QID 45577
Date Published: 2023-06-20
QID 45577: Qualys Cloud Agent Missing Required Certificates for Patch Management Module
In order for Patch Management to work, assets should have the following certificates installed in on the asset:
DigiCert Trusted Root G4
DigiCert Trusted G4 Code Signing RSA4090 SHA384 2021 CA1
If those certificates are missing the status of patches (in job progress) will be displayed as "Failed". Each failed patch will have the 4317 OS Status error code. The agent will fail to validate the digital signature and will log the following error in the log file. The following entry will present in the log file: Error: Patch: Failed to initialize patch scanner - HRESULT: 800710dd, Error: (win32 code: 4317), "The operation identifier is not valid."
Solution
Install the required Digicert Certificate. For more please refer to Qualys Blog: Qualys Windows Cloud Agent Update: Action needed to update DigiCert Trusted Root G4 certificate
Vendor References
CVEs related to QID 45577
Software Advisories
| Advisory ID | Software | Component | Link |
|---|