Requirement:
Questions:
If I change the certificate that is already configured on the Appian side, will SSO authentication fail due to a metadata mismatch?
If it should fail due to a certificate change, why is it that in my case, when I change the certificates on the Appian side, the SSO works fine, and I am able to sign in to the website? The certificates are generated by the IIS manager on my system.
Discussion posts and replies are publicly visible
Maybe your IdP is configured to not validate SAML request signatures. Check your IdP configuration.
In my SAML response, I see schemas.microsoft.com/.../x509. This indicates that the IdP used an X.509 certificate for authentication. Do I need to add any additional certificates on my side besides the SAML configuration?
schemas.microsoft.com/.../x509