
LeszekB.70197 (Customer) asked a question.
Hi ! I have a quick question. I read the whole article about the root CA change (https://support.okta.com/help/s/olc-announcement-notification/aMh4z000000002qCAA/tls-certificate-for-oktacom-is-expiring-and-needs-to-be-updated) happening on 6 may but I am still not 100% sure whether this affects our setup.
We are currently using the following setup:
- custom domain for okta
- custom certificate covering the okta domain, generated with Lets encrypt.
The root certificate change, shouldn't affect our case at all right? Or do I have to generate new certs and somehow include the new root cert to letsencrypt generated certs? If I understood the change correctly, if someone is using okta as a pure SASS product this change shouldn't bother him?

The change of certificates only affects the regular Okta tenant. You are fine with your current setup.
Thanks much for the clarification 🙂 Have a nice day :)!