Unsolved

1 Rookie

 • 

8 Posts

48

January 13th, 2026 18:59

Awareness: Certificate removed from WMS Policy does not remove certificate from W10 Certificate store

After a number of days troubleshooting why a certificate was not successfully getting removed from the trusted root store on our W10 IoT managed by WMS, we found that the certificate was still in the C:\Wyse\WCM\ConfigMgmt\Certificates folder.  Simply removing the certificate from being installed in the WMS policy under Security & Lockdown Settings was not enough.  We could delete the cert (WF disabled) and then restart the system and the certificate was added back into the store account last configured by the WMS policy.  Since the certificate in question was still in the "C:\Wyse\WCM\ConfigMgmt\Certificates" folder, during the boot of the system and starting of the WDA service, it would simply install all certificates that are in the folder.  

To test even further, we simply added a bogus certificate to this folder, restarted the system and the WDA service installed the added certificate into the store account that is configured in the WMS policy.

This is for awareness only and in case anyone else has seen this strange behavior.

No Responses!

0 events found

No Events found!

Top