Hector Rangel 0 Posted November 29, 2021 Posted November 29, 2021 (edited) Hi all I have checked the following link from ESET and I have that same problem with the following link: config.edge.skype.com I do not understand why a service as recognized as Microsoft, ESET marks me that the certificate is revoked. Where can I find out more about this so that I don't keep getting this message? Edited November 29, 2021 by Hector Rangel
itman 1,801 Posted November 29, 2021 Posted November 29, 2021 (edited) 6 hours ago, Hector Rangel said: config.edge.skype.com I do not understand why a service as recognized as Microsoft, ESET marks me that the certificate is revoked. There's an issue with a certificate that this domain uses. The Azure cert. is not trusted: https://www.ssllabs.com/ssltest/analyze.html?d=config.edge.skype.com&s=13.107.42.16 . I assume that is what Eset is detecting. However, QUALS gives the domain a grade of "B" which is acceptable. Edited November 29, 2021 by itman
Administrators Marcos 5,450 Posted November 30, 2021 Administrators Posted November 30, 2021 You can enable advanced logging under Help and support -> Technical support, reproduce the detection, disable logging and collect logs with ESET Log Collector. When done, upload the generated archive here. It could be also that the SSL communication is intercepted and the certificate is replaced by another one which was revoked.
Hector Rangel 0 Posted November 30, 2021 Author Posted November 30, 2021 13 hours ago, Marcos said: You can enable advanced logging under Help and support -> Technical support, reproduce the detection, disable logging and collect logs with ESET Log Collector. When done, upload the generated archive here. It could be also that the SSL communication is intercepted and the certificate is replaced by another one which was revoked. Hi Marcos, thank you very much by your answer. I'm trying to find the way to create a task in my Eset Protect Cloud to activate the logging in one computer in order to obtain the logs. That can is possible? Best Regards.
itman 1,801 Posted November 30, 2021 Posted November 30, 2021 There's also something strange going on with this Edge Skype domain per below screen shot. It's not accessible. Also turning off HTTPS only in Firefox makes no difference.
Hector Rangel 0 Posted November 30, 2021 Author Posted November 30, 2021 7 minutes ago, itman said: There's also something strange going on with this Edge Skype domain per below screen shot. It's not accessible. Also turning off HTTPS only in Firefox makes no difference. Hi Itman, It's weird i have the last W10 version with patches included. I don't know why ESET mark this site. Do you know any forum of Microsoft in order to report this?
itman 1,801 Posted November 30, 2021 Posted November 30, 2021 4 minutes ago, Hector Rangel said: Hi Itman, It's weird i have the last W10 version with patches included. I don't know why ESET mark this site. Do you know any forum of Microsoft in order to report this? You can try TechNet.
itman 1,801 Posted November 30, 2021 Posted November 30, 2021 Also, there is no problem accessing this domain via Robtex lookup: It might be that this domain is only accessible via Edge browser?
itman 1,801 Posted November 30, 2021 Posted November 30, 2021 Confirmed is that config.edge.skype.com is only accessible via Edge browser: https://docs.microsoft.com/en-us/deployedge/edge-configuration-and-experiments .
Hector Rangel 0 Posted November 30, 2021 Author Posted November 30, 2021 2 minutes ago, itman said: Confirmed is that config.edge.skype.com is only accessible via Edge browser: https://docs.microsoft.com/en-us/deployedge/edge-configuration-and-experiments . Thank's itman. So i need to able the logging in order to see what're happening with this site and EES.
itman 1,801 Posted November 30, 2021 Posted November 30, 2021 This article also might be "enlighting": https://www.bleepingcomputer.com/news/microsoft/the-new-microsoft-edge-sometimes-impersonates-other-browsers-user-agents/ . Edge will also use this domain to impersonate other browsers.🙄
Recommended Posts