City staff suddenly fail Workspace ONE Access login after the statewide identity provider rotated certificates. What should the administrator update?
Select an answer to reveal the explanation.
Short Explanation
When the state’s signing cert expires, Access is still holding the old handshake paper. Refresh SAML metadata and certs on the Access IdP. Sensor API keys, NSX TEP certs, and vCenter SSO are other lockboxes.
Full Explanation
Federation break/fix for Workspace ONE Access login is IdP metadata and signing-certificate update on the Access identity-provider object. Carbon Black API keys register sensors and do not validate SAML assertions. NSX-T Manager overlay certificates do not federate Access. Access does not inherit vCenter SSO passwords as IdP metadata.