Can I Retain Trusted Certificates While Uninstalling the Capture Client?
03/26/2020 0 7312
This article explains about how to retain trusted certificates on an endpoint after Capture Client has been uninstalled.
An administrator may now control whether Trusted Certificates used with SonicOS firewall DPI-SSL should be retained on an endpoint or not after Capture Client is uninstalled. To support this a new Trusted Certificates policy option has been added to control if the certificate should be removed on the endpoint device after Capture Client is uninstalled. Capture Client version 2.0 or newer is required.
To enable or disable this feature:
1) Login to the management console at https://captureclient.sonicwall.com
2) Security Policies > Trusted Certificates > Edit Trusted Certificates Policy
3) Set the option "Retain trusted when Capture Client is uninstalled" to enabled and click on update.
Administrator can also control OS Certificate Store Trust and Firefox Browser Trust under Trusted Certificates Policy
Note: By default, the "Keep certificates after the client is uninstalled" is disabled