Salesforce Expired Certificates: CAS Come and See Video

  Рет қаралды 5,673

Cloud Adoption Solutions

Cloud Adoption Solutions

2 жыл бұрын

Salesforce Expired Certificates: CAS Come and See Video
What do you do if you get an expired certificate notification email for your Salesforce org? Join Cory from Cloud Adoption Solutions as he quickly shows you step-by-step how to deal with a notification from Salesforce that your certificate has expired.
...and while you're here: if you're having Salesforce user adoption challenges, we have a brand new guide that takes you step by step through the principles of teaching adults technology, and drives you to develop a plan for implementation. It's got room for you to make your own plan - check it out: cloudadoption.solutions/teach...
Contact us with your Salesforce challenges at info@cloudadoption.solutions - we love to help!
Cloud Adoption Solutions is a 100% woman-owned registered Salesforce partner, specializing in implementation, integration, and optimization for Technology, Healthcare/ Life Sciences, and Financial Services/ Professional Services organizations in the small and mid-commercial sectors.
VIDEO TRANSCRIPT:
Hi, this is Cory with Cloud Adoption Solutions. And today I'm going to show you what to do if you get an expired certificate notification email for your Salesforce org.
So this email snippet that I have up here is actually from a sandbox, but you may get this from production org as well. And basically, the The email says that you have one or more certificates in your Salesforce org, and then it gives you the org name and the ID. And it tells you that it's expired. And it tells you which which sort it is by the name. And when it expires, or if it has expired already. And it gives you a little bit of information here, so you can see it in your Salesforce org. So we're going to jump over to my dev org and take a look at how we can fix this so that we no longer have an expired cert. So in my dev org, I'm going to go to Setup.
And then in the Quick Find box, I usually just type cert, you can type the whole word out if you want. But if you type cert, it'll pull up this certificate and key management option. And then, in here, I actually have an expired cert that expired a while ago. And something to note here, if you click into the cert, if you click on the link for the certificate. And you want to see where this is being used, you can hover over the delete button, and it will tell you where that certificate is being used. So in this case, the identity provider is using this cert. So I'm going to go back to the cert certificate and key management. And I'm going to create a new one. And you can name this, anything you want. Putting a date in there is sometimes a helpful thing to do. And just leaving the defaults and then hitting save, go back to certificate and key management. Alright, so now I have two certs in here. The one is expired, and then this one doesn't expire until March 24 of next year. So now we have to switch the identity provider to use the new cert that I created. And then we can delete the expired cert. So in the Quick Find box. I'm going to type identity or part of identity. And then we're looking for identity provider.
And then here it's showing it's using this old cert, I'm going to edit this and then our new certs in there, we could have created a new certificate right from here also. So that's another option. So I'm going to change it to this new cert and hit Save. And it'll give you this warning message here Are you sure you want to continue? This would affect service providers if you're using them. I'm going to hit OK. Alright, so now the identity provider is using this new cert that I just created. And I'm going to go back to the cert section. And now as you can see, I have the Delete option for this expired cert. And I no longer have the Delete option for the new cert. So I'm going to go ahead and delete the expired cert. It's going to ask Are you sure and hit OK. And now that expired CERT is gone. So now we have a new self signed certificate that's valid for a year and we set it up. We set the identity provider to use that certificate and now will no longer get the email saying we have an expired certificate in our Salesforce org. Thanks for watching today. If you found this video helpful, please give us a thumbs up and remember to subscribe to our channel for Salesforce related tips and tricks. Again, we're cloud adoption solutions. Please reach out to us for any of your Salesforce needs. Thanks!
Read the rest on our blog: cloudadoption.solutions/blog/

Пікірлер: 24
@ssp947
@ssp947 3 ай бұрын
Great video......keep it up
@CloudAdoptionSolutions
@CloudAdoptionSolutions 3 ай бұрын
Thanks for watching, Sunil!
@kathryncantwell9328
@kathryncantwell9328 2 жыл бұрын
FINALLY I am able to resolve my expired certificate! Thanks so much for the video.
@CloudAdoptionSolutions
@CloudAdoptionSolutions 2 жыл бұрын
Glad it helped, Kathryn! Thanks for letting us know it did :)
@citizenca
@citizenca 8 ай бұрын
THANK YOU! Great video!
@CloudAdoptionSolutions
@CloudAdoptionSolutions 8 ай бұрын
Thanks for watching!
@mr.aristocrat6803
@mr.aristocrat6803 8 ай бұрын
Great video, thank you! Love the step by step, very helpful.🙂
@CloudAdoptionSolutions
@CloudAdoptionSolutions 8 ай бұрын
Thank you so much for watching - and the feedback! We're always trying to be helpful! :)
@joleenea5766
@joleenea5766 Жыл бұрын
Great video, thank you! Love the step by step, very helpful.
@CloudAdoptionSolutions
@CloudAdoptionSolutions Жыл бұрын
Joleene - thanks for watching, and thanks even more for the feedback! :)
@jiyaadnaeem4802
@jiyaadnaeem4802 Жыл бұрын
Thank you!
@CloudAdoptionSolutions
@CloudAdoptionSolutions 8 ай бұрын
Thanks for watching!
@dellaleahy9604
@dellaleahy9604 Жыл бұрын
Easy to follow tutorial! Thank you! Two questions: 1. For expired sandbox CA-signed certificates for Communities / Experience Sites, would replacing with a Self-Signed certificate suffice? 2. What is the expectation if the certificate expires particularly if is for a sandbox Community/ Experience Site? Will admins no longer be able to log in?
@CloudAdoptionSolutions
@CloudAdoptionSolutions Жыл бұрын
Self-signed certificates are commonly used for Single Sign-On settings (in 'Request Signing Certificate' or 'Assertion Decryption Certificate' field) or callouts to external sites (for client authentication). A certificate authority-signed (CA-signed) certificate is then used to prove that your org’s data communications are genuine. If you receive this notification, open the mentioned organization and go to Setup | Security | Certificate and Key Management. Here you should see the certificate which matches the name provided in the notification. Depending on your situation, the expired certificate must be replaced in the following places to be able to resolve the issue: 1 Single Sign On - You could be using the certificate as the "Request Signing Certificate" for an SSO setting. Review Replace an expired certificate in Single Sign-On settings . 2 Connected Apps - You could be using the expiring certificate in an App configuration, such as for SSO (OAuth) set up through the App. Here is an example . 3 Identity Provider - This feature was enabled by default in many organization , causing automatic creation of a self-signed certificate. This is because when it is enabled, it requires a certificate to be set in the settings. If you are not using this feature, you could choose to deactivate the feature to avoid needing to keep an up-to-date certificate in place in the settings. -TL;DR if you’re not using SSO or an Identity provider, the cert isn’t really doing anything. Replacing with a self-signed cert will stop the expiration warning emails. If you’re using SSO and the cert expires and you don’t have an admin account that bypasses SSO, you will not be able to login
@user-ub2wy4ir2t
@user-ub2wy4ir2t Жыл бұрын
Hi. Can you recommend a place to find more information on what these certs do, how they are used in the org and which type of cert is needed: CA-Signed or Self-Signed? I need to renew a CA-Signed in my org, but I don't have enough information to objectively determine whether to renew it based on our org.
@CloudAdoptionSolutions
@CloudAdoptionSolutions 11 ай бұрын
Hello! For this specific use-case, we recommend you directly contact Salesforce via creating a support case: help.salesforce.com/s/
@channelu6537
@channelu6537 2 жыл бұрын
Exactly gave me what I wanted within 2-3 mins!! Nice video!
@CloudAdoptionSolutions
@CloudAdoptionSolutions 2 жыл бұрын
Thanks so much for the feedback! :)
@stevenhoughtalen9509
@stevenhoughtalen9509 Жыл бұрын
Excellent. The related questions I have is "what is the downside of leaving it expired?" Or just deleting it? Assuming I don't have SSO, don't use an external service provider other than SF, and I don't have apex code that communicates with external servers.
@CloudAdoptionSolutions
@CloudAdoptionSolutions Жыл бұрын
Hi Steven - thanks for watching the video! If you're not using SSO/external service/APEX code, you'll get emailed every day until it expires, but otherwise nothing else will happen. Here's a good help doc: help.salesforce.com/s/articleView?id=000329338&type=1
@peachyyy7503
@peachyyy7503 11 ай бұрын
Hi how can I retrieve it if I don't have any access to my salesforce account since I moved to a different company?
@CloudAdoptionSolutions
@CloudAdoptionSolutions 11 ай бұрын
Hi! We recommend you create a support case with Salesforce: help.salesforce.com/s/
@rituyadav757
@rituyadav757 Жыл бұрын
Hi @Cloud Adoption Solutions, I have a certificate which is expired. I have the org id and no longer work for that company so I don't have access to it. So how do I proceed with certificate renewal?
@CloudAdoptionSolutions
@CloudAdoptionSolutions Жыл бұрын
Hi Ritu! Thanks for checking out this video! We recommend that you contact that company's IT department to let them know.
1 Hour Course [Salesforce Administrator Certification Exam]
1:00:07
Salesforce Help Club
Рет қаралды 5 М.
Single Sign On (SSO) setup in Salesforce - Part 1.
9:04
Khan’s Tech Videos
Рет қаралды 4,2 М.
Playing hide and seek with my dog 🐶
00:25
Zach King
Рет қаралды 34 МЛН
New model rc bird unboxing and testing
00:10
Ruhul Shorts
Рет қаралды 29 МЛН
Salesforce as an Open ID Connect Identity Provider: CAS Come and See Video
14:47
How does HTTPS work? What's a CA? What's a self-signed Certificate?
11:02
How to Remove Expired Self-Signed Certificate | Salesforce Platform
2:46
Salesforce Support
Рет қаралды 18 М.
Which AWS Certification should I get?
7:23
Digital Cloud Training
Рет қаралды 104 М.
What is Certificate Management?
20:01
Keyfactor
Рет қаралды 5 М.
Salesforce Mass Download Files from ListView: CAS Come and See Video
7:51
Cloud Adoption Solutions
Рет қаралды 464
Salesforce Summer 2024 New Release Feature Highlights
11:12
Cloud Adoption Solutions
Рет қаралды 126
Certificates in Salesforce Integration
1:05:26
Salesforce Codex
Рет қаралды 10 М.
How to Use Lead Assignment Rules with Queues in Salesforce
6:33
Rotive - Brian Hays
Рет қаралды 4,8 М.