
si6hv (si6hv) asked a question.
We have a vendor who's SAML/SSO certificate is going to expire at the end of January. According to the vendor, Okta has the ability to upload a "secondary" certificate so we won't experience an outage. Unfortunately, I can't find any documentation so far about how to add a secondary SSO cert in Okta. Are they incorrect, or am I just not finding the solution?

Hi Timothy ,
To generate a new saml certificate ,
AD, will using that standard cert process automatically make it a secondary cert or will it over-write the existing cert (which doesn't expire until 2/3/23?
Hello @si6hv (si6hv) Thank you for reacting out to our Community!
Please also notice that if the SP changes their certificate, this should not impact your Okta application. Please also see this doc:
https://support.okta.com/help/s/article/Does-Okta-need-to-make-any-changes-due-to-SAML-App-Vendor-s-SSO-certificate-replacement?language=en_US
The Okta Community Catalysts Program is now live. Collect online badges when you participate in the Okta Help Center Questions community. Learn more here.
Community members help others by clicking Upvote or Select as Best on responses. Try it today.