Install guide
Install IPA files with KSign, no computer needed
Install KSign, import your certificate, then sign and install IPA files right on your iPhone. The most popular method in Vietnam today.
At a glance
- iOS version
- 16.0 and later
- Cost
- Free or paid
- Certificate
- Shared or personal
- Developer Mode
- Depends on certificate
- Computer needed?
- No
- Lifetime
- Until the certificate is revoked
- Risk
- Medium
- Time
- about 15 min
Source code (opens in a new tab) Open source
On this page
KSign is an app that signs and installs IPA files directly on your iPhone. It is built on the open-source Feather, looks familiar to ESign users, and supports Vietnamese.
KSign doesn’t “crack” anything. It re-signs the IPA with a certificate and installs it. How long the app keeps working depends entirely on that certificate staying valid.
KSign is free; any cost is for the certificate. Shared certificates are often free but get revoked very easily. Personal UDID certificates are paid, usually yearly, and more stable. See how certificate types compare.
What you need
- An iPhone on iOS 16 or later. See how to check your iOS version.
- A certificate set with 3 parts: a
.p12file, a.mobileprovisionfile and the password for the.p12. See what certificates are and which to choose. - The IPA file of the app you want, from a source you trust.
- An Internet connection and Safari.
Installation steps
-
Save the certificate set to the Files app
Sellers usually send a
.ziparchive or the individual files. Download them in Safari, open the Files app and tap the.zipto extract it if needed. You should see both the.p12and the.mobileprovisionfile.
Tap to view full size -
Install the KSign app Safari only
KSign isn’t on the App Store. The usual way is a pre-signed KSign install link, signed with your own certificate. Most certificate sellers include one.
Open the link in Safari, tap Install when asked, then go to the Home Screen and wait for the KSign icon to finish loading.
Tap to view full size -
Allow KSign to run
The first time you open KSign, iOS may block it. It depends on the certificate type:
- If it says “Untrusted Enterprise Developer”, follow trusting an app.
- If it asks for Developer Mode, follow turning on Developer Mode.
Tap to view full size -
Import the certificate into KSign
In KSign, open Certificates and tap +. Then:
- Pick the
.p12file. - Pick the
.mobileprovisionfile. - Enter the
.p12password.
If everything is correct, the certificate appears in the list with its expiry date.
Tap to view full size - Pick the
-
Add the IPA to KSign
Use either of these:
- In KSign, open Library, tap +, choose Import and pick the IPA in Files.
- Or in Files, touch and hold the IPA, tap Share and choose KSign.
Tap to view full size -
Sign and install
Tap the imported app and choose Sign. Check that the right certificate is selected, then tap Sign again. When signing finishes, tap Install and confirm.
Tap to view full size -
Open the installed app
Go to the Home Screen, wait for the icon to finish loading, then open it. If iOS says the developer isn’t trusted or asks for Developer Mode, repeat step 3.
Tap to view full size
Common problems
Signing fails or the password is rejected
Re-enter the password; it is case-sensitive. Make sure the .p12 and .mobileprovision belong to the same set. If the seller sent several sets, don’t mix files between them.
“Unable to Install”
This usually has one of three causes:
- The certificate has been revoked.
- You use a personal certificate but your device’s UDID isn’t registered.
- The IPA is broken.
Try a different IPA to narrow it down, and ask your seller whether the certificate still works.
An app that worked suddenly won’t open
Almost certainly the certificate was revoked. Get a new certificate and sign the app again. See why certificates get revoked.
See more common problems.
Found a mistake or an outdated step? Let us know so we can update it.