Symantec Access Management

 View Only
  • 1.  About OpenID certificate renewal

    Posted Dec 23, 2024 03:44 AM
    Hi Team,
    We have a question so thank you in advance.
    [Product]
    CA Single Sign-On 12.8 sp6
     
    [Environment]
    ・SSO product: CA Single Sign-On 12.8 sp6 (Policy server and Access Gateway server are both configured as one machine)
    ・Policy store, user store, session store: RDBMS (SQL Server Azure VM (SQL Server 2016 SE SP2))
     
    Deploy the above on Azure, and use CA Access Gateway's OpenID Connect to build an authentication infrastructure that operates as an OpenID Connect Provider.
     
     
    [Question]
    Please let us know if there is a procedure for renewing certificates in Siteminder that does not involve stopping at the policy server.
     
    The current procedure is to "disable" the client configured for OpenID connection and then renew the certificate from "Trusted Certificates and Private Keys".
    After updating the certificate, the client configured for OpenID connection is changed to "Enabled".
    We would like to eliminate the time required to change the client settings for OpenID connections from "disabled" to "enabled" if possible.

    Thanks,



  • 2.  RE: About OpenID certificate renewal

    Broadcom Employee
    Posted Dec 26, 2024 06:19 PM

    Hi,

    You can try another action "View & Modify", after change and save, flush the cache of the policy server.

    Please verify it on a lower environment.

    Regards,




  • 3.  RE: About OpenID certificate renewal

    Posted Jan 09, 2025 04:06 AM

    I'll check just to be sure.

    It should be fine to clear the All Caches or Resource Caches in the cache management of the Administrative UI.

    Thanks,