SAML 2.0 X.509 Certificate renewal for Azure SSO integration
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎07-20-2017 09:14 AM
Hello All,
I have a, possibly silly, question around SAML 2.0 SSO setups that I feel could be best answered by the community rather than going through HI.
I've been tasked with looking into an alert around an X.509 certificate expiring for our SAML 2.0 SSO setup.
Now everything I have found online and in system indicates that the certificate is in use, and is needed for the SSO to continue to function and I agree with this assessment. However I do not have access to the Azure system, but I am being told by the administrator of said system that there is no certificate setup for SNOW in there.
Now before going back to the administrator and attempting to get a different answer out of them, I first wanted to find out if it is infact somehow possible for a SAML 2.0 SSO integration (specifically with Azure but in general also helps) to not need the certificate in order to function.
Regards,

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎07-20-2017 10:42 AM
Once you setup app in Azure, You need to export the certificate and import it in SN.
Look at #5
Tutorial: Azure Active Directory integration with ServiceNow | Microsoft Docs