Renaming notarized ZIP packages

Dear support team,

is it possible to rename a notarized ZIP package and not to loose the notarized status?

One of our ZIP package contains resources and binaries which are code signed. The archive itself is accepted after submitting and uploading during the notarization process (online notarization).

Unfortunately, the ZIP cannot be stapled (offline verification). So, is the filename part of the notarized ZIP package or can a ZIP package be renamed?

Best regards, Stefan

Answered by DTS Engineer in 868785022
is it possible to rename a notarized ZIP package and not to loose the notarized status?

Absolutely.

I think you might benefit from reading Notarisation Fundamentals, which explains what the notary service actually does. Once you understand that, you should be able to work out for yourself what post-notarisations operations are OK. Specifically, you have watch out for any operation that breaks the seal on a code signature, such as:

  • Modifying a Mach-O image
  • Modifying the contents of a bundle

Beyond that, everything else is pretty much fair game.

Share and Enjoy

Quinn “The Eskimo!” @ Developer Technical Support @ Apple
let myEmail = "eskimo" + "1" + "@" + "apple.com"

is it possible to rename a notarized ZIP package and not to loose the notarized status?

Absolutely.

I think you might benefit from reading Notarisation Fundamentals, which explains what the notary service actually does. Once you understand that, you should be able to work out for yourself what post-notarisations operations are OK. Specifically, you have watch out for any operation that breaks the seal on a code signature, such as:

  • Modifying a Mach-O image
  • Modifying the contents of a bundle

Beyond that, everything else is pretty much fair game.

Share and Enjoy

Quinn “The Eskimo!” @ Developer Technical Support @ Apple
let myEmail = "eskimo" + "1" + "@" + "apple.com"

Renaming notarized ZIP packages
 
 
Q