27.9.3 Obtaining the Signing Certificate of Advanced Authentication

  1. Click Server Options in the Advanced Authentication Administration portal.

  2. Verify whether the Signing Certificate is available. Use the certificate.

  3. If the certificate does not exist, then upload the certificate.

  4. Navigate to Policies > Web Authentication and click Download IdP SAML 2.0 Metadata.

    A new tab launches with the SAML 2.0 metadata that includes the certificate in x.509 format.

  5. Find the tag <ds:X509Certificate> and copy the certificate that follows to a notepad file.

  6. Add the ---BEGIN CERTIFICATE ------------ at the beginning and ---END CERTIFICATE------------ at end of the certificate in the notepad file.

  7. Save the notepad file for further use.