How can you prevent a device from re-registering after it has been deleted from the portal?
If any devices are lost or stolen, or you want to remove a device from the system completely. You should prevent re-registration using the application.
Problem
When you delete a device from the Forcepoint ONE SSE portal, the device will be removed from the portal. However, the valid certificates will still be available in the application deployed through MDM. Using applications can attempt to re-register with valid certificates, which will help the devices reappear on the portal.
Solution
Admin must add the certificate that needs to be removed from the system to the revoked certificate list under the OCSP server. This prevents the device from re-registering after it has been
deleted from the portal. By doing this, any attempt by the device to re-register will not be allowed.
Important: You must have an OCSP server for certificate revocation.
This admin action will be recorded in the admin logs. For more details, see the Admin logs page.
For instructions on deleting a device from the list, see the Delete Device page.