Note: This feature is available for versions 2412 and later.
Connection Servers can now process multiple signing credentials from Identity Providers (IDPs), creating a fallback option if administrators fail to renew the signing certificate in the IDP metadata prior to expiration.
Procedure
- Add a user entitlement to your desktop if you have not already done so.
- Set up both a primary and a secondary certificate in the IDP.
- Add this certificate metadata to both Omnissa UAG and the Connection Server.
When the primary certificate expires and the secondary certificate is promoted to primary in the IDP, you should be able to see the entitled desktop or application when the user launches UAG from the client. There is no need to update the metadata in Connection Server.
Was this page helpful?