Techniques for securely providing a
digital signature for an application within a
virtual machine is disclosed. In one embodiment, the techniques are realized as a method comprising authenticating a physical
machine on which the
virtual machine is hosted, generating a setup token in response to authenticating the physical
machine, storing data relating to the setup token, initiating a code sign
client using the setup token, authenticating the code sign
client using the setup token and the data relating to the setup token, storing a
server security credential and a
client security credential, sending a
server request for a
digital signature to a code sign
server, sending an external request for the
digital signature to an external code sign service, receiving the digital signature in response to the external request, sending the digital signature to the code sign client, and binding the digital signature to the application.