cancel
Showing results for 
Search instead for 
Did you mean: 
jwleepci
Occasional Member - Level 1

SSO Certification expiration and unable to activate a new cert

I did not originally setup our SSO certs so I inherited this application and as of 5/3/25 our current Microsoft Entra SSO certification for Concur has expired.  I went into Microsoft Entra\enterprise applications\concur and created a new SAML signing certificate and made it active.  I didn't change any of my basic or attributes & claims inside of Entra.  I downloaded the Metadata from entra.  I then connected to Concur and accessed the authentication admin screen.  I left the SSO settings to sso optional and downloaded the SAP Concur Metadata.  I didn't have anything setup under SSO configurations so I added an IdP config with our IdP name, login url, and the metadata from entra that I downloaded previously.  When I test the application in Entra I get that a token (saml response) was successfully issued.  When I try and access the application via our sign on url I get a misconfigured application error.  Is anyone else having this issue after your SAML certification expired?

1 REPLY 1
jwleepci
Occasional Member - Level 1

I figured out my problem.  The original setup was built before an enterprise application was available and it not tied correctly to the concur authentication.  I completely rebuilt the application in entra.  Now my only problem is that it asks for user id and then password instead of just using the synced credentials from your browser.