When your self-signed SAML signing certificate expires, you must regenerate a new signing certificate in the Workspace ONE Access console and reconfigure all SAML service provider and identity provider configurations with the updated SAML metadata files.
Prerequisites
Take a snapshot of your Workspace ONE Access virtual appliance, connectors, and database before you update the SAML metadata.
Procedure
What to do next
Make the SAML metadata available to the third-party identity provider instances. In the SAML Metadata page, copy and save the service provider and identity provider metadata files. Reconfigure your SAML service provider and identity provider configuration with the updated SAML metadata files.
Note: If you use an external signed CA certificate that expired, create a new Certificate Signing Request in the
Workspace ONE Access service.