<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z00009uLGiMCAWOkta Classic EngineSingle Sign-OnAnswered2025-02-08T09:03:51.000Z2024-01-04T05:27:27.000Z2024-01-08T23:09:18.000Z

5ei77 (5ei77) asked a question.

X509 certificate SAML Response

We are configuring SSO with a third-party application. We faced an error while installation and during troubleshooting, we found out that KeyInfo (X509 certificate) tag under “Signature Value” node is missing in the SAML tracer response even we are getting success status code. Hence certificate details is required to be send in SAML response. How do we pass certificate info in SAML response?


  • Mihai N. (Okta, Inc.)

    Hi @5ei77 (5ei77)​ , Thank you for reaching out to the Okta Community! 

     

    Assuming that I understood the issue correctly and in your implementation Okta is the IDP, you should check in the Okta Admin Dashboard Applications <Your App’s Name> General SAML Settings if you have the Response set to “Signed”. From what I can see, it needs to be set to “signed” in order for Keyinfo (x509 cert) to show up in the SAML Assertion. 

    Pasted 

     

     

     

     

    If my answer helped, remember to mark it as best to increase its visibility for other members of the Okta Community who might have the same questions as you. 

     

    Hope my answer helps! 

    --------------------------------

    Earn Today: New Okta Community Badges Have Arrived

    Expand Post
    Selected as Best
  • Mihai N. (Okta, Inc.)

    Hi @5ei77 (5ei77)​ , Thank you for reaching out to the Okta Community! 

     

    Assuming that I understood the issue correctly and in your implementation Okta is the IDP, you should check in the Okta Admin Dashboard Applications <Your App’s Name> General SAML Settings if you have the Response set to “Signed”. From what I can see, it needs to be set to “signed” in order for Keyinfo (x509 cert) to show up in the SAML Assertion. 

    Pasted 

     

     

     

     

    If my answer helped, remember to mark it as best to increase its visibility for other members of the Okta Community who might have the same questions as you. 

     

    Hope my answer helps! 

    --------------------------------

    Earn Today: New Okta Community Badges Have Arrived

    Expand Post
    Selected as Best
This question is closed.
Loading
X509 certificate SAML Response