MB

For a green Verified badge, use a publicly trusted SSL cert (e.g. Let’s Encrypt). Self-signed or typical developer P12 usually still show Unverified.

Upload cert.pem / fullchain.pem / .crt
May include the full chain
Upload privkey.pem / .key
Private key matching the certificate
Upload chain.pem / ca-bundle
Skip if the cert is already a fullchain
Upload .p12 / .pfx
Must include certificate and private key

Uses PKCS#7 (openssl smime -sign -nodetach -outform der). Materials are processed temporarily and not stored.

Signing…

PKCS#7-signing the profile with your certificate.

Signed successfully

Signed profile download started.

Sign failed

Check the certificate and private key, then retry.