<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Renew SSO certificate on Webex administrator page with Azure idP in Webex Administration</title>
    <link>https://community.cisco.com/t5/webex-administration/renew-sso-certificate-on-webex-administrator-page-with-azure-idp/m-p/4708097#M4590</link>
    <description>&lt;P&gt;There are as you might know two parts of the chain of trust in an IdP. One is the system side and the other is the IdP, both uses certificates. As I read your second screenshot it is the certificates that the IdP uses to identify itself with the system side, ie what it uses to sign the token passed to the system side. The system side is also know as SP if I'm not all wrong.&lt;/P&gt;
&lt;P&gt;What you'd need to update is the certificate that is used to identify the SP side with your IdP. That is done by the certificate that the SP uses and can be found in the metadata export that you do on the SP side, ie in Site Admin. On the IdP you'd put that certificate on the trust that is created for Webex (Site Admin).&lt;/P&gt;</description>
    <pubDate>Mon, 24 Oct 2022 12:14:42 GMT</pubDate>
    <dc:creator>Roger Kallberg</dc:creator>
    <dc:date>2022-10-24T12:14:42Z</dc:date>
    <item>
      <title>Renew SSO certificate on Webex administrator page with Azure idP</title>
      <link>https://community.cisco.com/t5/webex-administration/renew-sso-certificate-on-webex-administrator-page-with-azure-idp/m-p/4707747#M4587</link>
      <description>&lt;P&gt;Hello community,&lt;/P&gt;&lt;P&gt;We got a generic mail from Cisco saying our current SSO certificate is about to be expired next month.&lt;/P&gt;&lt;P&gt;on our Webex SSO settings we see the new certificate with 1 year expiration date ready to be activated:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="zeevi_2-1666525370323.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/165501iB7099548B31016D7/image-size/medium?v=v2&amp;amp;px=400" role="button" title="zeevi_2-1666525370323.png" alt="zeevi_2-1666525370323.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;according to the mail, we should download the new certificate and upload to our idP (Azure in our case) before activating the new Certificate but it seems that we already have a valid certificate in Azure expiring 3 years from now:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="zeevi_3-1666525510608.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/165502i81AED2994E89FC7E/image-size/medium?v=v2&amp;amp;px=400" role="button" title="zeevi_3-1666525510608.png" alt="zeevi_3-1666525510608.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;this is also matching the "site certificate manager" on Webex SSO config page:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="zeevi_4-1666525632334.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/165503i518D91ECE447A848/image-size/medium?v=v2&amp;amp;px=400" role="button" title="zeevi_4-1666525632334.png" alt="zeevi_4-1666525632334.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;does anyone know the process of uploading Webex new certificate to Azure? is it even necessary or we just need to activate the new certificate on the webex administrator SSO Configuration settings?&lt;/P&gt;&lt;P&gt;I already have a ticket open with Webex support (694462722) but unfortunately they do not know the process that needs to be done in Azure.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 23 Oct 2022 11:48:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/webex-administration/renew-sso-certificate-on-webex-administrator-page-with-azure-idp/m-p/4707747#M4587</guid>
      <dc:creator>zeevi</dc:creator>
      <dc:date>2022-10-23T11:48:07Z</dc:date>
    </item>
    <item>
      <title>Re: Renew SSO certificate on Webex administrator page with Azure idP</title>
      <link>https://community.cisco.com/t5/webex-administration/renew-sso-certificate-on-webex-administrator-page-with-azure-idp/m-p/4707907#M4588</link>
      <description>&lt;P&gt;In your IdP you should likely have two different trusts as you still use Site Admin for management of your Webex site(s). One for Site Admin and another for Control Hub. The one that you’ll need to renew the certificate for is the one for Control Hub.&lt;/P&gt;</description>
      <pubDate>Mon, 24 Oct 2022 05:02:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/webex-administration/renew-sso-certificate-on-webex-administrator-page-with-azure-idp/m-p/4707907#M4588</guid>
      <dc:creator>Roger Kallberg</dc:creator>
      <dc:date>2022-10-24T05:02:26Z</dc:date>
    </item>
    <item>
      <title>Re: Renew SSO certificate on Webex administrator page with Azure idP</title>
      <link>https://community.cisco.com/t5/webex-administration/renew-sso-certificate-on-webex-administrator-page-with-azure-idp/m-p/4707917#M4589</link>
      <description>&lt;P&gt;Thanks but we haven't implemented control hub yet.&lt;/P&gt;&lt;P&gt;we only have WEBEX sites at the moment.&lt;/P&gt;</description>
      <pubDate>Mon, 24 Oct 2022 05:48:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/webex-administration/renew-sso-certificate-on-webex-administrator-page-with-azure-idp/m-p/4707917#M4589</guid>
      <dc:creator>zeevi</dc:creator>
      <dc:date>2022-10-24T05:48:43Z</dc:date>
    </item>
    <item>
      <title>Re: Renew SSO certificate on Webex administrator page with Azure idP</title>
      <link>https://community.cisco.com/t5/webex-administration/renew-sso-certificate-on-webex-administrator-page-with-azure-idp/m-p/4708097#M4590</link>
      <description>&lt;P&gt;There are as you might know two parts of the chain of trust in an IdP. One is the system side and the other is the IdP, both uses certificates. As I read your second screenshot it is the certificates that the IdP uses to identify itself with the system side, ie what it uses to sign the token passed to the system side. The system side is also know as SP if I'm not all wrong.&lt;/P&gt;
&lt;P&gt;What you'd need to update is the certificate that is used to identify the SP side with your IdP. That is done by the certificate that the SP uses and can be found in the metadata export that you do on the SP side, ie in Site Admin. On the IdP you'd put that certificate on the trust that is created for Webex (Site Admin).&lt;/P&gt;</description>
      <pubDate>Mon, 24 Oct 2022 12:14:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/webex-administration/renew-sso-certificate-on-webex-administrator-page-with-azure-idp/m-p/4708097#M4590</guid>
      <dc:creator>Roger Kallberg</dc:creator>
      <dc:date>2022-10-24T12:14:42Z</dc:date>
    </item>
  </channel>
</rss>

