Bentley Communities
Bentley Communities
  • Site
  • User
  • Site
  • Search
  • User
Licensing, Cloud and Web Services
  • Welcome to Bentley Communities
  • Bentley's Communities
  • Licensing, Cloud and Web Services
  • Cancel
Licensing, Cloud and Web Services
Licensing, Cloud and Web Services Wiki Certificate and Secret Rotations
    • Sign In
    • Contacting Entitlements Support (Licensing and User Management)
    • Eastern Europe Continuity Plan
    • Guest Accounts - Review Access
    • +Web Services
    • +SES Activation
    • +CONNECTION Client
    • +CONNECT Advisor
    • -Federated Identity
      • Federation Frequently Asked Questions
      • Configuring your Azure AD for OIDC Federation and Automatic User Provisioning
      • Configuring Microsoft Azure AD for B2B Guest Users Using OIDC
      • Configuring Okta for OIDC federation
      • Configuring OIDC with other Identity Providers
      • Configuring Microsoft Azure AD for SAML 2.0 federation
      • Configuring Azure AD for OIDC federation
      • Configuring Microsoft ADFS for SAML 2.0 federation
      • Configuring SAML 2.0 with other Identity Providers
      • -Certificate and Secret Rotations
        • Azure AD WS-Fed and SAML contactless signing certificate renewal
      • Browser and App Token Lifetimes
      • +IMS Help and Troubleshooting
      • +Microsoft Azure AD Automatic User Provisioning Configuration
    • +SELECTserver based Activation
    • +Pre-SELECTserver Based Activation
    • +Product-Specific Licensing
    • Understanding why you received a TL Invoice
    • Working from Home using Bentley Licensing
    • What you need to know/request when consolidating Accounts
    • +Licensing Workflow
    • How to leave a Product Review
    • +Serviços ProjectWise 365
    • About Bentley Trust Licensing
    • Customer Number, Account Number, Entitlements, Users
    • Support for non-Bentley technologies utilized by Bentley products
    • Support for V8i applications after December 31st, 2021
    • +Support Homepage - Localized

    You are currently comparing revision 9 and the current version.

    • History View current version

    Certificate and Secret Rotations

    secret, certificate

    All federated connections rely on a certificate or client secret to validate the information being shared via the federation. Depending on the length at which you issued the certificate for secret for, you will at some point be required to replace the signing certificate or secret being used for our connection. 

    For WS-Fed based connections, federation metadata URL's are checked every 15 minutes for changes. If a new certificate is found in your federation metadata URL then we will automatically import the certificate. 

    For SAML based connections, federation metadata URL's are checked every 60 minutes for changes. If a new certificate is found in your federation metadata URL then we will automatically import the certificate.

    Note that a new certificate must be presented in the metadata for us to be able to automatically import it.

    For WS-Fed and SAML based connections, if you did not provide a federation metadata URL, users are responsible for providing Bentley with an updated certificate ahead of your expiration, otherwise your connection will be interrupted until this is resolved. 

    If you would like to avoid the automated method and any potential downtime, you may open a service request and provide the new signing certificate to Bentley ahead of the rotation and we will import the certificate in addition to the existing certificate on our end. We will then notify you that you're free to make the swap on your end at your convenience. 

    For OIDC based connections, users are responsible for tracking the expiration and replacement of the client secret for your connection. Please open a service request to schedule a short meeting with the IMS team to do a client secret swap. 

    Communities
    • Home
    • Getting Started
    • Community Central
    • Products
    • Support
    • Secure File Upload
    • Feedback
    Support and Services
    • Home
    • Product Support
    • Downloads
    • Subscription Services Portal
    Training and Learning
    • Home
    • About Bentley Institute
    • My Learning History
    • Reference Books
    Social Media
    •    LinkedIn
    •    Facebook
    •    Twitter
    •    YouTube
    •    RSS Feed
    •    Email

    © 2023 Bentley Systems, Incorporated  |  Contact Us  |  Privacy |  Terms of Use  |  Cookies