<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://community.appian.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Clarification on Single Sign-On Implementation and Certificate Management</title><link>https://community.appian.com/discussions/f/administration/35370/clarification-on-single-sign-on-implementation-and-certificate-management</link><description>Requirement: 
 
 Implement Single Sign-On (SSO) for your application. 
 Updated the Service Provider Signing Certificate in Appian. 
 Generated a metadata file and sent it to clients. 
 Configured the file and received an &amp;quot;Identity Provider Metadata&amp;quot;</description><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>RE: Clarification on Single Sign-On Implementation and Certificate Management</title><link>https://community.appian.com/thread/137710?ContentTypeID=1</link><pubDate>Mon, 08 Jul 2024 06:22:23 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:0f5aa612-e65e-4657-ba2d-2541ce627de8</guid><dc:creator>shashankr0001</dc:creator><description>&lt;p&gt;Hi Yogi,&lt;br /&gt;&lt;br /&gt;&lt;/p&gt;
&lt;p&gt;Thanks for your response.&lt;/p&gt;
&lt;p&gt;We have identified the issue. The client was using verification certificates in Azure AAD, which we were unaware of. This caused user verification failures upon login. After uploading the certificates in the Appian certificates tab, we can now authenticate users successfully.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Clarification on Single Sign-On Implementation and Certificate Management</title><link>https://community.appian.com/thread/137513?ContentTypeID=1</link><pubDate>Wed, 03 Jul 2024 07:08:50 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:7e4984b8-815d-412e-884a-4dc4687c4b51</guid><dc:creator>varaprasadt0001</dc:creator><description>&lt;div class="flex flex-grow flex-col max-w-full"&gt;
&lt;div dir="auto" data-message-author-role="assistant" data-message-id="d41d653f-997b-4455-8241-baa552d34695"&gt;
&lt;div&gt;
&lt;div class="markdown prose w-full break-words dark:prose-invert light"&gt;
&lt;p&gt;In my SAML response, I see &lt;code&gt;&lt;a href="http://schemas.microsoft.com/ws/2008/06/identity/authenticationmethod/x509"&gt;schemas.microsoft.com/.../x509&lt;/a&gt;&lt;/code&gt;. This indicates that the IdP used an X.509 certificate for authentication. Do I need to add any additional certificates on my side besides the SAML configuration?&lt;/p&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;div class="mt-1 flex gap-3 empty:hidden juice:-ml-3"&gt;
&lt;div class="items-center justify-start rounded-xl p-1 flex"&gt;
&lt;div class="flex items-center"&gt;&lt;span class="" data-state="closed"&gt;&lt;span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span class="" data-state="closed"&gt;&lt;span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span class="" data-state="closed"&gt;&lt;span&gt;&lt;/span&gt;&lt;/span&gt;
&lt;div class="flex"&gt;&lt;span class="" data-state="closed"&gt;&lt;span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div class="flex items-center pb-0.5 juice:pb-0"&gt;
&lt;div&gt;&lt;/div&gt;
&lt;span class="line-clamp-1 text-sm"&gt;4o&lt;/span&gt;&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Clarification on Single Sign-On Implementation and Certificate Management</title><link>https://community.appian.com/thread/137496?ContentTypeID=1</link><pubDate>Tue, 02 Jul 2024 14:47:54 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:bcb8913b-24e5-4410-a673-d727e56956d2</guid><dc:creator>Yogi Patel</dc:creator><description>&lt;p&gt;&lt;span&gt;Maybe your IdP is configured to not validate SAML request signatures. Check your IdP configuration.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;&lt;img style="max-height:240px;max-width:320px;" alt=" " src="/resized-image/__size/640x480/__key/communityserver-discussions-components-files/12/samlsignaturevalidation3.png" /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>