Displays the local BA signer whitelist.
By default, the command output lists enabled signers in the local BA signer whitelist. To view disabled signers in the local BA signer whitelist, include the disabled option.
When the BA signer whitelist is in default mode, the feature is disabled. When the BA signer whitelist is set to insecure mode, the feature uses low-trust code signers, excluding signers that you explicitly disabled.
Note
Trellix distributes a list of high-trust code signers and a list of low-trust code signers through security content downloads to the appliance. High-trust and low-trust signers own signing certificates that Trellix has associated with benign software and scripts only. A signer is categorized as high trust or low trust based on the amount of signing certificate data observed.
The local BA signer whitelist contains the Trellix-specified low-trust code signers at all times. The signer‑whitelist mode <mode> changes whether this appliance-specific list is used, not its contents. To disable a specified signer in the list, use the signer‑whitelist disabled <index> command. To restore specific signer in the list, use the signer‑whitelist enabled <index> command.
Syntax
show signer-whitelist [disabled]
Parameters
None
Options
disabled
List only the signers that are disabled in the local BA signer whitelist.
Output fields
The following table describes the output fields for this command. Fields are listed in the approximate order in which they appear in the output.
Field | Description |
|---|---|
Index | Index number of the signer within the local BA signer whitelist. To disable or enable a signer in the local BA signer whitelist, you use the signer‑whitelist disable or signer‑whitelist enable command and specify the signer index number. |
Signer | Name of a signing entity or individual in the local BA signer whitelist. |
Examples
In the following example, the local BA signer whitelist is in insecure mode:
hostname # show signer-whitelist |------------|------------------------------------------| | Index | Signer | |------------|------------------------------------------| | 1 | Agricultural Bank of China | | 2 | Kaspersky Lab | | 3 | Bomgar Corporation | | 4 | Kings Information & Network Co. | | 5 | Beijing Rising Information Technology Co | | 6 | APOWERSOFT LIMITED | | 7 | Spigot, Inc. | | 8 | EbizNetWorks | | 9 | UBISOFT ENTERTAINMENT INC. | | 10 | Verizon Internet Solutions | | 11 | ComponentOne | | 12 | Finarea SA | | 13 | POLL EVERYWHERE, INC. | | 14 | RaonSecure Co., Ltd. | | 15 | Smilebox, Inc. | | 16 | Beijing baidu Netcom science and technol | | 17 | YESFORM Co., Ltd. | | 18 | MetaQuotes Software Corp. | | 19 | ShopAtHome.com (Belcaro Group, Inc.) | | 20 | TAOBAO CHINA SOFTWARE CO.,LTD. | | 21 | Baidu (China) Co., Ltd. | | 22 | Ilja Herlein | | 23 | BeiJing Baidu Netcom Science Technology | | 24 | Biz Secure Labs Pvt. Ltd. | | 25 | Moca Service (New Media Holdings Ltd.) | | 26 | Limbic Entertainment GmbH | | 27 | thomson financial ltd | | 28 | Sangfor Technologies Co. | | 29 | Eric Lawrence | | 30 | VeriSign Class 3 Code Signing 2010 CA | | 31 | RECORD LLC | | 32 | Banyan Tree Technology Limited | | 33 | Faronics Corporation | | 34 | FreeBit Co. | | 35 | GMT | | 36 | Kings Information & Network Co. | | 37 | Skytouch Technology Co. | | 38 | ZDF | | 39 | CACAOWEB Ltd | | 40 | Embarcadero Technologies Inc. | | 41 | Sogou.com | | 42 | Parker Software Limited | | 43 | ALLEN SYSTEMS GROUP INC SUCURSAL EN ESPA | | 44 | Neowiz Internet | | 45 | The Phone Support Pvt. Ltd. | | 46 | Large & Small Business Cooperation Found | | 47 | Thawte Consulting cc | | 48 | Thawte Consulting (Pty) Ltd. | | 49 | INBEE.COM | | 50 | VeriSign, Inc. | | 51 | Ubisoft Entertainment SA | | 52 | Softdeluxe Ltd. | |____________|__________________________________________|
In the following example, the local BA signer whitelist is in default mode:
hostname # show signer-whitelist WARNING: Signers are NOT effective as current mode setting is: 'default' |------------|------------------------------------------| | Index | Signer | |------------|------------------------------------------| | 1 | Agricultural Bank of China | | 2 | Kaspersky Lab | | 3 | Bomgar Corporation | | 4 | Kings Information & Network Co. | | 5 | Beijing Rising Information Technology Co | | 6 | APOWERSOFT LIMITED | | 7 | Spigot, Inc. | | 8 | EbizNetWorks | | 9 | UBISOFT ENTERTAINMENT INC. | | 10 | Verizon Internet Solutions | | 11 | ComponentOne | | 12 | Finarea SA | | 13 | POLL EVERYWHERE, INC. | | 14 | RaonSecure Co., Ltd. | | 15 | Smilebox, Inc. | | 16 | Beijing baidu Netcom science and technol | | 17 | YESFORM Co., Ltd. | | 18 | MetaQuotes Software Corp. | | 19 | ShopAtHome.com (Belcaro Group, Inc.) | | 20 | TAOBAO CHINA SOFTWARE CO.,LTD. | | 21 | Baidu (China) Co., Ltd. | | 22 | Ilja Herlein | | 23 | BeiJing Baidu Netcom Science Technology | | 24 | Biz Secure Labs Pvt. Ltd. | | 25 | Moca Service (New Media Holdings Ltd.) | | 26 | Limbic Entertainment GmbH | | 27 | thomson financial ltd | | 28 | Sangfor Technologies Co. | | 29 | Eric Lawrence | | 30 | VeriSign Class 3 Code Signing 2010 CA | | 31 | RECORD LLC | | 32 | Banyan Tree Technology Limited | | 33 | Faronics Corporation | | 34 | FreeBit Co. | | 35 | GMT | | 36 | Kings Information & Network Co. | | 37 | Skytouch Technology Co. | | 38 | ZDF | | 39 | CACAOWEB Ltd | | 40 | Embarcadero Technologies Inc. | | 41 | Sogou.com | | 42 | Parker Software Limited | | 43 | ALLEN SYSTEMS GROUP INC SUCURSAL EN ESPA | | 44 | Neowiz Internet | | 45 | The Phone Support Pvt. Ltd. | | 46 | Large & Small Business Cooperation Found | | 47 | Thawte Consulting cc | | 48 | Thawte Consulting (Pty) Ltd. | | 49 | INBEE.COM | | 50 | VeriSign, Inc. | | 51 | Ubisoft Entertainment SA | | 52 | Softdeluxe Ltd. | |____________|__________________________________________|
In the following example, no signers are disabled in the local BA signer list:
hostname # show signer-whitelist disabled % No signers found
In the following example, one signer is disabled in the local BA signer list:
hostname # show signer-whitelist disabled |------------|------------------------------------------| | Index | Signer | |------------|------------------------------------------| | 1 | Bomgar Corporation | |____________|__________________________________________|
User role
Admin, Analyst, fe_services, Monitor
Command mode
Enable
Supported appliances
This command is supported on the following appliances running the specified releases or later:
Network Security: Release: 7.7
Endpoint Security (HX): Release 2.5