HappySCCM

Revoke the eDellRoot Certificate using Group Policy


While most enterprise machines should not have the software installed that adds the Dell certificate it’s better to be safe than sorry. Without revoking this attackers will be able to perform man in the middle ssl attacks as Dell ships the private key with the cert.

  1. Download a copy of the Cert and extract
    https://mega.nz/#F!kwgAQB7K!K6g2PSLyNmpWhQxne5NLfw
  2. In the Group Policy Management console create a new group policy and link to a Test OU
  3. Navigate to Policies \ Windows Settings \ Security Settings \ Public Key Policies \ Untrusted Certificates
  4. Import the eDellRoot.crt

revoke this cert now

5. On Test machine GPUpdate /Target:computer then Verify the certifcate is no longer effective https://edell.tlsfun.de/ (Refresh the page if visited previously)

 

 


  1. Bob Hairstyles Avatar
    Bob Hairstyles

    Good website! I really love how it is easy on my eyes and the data are well written. I’m wondering how I might be notified whenever a new post has been made. I’ve subscribed to your feed which must do the trick! Have a great day!

Leave a Reply

Your email address will not be published. Required fields are marked *