Would be great to have code signing integrated in Artifactory.
Please refer to existing SaaS services like SignPath.io
The disadvantage of SignPath is that each artifact has to be uploaded first for code signing.
In Artifactory the artifacts are already there. There is only a certificate store and rules missing on how to sign the artifacts.
Artifactory properties could inform about details
- signing authority
- signing initiated by user xy