Matthew,

You can set SP metadataLocation to a URL, 
https://apereo.github.io/cas/6.4.x/services/SAML2-Service-Management.html

Ray

On Mon, 2022-02-28 at 09:41 -0800, Matthew Gordon wrote:
Notice: This message was sent from outside the University of Victoria email 
system. Please be cautious with links and sensitive information.

We have a SAML SP (3rd Party system) that has multiple signing keys in their 
metadata. They rotate keys, yearly, from a Public Certificate Authority. CAS 
picks either the first key or the one with the furthest expiration date, I 
don't know which, but I do know it's picking the wrong certificate. Is there a 
way to influence this behavior, so I can use their hosted, on the internet, 
metadata, rather than having to copy and update locally?

Thank you in advance!

Thank you,
Matt

--

Ray Bon
Programmer Analyst
Development Services, University Systems
2507218831 | CLE 019 | [email protected]<mailto:[email protected]>

I acknowledge and respect the lək̓ʷəŋən peoples on whose traditional territory 
the university stands, and the Songhees, Esquimalt and WSÁNEĆ peoples whose 
historical relationships with the land continue to this day.

-- 
- Website: https://apereo.github.io/cas
- Gitter Chatroom: https://gitter.im/apereo/cas
- List Guidelines: https://goo.gl/1VRrw7
- Contributions: https://goo.gl/mh7qDG
--- 
You received this message because you are subscribed to the Google Groups "CAS 
Community" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To view this discussion on the web visit 
https://groups.google.com/a/apereo.org/d/msgid/cas-user/ade25fbeb98d677cc052bbdf671e2422d5a015d6.camel%40uvic.ca.

Reply via email to