function readOnly(count){ }
Starting November 20, the site will be set to read-only. On December 4, 2023,
forum discussions will move to the Trailblazer Community.
+ Start a Discussion
Stefan WarzeschkaStefan Warzeschka 

SAML Identity Provider, 2nd Certificate

Hi, I have a question to the Single Sign-On Settings in Salesforce.
We have SSO enabled in our Org. (Setup - Security Control - Single Sign-On Settings)
Unfortunately when the Identity Provider Certificate expires, we need to upload the new certificate in time.
In other implementations of SSO we have the possibility to upload the new certificate as secondary certificate. In this way we can already upload the new one and it will be automatically valid on the expiration date of the old one.

Is this possible somehow in SF?
LacertosussLacertosuss
Hello there, did you ever get your question answered? I'm running into a similar issue. - Thanks
Stefan WarzeschkaStefan Warzeschka
Hi, I was able to generate a new certificate as second one but setting it as the actually used cert, I still have to do manually. But in the end you only need to think about it more or less in time. I changed it to the new cert some days before the expiration and also set it to our other systems which are using the public key, done. Mit freundlichen Grüßen Stefan Warzeschka