Skip to main content

AD_4nXfkYeWv0rnY0u6bPO-k1Lygs8pvRFFf2LyOCFwru4lMuJFxCrDPyPVyn8mKcroc_ZMT4DtspiyXZE46XAiUVZUJ3ozEnlDDB1PEKKkMZhe4sMFl46HrAATq4ojX4NScLMfGBsHV8Ck_VUo3vwrOF_HPwqFW?key=4xPM8MAdYcvBgm4U_m2Ujw

Netskope Global Technical Success (GTS)

WeChat - Block Native Application Access on Windows

 

Netskope Cloud Version - 120

 

Objective

Block WeChat Native Application Access

 

Prerequisite

Netskope Inline CASB/SWG license is required

 

Context

WeChat offers a native application to which customers are looking to restrict access to. While uploads and downloads activity can be regulated for WeChat Web through Real-Time policies, Issue is encountered with WeChat Native Application. WeChat being a certificate pinned application, Real Time Policies fail to effectively control activities, presenting a challenge for managing usage of WeChat Desktop Application.

 

Do You Know?

  • WeChat Desktop App being a Certificate pinned application, Netskope cannot control any activity or DLP Inspection.
  • Netskope acknowledges WeChat Web as a Cloud Application and provides a pre-defined cloud app connector.
  • As of Oct 14, 2024 with Netskope’s Predefined connector, Customer can exercise following activities on WeChat Web Application.

AD_4nXe9DTv8wJBOKj6sjWycKAU4SzvP3Aq6nYu6ChAubgkkeqCRKtBF_hFh5mr-BnCKps3lPNPEaAbbR8sO8JLWsHV7Z3rSev-GSDkFbVnI6KgnPZsrbDaxAeoFZ3lEdqfiZVHMDrfzafc-DUGI4UP5xL3jOX11?key=rbhOzRdPTlDaWiIMEJCT3g

Configuration

  • Step 1: Create a new certificate pinned application

Path: Netskope Tenant UI >>> Settings >>> Security Cloud Platform  - - - App Definition  >>> New Certificate Pinned App

AD_4nXeYbAkEkJSuqAhcV-Xdn6fPjNZcZgIhborEVr7faFOzmYunTSMXEMguI-d4gMvOo4iXHnaRZ6dqY1UHo5ya98bTCeD5M01cfRosWvCJgup13DamBNm6vl-QgocGMzDZRdOZHG9Cl1KbGcJMHi472bTH6qQ?key=rbhOzRdPTlDaWiIMEJCT3g

 

  • Step 2: Add the following executables

WeChatOCR.exe

WeChat.exe

WeChatAppEx.exe

WeChatPlayer.exe

mmcrashpad_handler64.exe

AD_4nXevtGpLNAvWvGXUxQreMwAJQBLY64xbk8tznDygLKlVN1MNX5kLYiIA4o4UkMSfUMRCwMJ5qUjeVYLuVzSwnKxcl6UHYRs-QuCtV7sqMhohod868O_CcIAKo1Md-IN9ryy2CxNr2hYRr282IoY6TTbM3Ram?key=rbhOzRdPTlDaWiIMEJCT3g

Note - Here you need to define the Platform where the application will be used, if needed for another platform then need to repeat the process.

 

  • Step 3: Create an Exceptions, while the action will be set to block as follow 

Path: Netskope Tenant UI >>> Settings >>> - Security Cloud Platform  - - -> Steering configuration → Exceptions → New  

Select the previous created certificated pinned application, add * as custom app domains to bypass all domains, then select “Block”

AD_4nXdUmFI_pvRr2Chme9Vnw0Am5X9aIF4Lhs0tZ0Mf7Qao67QxVTKdS3ztDg-WPQ4LmwOI5_zrK-wclZp4LwcxwHxvKo0Ih_9dIWcd737Su8cRhGFZ5Zb70r99jzeuVtqGKqC5oqPem9HFAWQjw5rf5DXrUwwh?key=rbhOzRdPTlDaWiIMEJCT3g

 

AD_4nXfj3flRQQeXjI-lcbGojmptPreIzRQwp9hsNMooErQzRMhSZxT3n8U_-RKAUH8XXHRUmIj3sNEdk5g0z1I9t32nm-XJqeXoeqFAHb0aQUiVFTWx0YgpibTO7GRX3iDA2jI8J0FWrghtMpu-3Lm5vFFsV8E?key=rbhOzRdPTlDaWiIMEJCT3g

Once the Exception is created in Steering Configuration Profile, Please ensure that Netskope Client is up-to-date by right-clicking on its icon, go to its configuration, and make sure there are no pending updates.

 

Verification

In a Windows machine with WeChat Desktop App installed, run the application.

You should notice that the application will not be able to initiate and you will observe a Block Notification Pop-up as mentioned below.

AD_4nXcdONCfM-3fC9USCPRTyZzsQSSbLV5NIw6WLv2KCEyz3jrdRrN1B81oizej8RoOv8j7igjnlSkZAa7unTb4dRvh6Ia00bRPCNbSc2yDHeQEuxvG-aCfmGrfQfaeHBlmcmDF2c_pRAQCK5aDBwbt_26A1iQ?key=rbhOzRdPTlDaWiIMEJCT3g

You can verify the block action at Netskope Client Events Page:

Go to Netskope Client > View Blocked Events.

You may find all the Native App Blocked Events in the Client’s Blocked Events Page.

 

Terms and Conditions

  • All documented information undergoes testing and verification to ensure accuracy.
  • In the future, it is possible that the application's functionality may be altered by the vendor. If any such changes are brought to our attention, we will promptly update the documentation to reflect them.

 

Notes

  • This article is authored by Netskope Global Technical Success (GTS).
  • For any further inquiries related to this article, please contact Netskope GTS by submitting a support case with 'Case Type – How To Questions'.m

 

Be the first to reply!