SCCM/MECM/MEM WDAC/MDAC Supplemental Policies?

Anonymous
2023-12-27T19:08:12+00:00

I am attempting to test and begin rolling out WDAC/MDAC at my work via SCCM but I'm having trouble with a couple of applications which aren't deemed "safe" by ISG and the inclusions options aren't working either. I've tried creating new and supplemental policies with the WDAC tool, Powershell and other methods then placing in the CiPolicies folder but I have yet to get things working properly where the "untrusted" apps are no stopped by WDAC/Device Guard.

Does SCCM support multiple/supplemental policies for WDAC or do I have no choice but to do the scripted implementation approach?

Windows Server Devices and deployment

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question. To protect privacy, user profiles for migrated questions are anonymized.

0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Anonymous
    2023-12-28T02:44:39+00:00

    Hi TMac1178,

    thank you for posting on the Microsoft Community Forums.

    Based on the description, I understand that your issue is related to development.

    Since there are no engineers dedicated to development in this forum. In order to be able to deal with your questions quickly and efficiently, I recommend that you repost your questions in official forums related to development, where there will be a dedicated engineer to provide you with a professional and effective response.

    Have a nice day.

    Best regards,

    Lei

    0 comments No comments