How can I revoke my certificate?

Certificate revocation is a process of invalidating an issued SSL certificate. With revocation, a particular certificate identifier is added to the Certificate revocation lists distributed by the Certificate Authorities and to OCSP servers. As a result, browsers and other clients detect that the certificate is invalid and show the corresponding security warning, telling a site visitor that the installed certificate was revoked and should not be trusted. 
This is how the warning may look in different browsers:

Rev1

 

Rev2

If you want to revoke the whole certificate order, you can contact our Support team via our Ticket systemwith a cancellation request. In your request, please specify the certificate ID/order ID/common name of the certificate you want to be cancelled and revoked, your Ekhteear username and account Support PIN. Keep in mind that after the certificate cancellation is completed, the certificate cannot be used anymore, and you will not be able to perform any actions with it in your Ekhteear account.

Sometimes, there may be cases when a certificate needs to be replaced with a new one, while the old certificate should be revoked. The most frequent scenario for this is that a private key associated with the certificate became compromised. In this case, both the certificate reissue and revocation can be performed in your account with us (provided that the certificate is supplied by Ekhteear). For reissue instructions, feel free to refer to this guide.

After the reissue is completed, the certificate management page will have separate entries for the old certificate and for the new one. The latest one will have the status ACTIVE, while the old one will be labeled as REPLACED. Despite this, the certificate with the status REPLACED might still be valid, usable and can be returned by the server without showing any security warning.

In order to invalidate the certificate that was replaced, you need to access your certificate management page:

  • Log into the account dashboard;
  • Go to Domain List;
  • Locate the domain name associated with the certificate and click on the caret to expand the list of services;
  • Find the SSL certificate you need and press the “Manage” button next to it to get to the certificate management page.

At the bottom of the page, you will see separate entries for the original certificate and the replaced one in the table “Certificate Versions”. To revoke the replaced certificate, click on the the downwards arrow next to the “See Details” button and then on “Revoke”:

Rev3

You will be asked to confirm the revocation in the pop-up window. Note that the certificate revocation cannot be undone.

nrevoke

After you confirm the revocation of your COMODO certificate, the request is sent immediately to the Certificate Authority, and the status of the certificate is updated to REVOKED at once.

Rev5

Note: If during the reissue of a COMODO certificate you have changed the common name of the certificate, the replaced certificate gets revoked automatically. Therefore, there is no need to revoke it additionally. Unfortunately, in such cases, the Revoked status can be tracked only with COMODO - it does not get synced in our system.

Once the certificate is revoked, you will be able to remove it from the certificate details page. Click on the downwards arrow next to the “See Details” button and then on “Remove” to make the certificate entry disappear:

Rev8

After the certificate is revoked, it will be added to the certificate revocation list by the Certificate Authority within the timeframe usually specified in the CA policy for the certificate. You will need to uninstall the certificate from the website if it is revoked - otherwise, browsers will show the security warnings. Additionally, you can check whether or not the certificate is revoked using the following checking tool: https://ssltool.org/sslchecker/

  • 0 Users Found This Useful
Was this answer helpful?

Related Articles

How to cancel an SSL certificate? Will there be a refund?

Generally, to have a certificate cancelled and refunded, you just need to submit a ticket with us...

Will you cancel my certificate if I do not respond to the approval email?

Once the certificate is activated, it will be waiting for you to respond to complete the domain...

I cancelled my SSL certificate via Online User Portal, how can I get a refund? (RapidSSL, Geotrust, Thawte, Symantec)

If you proceed with cancellation of an Active certificate, you need to be sure that the...

Powered by WHMCompleteSolution