Get URLs and the signing and encryption certificate

PE provides URLs and a certificate that you must configure in your identity provider before you can configure SSO in PE. You must use the console to view the URLs and certificate if you haven't configured SSO yet. After you've configured SSO, you can retrieve them using the GET /saml/meta endpoint. If you're promoting a replica, you must specify your replica's new URLs and certificate in your IdP's configuration.

  1. In the console, on the Access control page, click the SSO tab.
  2. Click Show configuration information and note the following values:
    • SAML metadata URL
    • SAML assertion consumer service (acs) URL
    • SAML Single Logout URL
    • Signing and Encryption Certificate
  3. Copy the URLs and certificate so you can add them to your identity provider configuration.
    Copy the entire certificate, including the begin and end tags, into it's own file.