windows 8 - How can I make SmartScreen Filter trust a self-signed certificate -
Under Windows 8, Microsoft's SmartScreen Filter is the worst nightmare of a small developer.
Effectiveness, I and many other developers, do not want to pay fees for annual renewal of code signing certificates to prevent malicious programs from installing themselves on end users and end users' computers or Even worse, an EV code signing certificate. Also, when products are developed for home use, then signed with reliable credentials from a reliable CA, stored in the Trusted Publishers Store, they still hunt the super-enthusiastic behavior of the filter. .
Developers and administrators will be able to disable and prompt alerts by installing a publisher's code signature certificate in the trusted publisher's shop. Creative developers can set up a self-signed code signature certificate, when they establish a pre-requisite signature and timestamp with payment-authentic certification code signing certificate. After this, the programs signed by the publisher will be reliable and will not travel to the SmartScreen Filter Alarms Basically, once the reliable, a publisher was free of recurring charges.
Recent changes in SmartScreen Filter (and by incorporating it into the "OS" feature in Windows 8) make it clear that Microsoft wants to buy you in a constructive way about the problem created for you. Instead of working, a code signing certificate has someone discovered a new method to rely on those publishers who by default have their own signed code signing certificate Using tax (ie, do not display the signs)? To completely stop the filter, what can smart-screen filters always do to users to rely on a self-signed certificate?
Please note that buying a code signing certificate does not answer this question. I'm exploring a way to rely on SmartScreen Filter to be a publisher who does not purchase certificates from an external source, but instead solves its problem for use within its organization.
Update: I think maybe I've got an alternative solution! From to sites listed as trusted sites, SmartScreen Filter can be disabled on Windows 8 and Internet Explorer 10 if someone can verify that this method is downloaded and run from a trusted site in Windows 8 Works for the setup program, which will be greatly appreciated and will help a lot in ISV and in-house development teams. This will also be the solution needed to answer this question. Trusted sites can be configured by group policy, so it will be easier than there. Programmically, the SmartScreen Filter can be obtained by setting up HKLM \ Software \ Policies \ Microsoft \ Windows \ CurrentVersion \ Internet Settings \ Zone \ 2 for reliable sites zone! 2301 Machine or HKCU \ Software \ Policies \ Microsoft \ Windows \ CurrentVersion \ Internet Settings \ Zones \ 2! 001 for user, and the site can be shown to the Trusted sites zone to add the site to 2301. Can someone please verify that there is a proposed workaround on Windows 8 for an unsigned or self-signed executable downloaded from a trusted site? I'm not using Windows 8 while charging my OS upgrade budget for the certification fee. For quotes: Detectors can be claimed That smartphones are forcing each other ???? Developers should be stressed to spend money on certificates that EV code signature certificates are not required for maintaining or maintaining a reputation with the smart code. Signed files with standard code signature certificates and even unsigned Files continue to build reputation, as application reputation was introduced in IE 9 last year. However, the presence of an EV code signature certificate is a strong indicator that the file is signed by an entity that has passed a rigorous verification process and has been signed by the hardware that allowed our system to establish a reputation for that entity The program, which is signed on unsigned or non-AV code. In other words, EV (payment) verification is just one factor in a large algorithm that determines whether SmartScreen Alert has been displayed or not. If you have a lot of people who download your program, or if your program download link has not changed in a while, then with some work you can not not to show a warning to your program Additionally, by digitally signing your code, you can increase your appraisal reputation. It's directly from
Comments
Post a Comment