Dates affected
-
We plan to issue new certificates for the load balanced endpoints:
dc.iowa.uiowa.edu
gc.iowa.uiowa.edu
 
In order for LDAP connections to continue to work after this change, systems that initiate those LDAP connections will need to trust the new root certificate,  Sectigo Public Server Authentication Root R46
 
Note: The older UserTrust root is being phased out by Sectigo.
 

Impacted AD/LDAP integrated systems:

  • AD/LDAP integrated applications that utilize gc.iowa.uiowa.edu or dc.iowa.uiowa.edu, need to trust the new root certificate noted above prior to the change.
    • If you aren't sure how to do this check the documentation or check with the vendor as the process varies by system.
  • AD integrated applications that are based on .Net, and/or that use DC locator mechanisms to talk directly to AD domain controllers, will not be impacted.
  • Applications that use SAML or OAuth for authentication do not use LDAP directly and should not be impacted.
Service(s) affected
Category
Service Announcement
Last updated