
CharlesT.02252 (Customer) asked a question.
Is there a way to update an IdP Signature Certificate automatically based on an ADFS metadata URL?
Our use case is that we tie into several customer IdPs for authentication. One of our customers is wondering if we could update their Signature Certificate automatically when they update it in their metadata.

Hi Charles,
As per your inquire, if the metadata is used to configure the application on the ADFS side, if the certificate is changed the metadata needs to be uploaded as well. From an Okta perspective, the SAML certs are self-signed and valid for 10 Years and it will be renewed automatically.
Thank You,
Valentin Branzoi
Technical Support Engineer
Okta Global Customer Care