-
Notifications
You must be signed in to change notification settings - Fork 171
Open
Labels
bugSoftware defect or bugSoftware defect or bug
Description
Annual Login.gov SAML certificate rotation needs to be done by March 2026. The 2025 certificates expire on April 1, 2026.
Sketch
Follow steps describe in wiki Login.gov SAML certificate rotation steps and notes from previous year.
- Generate new SP certificates.
The following two steps should be done at about the same time to minimize app authentication down time.
- Update
developmentIdP metadata URL in the code, update private keys in the CF environment. - Update public certs for
developmentapps in login.gov sandbox dashboard.
The following two steps should be done at about the same time to minimize app authentication down time.
- Update
stagingandprodIdP metadata URL in the code, update private keys in the CF environment. - Update public certs for
staging/prodin the mirrored apps in login.gov sandbox dashboard, submit change requests to have the mirrored apps promoted, make sure they are deployed.
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
bugSoftware defect or bugSoftware defect or bug
Type
Projects
Status
🏗 In Progress [8]