<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
How to Obtain Okta AD Agent Certificate
Okta Classic Engine
Directories
Okta Identity Engine
Overview

In some Active Directory (AD) environments, well-known product certificates such as Okta's public certificates may not be automatically trusted. In such an environment, installer certificates may need to be manually trusted for installations to complete.

Applies To
  • Directories
  • Okta AD Agent
  • Certificates
Cause

The Okta AD Agent installer file contains a certificate that must be trusted to be completed successfully.

If the AD environment does not automatically trust installer certificates, the Okta AD Agent installation will fail.

Solution

The installer certificate must be extracted from the installer file and trusted manually in the AD environment.

 

Obtain the Okta AD Agent installer certificate embedded in the installation file using the following steps.

  1. Download the latest version of the Okta AD Agent installer.
  2. Right-click the file, then click Properties.
Click Properties
  1. Click the Digital Signatures tab, then click Details.
Click Details to view certificate
  1. In the Digital Signature Details window, in the General tab, click View Certificate.
View Certificate
  1. In the Certificate window, click the Details tab, then click Copy to File...
Copy to files
  1. This opens the Certificate Export Wizard. Click Next.
​​​​​​​Click Next 
  1. Choose the appropriate certificate format for the environment, then click Next.
​​​​​​​Select Export Certificate Format and click Next 
  1. Specify the file path and filename for the certificate file, then click Next.
​​​​​​​Specify file name and location to save the certificate file 
  1. Click Finish to complete the Certificate Export Wizard.
​​​​​​​Click Finish 
  1. Click OK.
Click OK and certificate file has been exported and created
 
After the certificate is successfully exported, take the appropriate environmental actions to trust this certificate.
 
Once the certificate is trusted, the AD Agent installation should be completed successfully.
Loading
How to Obtain Okta AD Agent Certificate