Loading
Prepare for Email to Become the Default Login ExperienceRead More
Intermittent freezing when using using certain browser versionsRead More
Secure Your Salesforce Org
Review Certificate Login Errors

Review Certificate Login Errors

When you enable certificate revocation status checks, Salesforce prevents logins with certificates that are revoked or can’t be validated. To see why a certificate login failed, check your org’s Login History page. Review these login errors.

Required Editions

Available in: both Salesforce Classic and Lightning Experience in All editions

Certificate revoked or invalid

Either the certificate doesn’t contain any Online Certificate Status Protocol (OCSP) or Certificate Revocation List (CRL) endpoints, or it’s revoked. If you verified that the certificate has valid endpoints and isn’t revoked, sometimes you must provision intermediate certificates from the certificate authority (CA) through Salesforce. Contact Salesforce Support to learn more.

Certificate check failed

The certificate’s OCSP or CRL endpoints refer to a CA that isn’t reachable. If the CA’s server is offline, you can disable revocation status checks until the issue is resolved.

 
Loading
Salesforce Help | Article