Transit staff SSO to the scheduling portal starts failing as the SAML signing certificate approaches expiry. What operational action should the administrator take?
Select an answer to reveal the explanation.
Short Explanation
Expired SAML certs are like an expired bus pass—the turnstile just stops. Rotate the cert and metadata on Access and on the IdP or SP together.
Full Explanation
Federation outages commonly follow expired SAML signing or encryption certificates. The operational fix is coordinated rotation of certificates and metadata on Workspace ONE Access and the peer IdP or service provider. NSX Manager API certificates, guest SSID publishing, and Carbon Black Cloud check-in intervals do not renew SAML federation.