07-18-2025 03:20 PM
We are rolling out Zscaler Client Connect. Once we enabled SSL Inspection, applications stop recognizing that Duo Desktop is installed. The only way to get Duo Desktop to "work again" is to uninstall the Zscaler Client Connect application. Even disabling SSL inspection does not bring Duo Desktop back. How can we get Zscaler Client Connection to work with Duo Desktop? Thanks.
07-19-2025 08:50 AM
This is what we see in the Duo Desktop logs:
|ERROR|DuoDeviceHealthLibrary.Communication.TrustedPeerRPC.TrustedPeerRPCConnection|Trusted Peer RPC Connection closed|System.InvalidOperationException Failed to read from network stream|System.ObjectDisposedException Cannot access a disposed object.
08-12-2025 08:13 AM
Duo Desktop does cert pinning, so implementing SSL inspection will cause it to stop working.
Do you see any events in the Duo Desktop log like "Invalid server certificate found; not in pinned list"?
If you reinstall Duo Desktop after disabling SSL inspection in ZScaler, does it start working again?
See this KB article for more information about Duo Desktop's incompatibility with SSL inspection, proxying, etc.
08-15-2025 12:17 PM
Thanks. To get Duo Desktop to work, we had to add a process-based application bypass outlined here: 'https://help.zscaler.us/zscaler-client-connector/adding-process-based-applications-bypass-traffic
08-22-2025 07:57 AM
@peter I am glad you found a solution. Do you mind marking this post as answered by that ZScaler article?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide