Application Security for Windows Desktop

Elliptic Curve 1 Reputation point
2020-08-14T14:36:39.38+00:00

I have a corporate policy security that requires application whitelisting. MS Authenticode can properly sign applications and PS scripts (assuming supporting PKI is in place). How can I configure Windows 7 and Windows 10 to only install MS Authenticode signed software to implement application whitelisting? Also, the tags do not include selecting MS Authenticode and it is a MS product. Why?

Windows 10 Security
Windows 10 Security
Windows 10: A Microsoft operating system that runs on personal computers and tablets.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
2,902 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Joy Qiao 4,896 Reputation points Microsoft Employee
    2020-08-17T08:40:03.377+00:00

    Hi,

    Thank you for coming Microsoft Q&A forum.

    As MS Authenticode is not a separated product, it is more likely a measure to support other product, so there is no special tag for it.

    For about whitelisting creation, as I know, it is available to create whitelist with AppLocker in Group Policy and use publisher or hash to limit software installation. But as I know, there is no a special product available to create whitelisting with Authenticode, we might need to contact with third party whitelisting software company to check if it is available for them.

    Bests,


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.