Security

last person joined: yesterday 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

Applocker won't detect digital signature of ArubaQuickConnect.exe on random computers!

This thread has been viewed 0 times
  • 1.  Applocker won't detect digital signature of ArubaQuickConnect.exe on random computers!

    Posted Apr 17, 2016 09:10 PM

    We have AppLocker configured to allow ArubaQuickConnect.exe based on digital certificate, but on some random copputers (around 30), AppLocker is not able to extract that info from the file and won't let it run. Those computers are able to identify other regular exe files, like Microsoft ones.



  • 2.  RE: Applocker won't detect digital signature of ArubaQuickConnect.exe on random computers!

    EMPLOYEE
    Posted Apr 17, 2016 09:36 PM

    Which version of quickconnect.exe is this?  Are you using it to push credentials for onboarding or to just configure SSIDs on devices?

     

    What specific OS's is it different on (to help us narrow down what you are seeing)?

     

     



  • 3.  RE: Applocker won't detect digital signature of ArubaQuickConnect.exe on random computers!

    Posted Apr 17, 2016 09:59 PM
      |   view attached

    Actually I'm with OS team and not MDM, but as far as I know, it's for certificates for home users.

     

    ClearPass QuickConnect

    Version is: 0.0.0.10000

     

    User devices are Win 8.1 x64. it also failed on mine: Win 10 x64.



  • 4.  RE: Applocker won't detect digital signature of ArubaQuickConnect.exe on random computers!

    EMPLOYEE
    Posted Apr 17, 2016 10:41 PM

    Your colleagues who configure the ClearPass server should open a TAC case for this, since support will have additional questions for them, that you might not be able to answer specifically.



  • 5.  RE: Applocker won't detect digital signature of ArubaQuickConnect.exe on random computers!
    Best Answer

    EMPLOYEE
    Posted Apr 17, 2016 10:43 PM
    Just FYI. QuickConnect is not signed by a trusted publisher out of the box. You need to add a code signing certificate to ClearPass.


  • 6.  RE: Applocker won't detect digital signature of ArubaQuickConnect.exe on random computers!

    Posted Apr 18, 2016 12:40 AM

    Thanks Tim! That seems to be the issue. Test PC was missing the cert, just added the cert to the test computer and it's detecting the publisher. Will do further testing tomorrow, but looks like it's been resolved!

     

    Thanks again for your quick hint!