Multiple saml cert for same SP
Peter Schober
peter.schober at univie.ac.at
Thu Sep 7 07:48:44 EDT 2017
* Zico <mailzico at gmail.com> [2017-09-07 13:26]:
> What I am asking is more like how Incommon handles cert
> migration.... keep existing soon-to-be-expired cert in
> metadata... add new metadata.... so there are two metadata
> available. When old cert is expired; there is no outage as new cert
> is already being used there.
Well, no. Not "add new metadata" but "add new cert *to* metadata".
Only "one metadata" [document] is available, not two, but that one
metadata document has two (or more) keys in it.
-peter
More information about the users
mailing list