Revoke a TLS/SSL certificate
If needed, you can revoke TLS/SSL certificates via CertCentral. If you need to revoke a certificate, you typically have two options:
You can revoke all the certificates on the order.
This option revokes the entire order once all certificates on the order are revoked. If eligible, a refund is provided. To learn more, read the Submit a request to revoke a TLS/SSL certificate instructions.
You can revoke an individual certificate on the order.
This option leaves the order active, so you can continue to issue certificates on the order. No refund is provided. To learn more, read the Submit a request to revoke a single certificate on an order instructions.
Why should I revoke a certificate?
The private key is lost, stolen, or otherwise compromised.
A domain on the certificate is no longer active, or it’s no longer controlled (managed) by your organization.
Organization or domain information in the certificate has changed.
The TLS/SSL certificate revocation process consists of three steps:
You submit a request to revoke a TLS/SSL certificate.
If you’re an administrator, you can revoke a certificate immediately without administrator approval.
An administrator approves the request.
DigiCert revokes the TLS/SSL certificate.