
5ei77 (5ei77) asked a question.
We are configuring SSO with a third-party application. We faced an error while installation and during troubleshooting, we found out that KeyInfo (X509 certificate) tag under “Signature Value” node is missing in the SAML tracer response even we are getting success status code. Hence certificate details is required to be send in SAML response. How do we pass certificate info in SAML response?

Hi @5ei77 (5ei77) , Thank you for reaching out to the Okta Community!
Assuming that I understood the issue correctly and in your implementation Okta is the IDP, you should check in the Okta Admin Dashboard → Applications → <Your App’s Name> → General → SAML Settings if you have the Response set to “Signed”. From what I can see, it needs to be set to “signed” in order for Keyinfo (x509 cert) to show up in the SAML Assertion.
If my answer helped, remember to mark it as best to increase its visibility for other members of the Okta Community who might have the same questions as you.
Hope my answer helps!
--------------------------------
Earn Today: New Okta Community Badges Have Arrived