Multiple saml cert for same SP
Alan Buxey
alan.buxey at myunidays.com
Thu Sep 7 09:40:04 EDT 2017
if using federations...well, you rely on their update times and
periodic updates to changed metadata - some federations can provide
you with their recommendations
(some federations only update their metadata daily...others
less...some manual process etc- some federations update their metadata
far more frequently).
if you've got a day left then things are going to break. just replace
the cert in metadata and service and take the hit . :/
obviously, if you ARENT using federation metadata and you have a 1:1
relationship with manual configs of IdPs you'll need to talk to each
IdP and arrange
dates/times and process.
question about IdP side - thats exactly why you follow the rollover
method and assign the old cert appropriately - it does just work . :)
alan
More information about the users
mailing list