Mobile Fastlane

Code signingiOS

Last updated 2026-10-07

Choose how the framework signs your IPA with ios.signing.method. If you are new to iOS signing, read fastlane's code signing guide first.

methodWhat happensYou need
automatic defaultxcodebuild -allowProvisioningUpdates with the App Store Connect API key creates/downloads the distribution certificate and profileAPI key with Admin (or App Manager + cloud-managed certificates) role, APPLE_TEAM_ID
matchsync_code_signing installs certs/profiles from a private Git repoMATCH_GIT_URL, MATCH_PASSWORD, an initialised match repo (bundle exec fastlane match appstore once)

Create the App Store Connect API key

  1. 1
    In App Store Connect open Users and Access → Integrations → App Store Connect API (Apple guide).
  2. 2
    Generate a Team key with the Admin role (needed for automatic signing).
  3. 3
    Download AuthKey_XXXXXXXXXX.p8. It can be downloaded only once. Note the Key ID and the Issuer ID shown above the table.

Initialise match (match only)

my-app — zsh
~/my-app $ bundle exec fastlane match appstore
[✔] 🚀
Successfully loaded '/Users/you/my-app/fastlane/Matchfile' 📄
? Passphrase for Match storage:
Cloning remote git repo...
All required keys, certificates and provisioning profiles are installed 🙌
Run once from a trusted Mac. CI then uses readonly mode.

Official documentation

Was this helpful?