Managing trusted HTTPS certificates

These procedures apply when custom certificates are used for these IdP Metadata Service: OAuth 2.0 Token Retrieval Service, User Token Service and Attribute Service.

For each service, trust can be configured to use either CA Certs or custom certificates:

  • CA Certs - Java's collection of trusted certificate authority (CA) certificates are used.
  • Custom - Using custom collection of trusted certificates.

If "Custom" is selected, the certificates are displayed, and you can click Manage Trusted HTTPS Certificates to import or delete certificates for the service. If any of the certificates used by IFS or the IdP are replaced, the set of certificates stored in Grid must be updated. If the stored custom certificates are invalid, authentication and other functionality may fail.