Replacing expired certificates

If your identity provider's certificate or Oracle Eloqua's certificate has expired, users will no longer be able to login to Oracle Eloqua using single sign-on.

Verifying that a certificate has expired

If a certificate has expired, your users would not be able to login to Oracle Eloqua using single sign-on. If you turn on debug mode, you might also receive the error "The signature of your request is invalid".

To verify if a certificate has expired:

  1. Click Settings An image of the Settings menu icon, which is represented by a black cog..
  2. Click Single Sign-On in the Users and Security area.
  3. Click the Certificates tab.

    This tab shows the certificate’s expiry date and expired certificates are highlighted in red. If an identity providers certificate has expired, you must generate a new one.

    If you have implemented single sign-on with Salesforce, refer to the product documentation for more information on generating certificates.

Uploading a new identity provider certificate

If an identity provider's certificate has expired, you must generate a new one. After you have the new certificate, you can upload it to Oracle Eloqua. If you have implemented single sign-on with Salesforce, refer to the product documentation for more information on generating certificates.

To upload a new certificate to Oracle Eloqua:

  1. Click Settings An image of the Settings menu icon, which is represented by a black cog..
  2. Click Single Sign-On in the Users and Security area.
  3. Click the Certificates tab.
  4. Click Upload and upload the new certificate.

Generating a new Oracle Eloqua certificate

If Oracle Eloqua's certificate has expired, you must generate a new one. The new certificate can then be uploaded to your identity provider.

To generate a new Oracle Eloqua certificate:

  1. Click Settings An image of the Settings menu icon, which is represented by a black cog..
  2. Click Single Sign-On in the Users and Security area.
  3. Click the Certificates tab.
  4. Click Create and complete the certificate settings.
  5. Click Save.

    The new service provider certificate opens.

  6. Click An image of the download button to download Oracle Eloqua's certificate.

After you download the certificate, you must upload it to your identity provider. If you have implemented single sign-on with Salesforce, refer to the product documentation for more information on updating connected apps.

Learn more

Testing Salesforce SSO

Testing single sign-on