Alberto M Posted May 17, 2021 Posted May 17, 2021 Hi. I have my SSO certifcates expiring soon, so, I'll need to add a new one. Looking into my SSO profile, I see that I have more than one certificate set having different used count and expiry dates. Do I need to add as much new certificates as the ones i have? Why more than one? Thanks, Alberto
Alberto M Posted May 17, 2021 Author Posted May 17, 2021 Meanwhile, I've checked and we have each certificate for each URL:
Victor Posted May 20, 2021 Posted May 20, 2021 @Alberto M why more than one is a question for your identity provider, Azure ... Hornbill is simply reading the SAML metadata provided by Azure (or any idp for that matter) and adds the info from the metadata into the Hornbill SSO profile. Iirc, in Azure you set a separate app for each domain you access in Hornbill. Therefore I am not surprised that each one f these apps will generate their own certificate which will be used for authentication in that particular domain. As such it is possible, actually mandatory to have all certificates on the Hornbill profile. My advice would be to either set the auto renewal mechanism in Hornbill (if allowed) or just (re)import the SAML metadata which will bring across any new or updated info, including certificates. 1
Alberto M Posted May 20, 2021 Author Posted May 20, 2021 Thanks for the info, @Victor. Meanwhile, with the help of our Azure team, I've already imported new certificates and I have them working :) 1
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now