/
How to retrieve certificate from metadata
How to retrieve certificate from metadata
Description of Issue
Configured with SAML IdP in TID-W and need to renew certificate but the IdP is not external
Context
TID-W
ADFS
Signing Certificate
Cause
400: Bad Request Error Code: GENERAL_NONSUCCESS
Resolution
Open the metadata file and find use="signing" entry
Copy the data from the <X509Certificate> element.
Paste it to a new text file.
Insert -----BEGIN CERTIFICATE----- to the beginning of the file .
Append -----END CERTIFICATE----- to the end of the file. For example:
-----BEGIN CERTIFICATE-----
MIICPTCCAaagAwIBAgIGAUIAVrpxMA0G
......
96sa3ZdjPQkSZa48l6ZW86yLAECUXQ==
-----END CERTIFICATE-----Save the text file with a .CRT extension.
Additional Information