You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
<h3id="preview-ssl-certificate-renewal-for-concursolutionscom-and-apiconcursolutionscom">Preview: SSL Certificate Renewal for *.concursolutions.com and *api.concursolutions.com</h3>
478
-
479
-
<p><strong>Updated with links to new certificates.</strong></p>
480
-
481
-
<p>Starting in October 2025, DigiCert Global Root CA will be replaced by DigiCert Global Root G2. To ensure clients have adequate time to prepare for this Root certificate change, SAP Concur plans to renew the certificates for *.concursolutions.com and *api.concursolutions.com in March 2025.</p>
482
-
483
-
<blockquote>
484
-
<p><strong>Note</strong>: The intermediate certificate and Root certificate for *.concursolutions.com and *.api.concursolutions.com will not change in March 2025. Only the end-entity certificate (leaf certificate) will be updated.</p>
485
-
</blockquote>
486
-
487
-
<p><strong>Availability Target Details</strong>: The intermediate certificate and Root certificate for *.concursolutions.com and *.api.concursolutions.com will not change in March 2025.</p>
488
-
489
-
<p>SAP Concur plans to issue new certificates as follows:</p>
490
-
491
-
<ul>
492
-
<li>6PM PST on March 21, 2025 (*.concursolutions.com)</li>
493
-
<li>6PM PST March 27, 2025 (*.api.concursolutions.com)</li>
494
-
</ul>
495
-
496
-
<p>The current certificates will expire as follows:</p>
497
-
498
-
<ul>
499
-
<li>23:59 GMT on May 13, 2025 (*.concursolutions.com)</li>
500
-
<li>23:59 GMT on August 2, 2025 (*.api.concursolutions.com)</li>
501
-
</ul>
502
-
503
-
<p>Clients who have not pinned the expiring certificate do not need to take any action as their expiring certificate will be renewed automatically. <strong>Most clients do not pin the certificate.</strong></p>
504
-
505
-
<blockquote>
506
-
<p><strong>Note</strong>: SAP ICS customers who follow the certificate handling processes described in the following note do not need to take any action:<ahref="https://me.sap.com/notes/2914977">2914977 - FAQ: Concur Certificates, Authentication, and Connectivity</a>.</p>
507
-
</blockquote>
508
-
509
-
<p><strong>User Experience</strong></p>
510
-
511
-
<p>Clients who have pinned an expiring certificate must update to the new certificate before the new certificate is issued at 6PM PST on March 20, 2025 (<em>.concursolutions.com) or at 6PM PST on March 27, 2025 (</em>.api.concursolutions.com).</p>
512
-
513
-
<p>Clients who have pinned the certificate and who do not update it with the new certificate before it is renewed, will experience disruption to SAP Concur products and services.</p>
<p><strong>IMPORTANT!</strong> Certificate pinning is not recommended, and you do so at your own risk. To support security for SAP Concur solutions, security certificates are renewed regularly. Pinned certificates are not renewed automatically and, if a pinned certificate is not renewed before it expires, the pinned certificate can cause a disruption of service.</p>
519
-
</blockquote>
520
-
521
-
<p>To avoid disruption of service, clients who pin their security certificates must pin both the RSA and ECDSA certificates. Clients may obtain the new certificates from the following web pages:</p>
0 commit comments