Endpoint Security for Mac Global Threat Intelligence queries fail after a root certificate expired on May 30, 2020
Last Modified: 2022-07-22 05:18:43 Etc/GMT
Affected Products
Languages:
This article is available in the following languages:
Trellix CEO, Bryan Palma, explains the critical need for security that’s always learning.
As per Gartner, "XDR is an emerging technology that can offer improved threat prevention, detection and response."
Trellix announced the establishment of the Trellix Advanced Research Center to advance global threat intelligence.
Trellix Advanced Research Center analyzes threat data on ransomware, nation-states, sectors, vectors, LotL, MITRE ATT&CK techniques, and emails.
As of May 14, 2024, Knowledge Base (KB) articles will only be published and updated in our new Trellix Thrive Knowledge space.
Log in to the Thrive Portal using your OKTA credentials and start searching the new space. Legacy KB IDs are indexed and you will be able to find them easily just by typing the legacy KB ID.
Endpoint Security for Mac Global Threat Intelligence queries fail after a root certificate expired on May 30, 2020
Technical Articles ID:
KB92950
Last Modified: 2022-07-22 05:18:43 Etc/GMT Environment
Endpoint Security for Mac (ENSM) Threat Prevention 10.6.x NOTE: ENSM 10.7 includes the root certificate, and this certificate expiration issue doesn't apply. Problem
One of the root certificates needed for ENSM SSL communication expired on May 30, 2020. After this date, Global Threat Intelligence (GTI) lookup queries from on-access scan (OAS) and on-demand scan (ODS) fail. NOTE: There's no impact to the following:
Solution
MsgBus Cert Updater 5.6.5.268 is available in the ePO Software Download Manager (SDM), the Product Downloads site, and MVISION. MsgBus Cert Updater 5.6.5.260 is live in ePO Cloud production partitions. Our product software, upgrades, maintenance releases, and documentation are available on the Product Downloads site.
NOTE: You need a valid Grant Number for access. See KB56057 - How to download product updates and documentation for more information about the Product Downloads site, and alternate locations for some products. Workaround
To update the expired root certificate, you can use the attached ePO Endpoint Deployment Kit (EEDK) package from the "Attachment" section in this article. To deploy the EEDK package, perform the steps below:
Related InformationAttachmentAffected ProductsLanguages:This article is available in the following languages: |
|