Policy
Specify filtering for certificate issuers
Microsoft Office 5532.1000
Policy overview
Key metadata and intent for this policy.
This policy setting allows you to configure Office to only allow certificates from a specific issuer when creating a digital signature. If you enable this policy setting, Office only displays certificates that contain the string you set in the policy. This setting is case-sensitive. For example, a setting of "MyCA" would match an issuer of "MyCA 1"and "MyCA 2", but not "MYCA 3". If you disable or don’t configure this setting, then signing certificates from any issuer can be used.
Registry values
How enabled and disabled states update the registry.
No explicit registry values are set for enabled or disabled states.
Policy elements
Inputs and configuration options exposed by this policy.
| Element | Type | Registry mapping | Constraints & behavior |
|---|---|---|---|
L_SpecifyIssuerFilterID ID L_SpecifyIssuerFilterID | text | HKCU\software\policies\microsoft\office\16.0\common\signatures\filterissuer Type REG_SZ | None |
Other policies in this category
Explore related policies at the same level.
- UserCheck the XAdES portions of a digital signatureWindows7
- UserConfigure invalid DSA public key sizeWindows7
- UserConfigure invalid hashing algorithmWindows7
- UserConfigure invalid RSA public key sizeWindows7
- UserConfigure legacy DSA public key sizeWindows7
- UserConfigure legacy hashing algorithmWindows7
- UserConfigure legacy RSA public key sizeWindows7
- UserConfigure minimum DSA public key sizeWindows7
- UserConfigure minimum RSA public key sizeWindows7
- UserConfigure time stamping hashing algorithmWindows7
- UserDisplay alternative certificate providersWindows7
- UserDo not allow expired certificates when validating signaturesWindows7