The goal of this knowledge article is to clarify if there exists an Okta API to Revoke Trust Certificate for users.
- Okta Certificate Authority
- Revoke Trust Certificate
- Okta Classic Engine
Revoke a user's Device Trust certificate(s) from the Okta Certificate Authority if their computer is lost or stolen or if their account is deactivated. If a user's Device Trust certificate has been revoked and their computer needs to be secured again, the revoked certificate must be removed from their computer before enrolling a new certificate.
Currently, there is no API to perform this functionality; therefore, the UI alternative will have to be used as follows:
- Navigate to the Admin Console.
- Go to Directory > People.
- Click a user name in the Person & Username column.
- Click More Actions and select Revoke Trust Certificate.
- Click Revoke Trust Certificate.
Related References
