Which combination of steps should the security engineer take to accomplish this?

1 Comment

  1. Harold
    Author

    I conclude that the answer is:
    During the next certificate rotation period and before the current certificate expires, add a new certificate as the secondary to the identity provider. Generate a new metadata file and upload it to the IAM identity provider entity. Perform automated or manual rotation of the certificate when required.

Leave a Reply

Your email address will not be published. Required fields are marked *

6 + 19 =