Revoke User’s Agent Passwordless Login Certificate in the Cloud Administration Console
The Certificate Authority (CA) Service supports certificate-based authentication (CBA) for Windows MFA Agents integrated with Microsoft Entra ID. This enhancement provides centralized visibility and control over authentication certificates. In the Cloud Administration Console, you can monitor and revoke certificates issued to a user for agent-based, passwordless Windows logins. Active certificates can be revoked as needed.
This section outlines the steps to revoke an active certificate associated with a user.
Procedure
In the Cloud Administration Console, click Users > Management.
In the Search field, enter the user's ID or email address.
Scroll to the Agent Passwordless Login Certificates section, which displays any registered certificates along with their statuses, then locate the active certificate and click Revoke.
In the confirmation dialog box that appears, click Revoke.
The registered certificate status changes to "Revoked."
Note: Revoked certificates are permanently invalid and cannot be reactivated.
Related Articles
How to enable Active Directory diagnostic event logging. 29Number of Views What are the services and processes running on the Enterprise Manager Enterprise Coordinator and Remote Site Coordinator … 42Number of Views How to enable passwordless authentication over RDP for RSA MFA Agent For Microsoft Windows 2.3.6 and higher 209Number of Views Increasing the number of connections from RSA Authentication Agent 7.3.x for Windows to a Windows platform with RDP 63Number of Views Access Policy 2.0: Easily Rollout Passwordless to the Masses 280Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device RSA-2026-10: RSA Authentication Manager Security Update for Third-Party Component Vulnerabilities RSA SecurID Desktop Token 5.0.3 for Windows Administrator's Guide RSA-2026-05: RSA Authentication Manager Security Update for Third-Party Component Vulnerabilities RSA Authentication Manager Upgrade Process