where is the saml certificate? Skip to main content
https://support.okta.com/help/answers?id=906f0000000i061iac&refurl=http%3a%2f%2fsupport.okta.com%2fhelp%2fanswers
How satisfied are you with the Okta Help Center?
Thank you for your feedback!
How satisfied are you with the Okta Help Center?
1
2
3
4
5
Very Dissatisfied
Very satisfied
Enter content less than 200 characters.
Ask Search:
Will IraceWill Irace 

where is the saml certificate?

No doubt this is a newbie question. But my service provider needs a base64-encoded certificate from the IDP. Where do I get this from my Okta account?
api-workday api-workdayapi-workday api-workday
Hi Will,
From the application in question click on the 'Sign On' tab and then the 'View Setup Instructions' button

The format of the resulting screen varies by app but the certificate is almost always included.

-Matt

 
Will IraceWill Irace
Hi Matt, thanks for the answer. Isn't my application the service provider, and doesn't it want a certificate signed by Okta, the IdP? My application's Okta setup documentation says "Obtain the SSL certificate of the IdP."
api-workday api-workdayapi-workday api-workday

Hi Will,

The application is the IdP configuration for a specific SP but the SP is really the target application.

The documentation seems poorly worded to me, based on past experiences you should provide them with the cert I described.  This is the certificate that can be used to verify the digital signature applied to the SAML assertions (by the IdP) when they are recieved by them (the SP)

Are you configuring an OAN app that has Okta documentation? or is this documentation provided by the SP that is specific to an Okta setup?

What is the app?

-Matt

Will IraceWill Irace
Hi Matt,

The app is "Zscaler Admin Login." Looking more closely it seems that Zscaler's documentation recommends integrating with the generic "SAML Service Provider" app instead. That app, under "view setup instructions," does indeed offer a certificate that I can import into Zscaler. So I guess this thread is really about the "Zscaler Admin Login" app not working as intended. I'm good here, thanks!

W