AWS SSO certificate update

Dear Travelokans,

If you are using your Traveloka credentials (ADSS/Google Workspaces) to authenticate into AWS Management Console, AWS CLI or AWS APIs, please be informed that we'll be rotating the certificate used for signing your authentication requests between Google and AWS.

What do I need to do?

The certificate change will be made by the Cloud Infrastructure and Corporate IT teams and should be transparent to you. This notice is for your information only.

However, if after certificate rotation you experience issues signing into AWS with your corporate credentials, please:

Why are you rotating the certificates?

Certificates used to sign authentication requests between have an expiration date. The certificate we're using is about to turn 5 years old and needs to be replaced before it expires on July 10, 2021.

When is this change taking place?

The certificate rotation is scheduled for:

Monday, June 28, 2020
12:00 GMT+7 (05:00 UTC)

What if I'm still having issues?

If you're still having issue even after using the instructions above, please reach out to us on #site-infra-channel.
For more information see Federation with Google SSO.