SP certificate rollover

Tom Scavo trscavo at gmail.com
Fri Mar 3 09:04:52 EST 2017


On Fri, Mar 3, 2017 at 8:58 AM, Cantor, Scott <cantor.2 at osu.edu> wrote:
> On 3/3/17, 7:43 AM, "users on behalf of Ondřej Košarko" <users-bounces at shibboleth.net on behalf of kosarko at ufal.mff.cuni.cz> wrote:
>
>> How do multiple certs work on the idp side?
>
> Any encryption key in metadata may be used by any IdP, period.

Right, which is why multiple encryption certificates in metadata is
not recommended.

Tom


More information about the users mailing list