AppStra Setu is a small application that runs on your own computer. It is what lets AppStra use the Digital Signature Certificate (DSC) on your USB token.
Your private key never leaves the token, and your PIN is never sent to AppStra. Setu asks for your PIN in its own window, on your machine, and the signature is produced inside the token itself.
Download the version for your computer using the buttons above, then:
On a Mac
Open the downloaded .dmg file.
Drag AppStra Setu onto the Applications folder.
Open your Applications folder, right-click AppStra Setu and choose Open. Then click Open again in the box that appears.
Use right-click → Open the first time. Double-clicking will show "AppStra Setu cannot be opened because the developer cannot be verified". That message appears because the app is not yet registered with Apple. Right-click → Open tells macOS you trust it, and you will not be asked again.
A small icon appears in your menu bar, at the top-right of the screen. That is AppStra Setu. It has no window and no Dock icon by design.
On Windows
.exe installer.On Linux
.tar.gz../install.sh from the extracted folder.Chrome does not allow a website to talk to an application on your computer directly. The AppStra Setu Connector extension is the permitted bridge, and AppStra will not be able to reach your token without it.
Install it from the Chrome Web Store, then reload AppStra.
Plug the USB token in. Click the AppStra Setu icon and choose Open Status Window.
AppStra Setu includes software that can read many tokens on its own. It cannot read every brand, because some manufacturers use their own format and only their own software can open it. That software is theirs to give out, not ours, so we cannot include it — but the Certifying Authority that issued your DSC publishes it, free, for exactly this reason.
This is a one-time install. Once done, you never think about it again.
| Your token | Extra software |
|---|---|
| Watchdata ProxKey | Required. Tested on real hardware — AppStra Setu cannot read this token without the ProxKey software. Install it before you try to sign. |
| eMudhra / ePass2003 | Probably not needed, but we have not tested this brand yet. Try Step 3 first; install the software only if the status window asks for it. |
| TrustKey | Not tested yet. Try Step 3 first; install the software only if the status window asks for it. |
| SafeNet eToken | Not tested yet. Try Step 3 first; install the software only if the status window asks for it. |
| Any other brand | Try Step 3 first. The status window will tell you, by name, if it needs something. |
Not sure which brand you have? The AppStra Setu status window names it for you, and so does the token's own packaging.
Ask the Certifying Authority that issued your DSC — eMudhra, PantaSign, Capricorn, VSign, IDSign and the others all publish their token drivers as a free download, usually under a "Downloads", "Drivers" or "Support" heading. Pick the one for your token brand and your operating system.
The AppStra Setu status window also offers a Search the web button that fills in your brand and operating system for you.
Download it only from your Certifying Authority or the token manufacturer. Token drivers from anywhere else are not worth the risk — this software talks directly to the device holding your signing key.
After installing, unplug the token, plug it back in, and choose Re-check in the status window.
Your PIN is remembered for a few minutes so signing several documents does not ask repeatedly, then it is forgotten automatically. You can forget it immediately with Lock Token in the menu.
| What you see | What to do |
|---|---|
| AppStra cannot find Setu | Check the icon is in your menu bar or system tray. Start AppStra Setu if it is not. |
| "No token plugged in" | Unplug the token and plug it in again, then choose Re-check. |
| "Your token is plugged in, but this computer cannot read it" | Your brand needs its own software. See Token software above. The message names your brand. |
| Installed the software and it still cannot be read | Choose Reload token software in the status window — Setu only looks for token software when it starts, so it will not notice a fresh install on its own. |
| PIN not accepted | Check the PIN. Tokens lock after a few wrong attempts — contact your CA if that happens. |
Still stuck? Write to support@zerostic.com with a screenshot of the AppStra Setu status window. It lists every place Setu looked for token software, which is usually enough to answer the question straight away.