azure-docs
azure-docs copied to clipboard
Can you add something around the source of the Certificate please?
Can you provide some information around what type of Certificate can be used for configuring the SAML Certificate for Single Sign-on - i.e. does it need to be an external Certificate or can an internal certificate be used?
Document Details
⚠ Do not edit this section. It is required for learn.microsoft.com ➟ GitHub issue linking.
- ID: 255411d2-6e86-44e2-a535-657af8f8c899
- Version Independent ID: 050df239-4eb4-56ae-4adc-41602e00a8f2
- Content: Application Management certificates frequently asked questions - Microsoft Entra
- Content Source: articles/active-directory/manage-apps/application-management-certs-faq.md
- Service: active-directory
- Sub-service: app-mgmt
- GitHub Login: @omondiatieno
- Microsoft Alias: jomondi
@robfinney Thanks for your feedback! We will investigate and update as appropriate.
Hi @robfinney It is recommended to use a certificate from a trusted CA for production environments, as it provides a higher level of security and trust. Self-signed certificates are suitable for testing and development environments.
For you information Please refer the below in documented link You can find more information about configuring the SAML certificate for single sign-on in the Azure Active Directory documentation
https://learn.microsoft.com/en-us/azure/active-directory/manage-apps/add-application-portal-setup-sso https://learn.microsoft.com/en-us/azure/active-directory/manage-apps/certificate-signing-options
Thanks for the response @ManoharLakkoju-MSFT but unfortunately that wasn't the question I was asking - I know that a Self-Signed Cert isn't as secure but more if there is any recommendation around the certificate being from an internal certificate authority (I.e. from an internal PKI) or from an external certificate authority (such as digicert).
Can you let me know on this point please?
@robfinney I'm going to assign this to the document author so they can take a look at it accordingly
@omondiatieno Can you please check and add your comments on this doc update request as applicable.
@robfinney, thank you for reaching out. I've raised a PR to update the mentioned article to clarify on what sources of certificates are recommended for different scenarios depending on what the organization uses.
Feel free to reach out incase you need any further clarification.