10.5 Enabling NetIQ VBscripts

To ensure that Windows agent computers can run queries on IIS endpoints, you must ensure that local and domain group policies allow NetIQ VBscripts to run.

To enable NetIQ VBscripts:

  1. (Conditional) To create a local policy, log on with a local administrator account to the computer where you want to create the new software restriction policy.

  2. (Conditional) To create a domain group policy, log on with a domain administrator account to the domain controller where you want to create the new software restriction policy.

  3. Open the group policy editor for the local computer or the domain group policy object (GPO).

  4. In the policy editor, navigate to Security Settings\Software Restriction Policies\Additional Rules.

  5. Right-click Additional Rules, and then select New Certificate Rule.

  6. Click Browse, and then navigate to the NetIQ Corporation.cer file in the Vulnerability Manager Agent folder, by default the following location:

    \%Program Files%\NetIQ\Secure Configuration Manager\NetIQ Security Agent for Windows

  7. Click Open.

  8. For Security level, select Unrestricted.

  9. Click OK to enable the new software restriction policy.