<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z000071ToO6CAKOkta Classic EngineAdministrationAnswered2024-04-16T09:07:21.000Z2021-06-21T14:45:32.000Z2021-06-24T16:54:20.000Z

xqjc7 (xqjc7) asked a question.

Device trust errors when trying to get certificate.

We are getting these errors on the client side logs when trying to implement Device trust:

 

Error generating a Device Trust certificate for user 'domain/employeename'. Please check your IWA configuration. The user token generated by IWA: {I'm leaving the token out on purpose}

 

Exception running the Device Trust client for user domain/employeename : System.Net.WebException: The remote server returned an error: (401) Unauthorized.

  at System.Net.WebClient.UploadDataInternal(Uri address, String method, Byte[] data, WebRequest& request)

  at System.Net.WebClient.UploadString(Uri address, String method, String data)

  at System.Net.WebClient.UploadString(String address, String data)

  at OktaDeviceTrustClient.OktaDeviceTrustCertificateManager.RequestAndInstallCertificate(String userToken, Boolean skipTpm)

  at OktaDeviceTrustClient.OktaDeviceTrustClient.ExecuteUserTasks(Boolean forceRenewal, Boolean skipTpm)

  at OktaDeviceTrustClient.Program.<>c__DisplayClass8_0.<Main>b__0()

 

Any idea what to do? It's over HTTPS, ive turned on SSL in the IWA settings, and edited the web config file with what they have in the instructions. I added my user, and the NT service account to permissions for everything in IIS and IWA to test and still go the same errors. My user is also in okta.


  • User15760442601594203585 (Okta on Okta Federal)

    Hello Matt,

     

    This will require a full support case to be opened. It looks like you may have one opened already on case #01134990, if so please follow up within that case. If this is unrelated please open a new case from the Okta Help Center or contact us at support@okta.com.

     

    Thank you!

    Expand Post
This question is closed.
Loading
Device trust errors when trying to get certificate.