Windows 10: WDAC File Exclusions Not Working

Discus and support WDAC File Exclusions Not Working in Windows 10 Gaming to solve the problem; Hi Everyone,I've been playing with this for the past two weeks and have a good grip on the way it differs from AppLocker. I have come across an issue... Discussion in 'Windows 10 Gaming' started by WhoaDukeOfAwesome, Jul 3, 2023.

  1. WDAC File Exclusions Not Working


    Hi Everyone,I've been playing with this for the past two weeks and have a good grip on the way it differs from AppLocker. I have come across an issue during testing with Connectwise Control when an on-demand support session is created and a PC with WDAC implemented, the support exe file is allowed to run because of the exceptions I've implemented and the file is officially signed by Connectwise, but half way through the execution process it fails.Looking through the event logs I see:Code Integrity determined that a process \Device\HarddiskVolume3\Windows\Microsoft.NET\Framework64\v4.0.30319\d

    :)
     
    WhoaDukeOfAwesome, Jul 3, 2023
    #1
  2. Ryan Mon1 Win User

    Unable to Remove Exclusions from Windows Defender

    Thank you for posting back. If you trust a file, file type, folder, or a process that Windows Defender Antivirus has detected as malicious, you can stop Windows Defender Antivirus from alerting you or blocking the program by adding the file to
    the exclusion list. It seems that it was added automatically. We suggest that you follow these steps:

    • Go to Settings and select Update & security.
    • Click Windows Defender.
    • Look for Exclusions and select Add an exclusion.
    • Navigate to the file, folder, or process, and select Exclude this file.

    If the steps provided did not work, we recommend that you boot your device to
    Safe Mode
    and redo the process.

    Let us know if you need further assistance.
     
    Ryan Mon1, Jul 3, 2023
    #2
  3. pavan_446 Win User
    Unable to sign WDAC policy file(bin or p7b) file.

    Hi,

    To sign our WDAC policy file we are following Microsoft article Use signed policies to protect Windows Defender Application Control. In order to sign SIPolicy file we need to have code signing certificate. We need few clarifications which are described below:

    1) As per above mentioned link, it specifically needs ContosoSigningCert code signing certificate to sign the WDAC policy, below is the mentioned command. As we are unable to get this certificate, can you please provide us this certificate. Or in case we can sign it with some other certificate, please share information regarding that.

    <Path to signtool.exe> sign -v -n "ContosoSigningCert" -p7 . -p7co 1.3.6.1.4.1.311.79.1 -fd sha256 $CIPolicyBin

    2) We also checked about Device Guard Signing Service v2 (DGSS) is a code signing service. But information available over the web is too generic to apply for our case. In order to sign our WDAC policy file can we get some concrete steps wise information or any other related information regarding this.

    Regards,

    Vikram
     
    pavan_446, Jul 3, 2023
    #3
  4. MMO
    mmo Win User

    WDAC File Exclusions Not Working

    Definition of Exclusions not working

    Since I am a developer I want to exclude a couple of directories from constant virus scanning, not only because I know the code being in there but also because occasionally the scanning seems to lock certain files for short periods which can then interfere with build processes as these files are then locked and cannot be removed before a new build.

    But - while I know that this has worked without issue before - when I just tried to add a new exclusion not only where there none listed anymore (i.e. the old exclusions have apparently silently disappeared :-( ) but when I define a new one, the entire dialog works fine, I eventually select a folder and hit OK, but that exclusion is then ignored. I.e. nothing appears in the list of exclusions and the whole exercise seems to be ignored!?!

    Why is this beast not working any more?

    This in on WIndows 10 Pro (1903) with all updates (except the pending feature update 1909) installed.
     
Thema:

WDAC File Exclusions Not Working

Loading...
  1. WDAC File Exclusions Not Working - Similar Threads - WDAC File Exclusions

  2. exclusions list isn't working

    in Windows 10 Gaming
    exclusions list isn't working: im trying to add a file to my windows defender exclusions list but its not showing up. no error code or anything. https://answers.microsoft.com/en-us/windows/forum/all/exclusions-list-isnt-working/529006c7-67fd-4239-8de1-58c0497582c2
  3. exclusions list isn't working

    in AntiVirus, Firewalls and System Security
    exclusions list isn't working: im trying to add a file to my windows defender exclusions list but its not showing up. no error code or anything. https://answers.microsoft.com/en-us/windows/forum/all/exclusions-list-isnt-working/529006c7-67fd-4239-8de1-58c0497582c2
  4. Change WDAC error message

    in Windows 10 Software and Apps
    Change WDAC error message: Hello,I'm doing a POC on WDAC and I'm able to block the execution of undesired software. This is the message I get:Your organization used windows defender application control to block this app *Path to the App* Contact your support person for more info.I want to modify this...
  5. WDAC File Exclusions Not Working

    in Windows 10 Software and Apps
    WDAC File Exclusions Not Working: Hi Everyone,I've been playing with this for the past two weeks and have a good grip on the way it differs from AppLocker. I have come across an issue during testing with Connectwise Control when an on-demand support session is created and a PC with WDAC implemented, the...
  6. WDAC File Exclusions Not Working

    in AntiVirus, Firewalls and System Security
    WDAC File Exclusions Not Working: Hi Everyone,I've been playing with this for the past two weeks and have a good grip on the way it differs from AppLocker. I have come across an issue during testing with Connectwise Control when an on-demand support session is created and a PC with WDAC implemented, the...
  7. Exclusion don't work

    in AntiVirus, Firewalls and System Security
    Exclusion don't work: Hi, I'm on the last windows 10 update, everything even the additional updates are installed.The exclusion feature doesn't work in windows defender.I found this...
  8. Process and File exclusions of Windows Defender does not work

    in AntiVirus, Firewalls and System Security
    Process and File exclusions of Windows Defender does not work: Good time of a day. When I add xxxx.exe in File exception in Windows Defender, receive the message "File operation did not complete successfully because the file contains a virus or potentially unwanted software", also when I add file in process it's added but still...
  9. Folder Exclusions are not working

    in AntiVirus, Firewalls and System Security
    Folder Exclusions are not working: I've previously had some folder exclusions but they've since disappeared. I have attempted to add new ones, but they don't appear. How do I go about making this work? My page looks like the image below, after I've selected the folder and supposedly excluded it. [ATTACH]...
  10. Definition of Exclusions not working

    in AntiVirus, Firewalls and System Security
    Definition of Exclusions not working: Since I am a developer I want to exclude a couple of directories from constant virus scanning, not only because I know the code being in there but also because occasionally the scanning seems to lock certain files for short periods which can then interfere with build...