How do we revoke Client SSL certificates used for Azure Point to Site VPN connections (DEV)?
Background:
When a user has left our company, a vendor is no longer engaged for any services, or the approved access level has expired, we are required to revoke their Point to Site VPN access to the Azure DEV environment.
Solution:
1. Obtain the relevant Client SSL certificate thumbprint by either option below -
-
Centralized Excel document -https://qigroup-my.sharepoint.com/personal/benjamin_wong_qizodiac_com/Documents/DC%20Management%20Documents/Azure/Point%20to%20Site%20VPN/P2Site_SSL.xlsx?web=1
-
Locate the relevant Client SSL certificate on DCPSYSCT01 MMC Console with Certificates (Local Computer) Snap-in -
2. Login to http://portal.azure.com with the relevant admin credentials.
3. On the Dashboard, click on All resources.
4. Under All resources, look for NS4S_DEV_VNET, and click on it.
5. Under NS4S_DEV_VNET>Overview, click on the Clients icon under VPN connections>Point-to-site.
6. Under Point-to-site VPN connection, click on Manage Certificate.
7. Under Certificates, click on Revocation list.
8. Under Revocation list, click on Add certificate.