You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
As a DevOps engineer I need to update the Public Certificate stored on CMS Prod Servers that secures logon.iam.va.gov, because doing this will keep CMS Prod PIV logon working correctly.
Description or Additional Context
VA IAM Prod environment's certificate that protects logon.iam.va.gov is expiring soon. They are replacing their certificate with their newer one. This requires us to also put a copy of the public certificate on the CMS server as it is used to validate signatures from authentication responses.
Steps for Implementation
Find SSOi partner e-mail
Download public certificate
Join Nov 16th 6pm PT, call bridge with IAM team to trouble shoot any issues.
Replace certificate on server and restart httpd
Add new Base64 encoded certificate in configuration code to apply it during deployments.
Added to Sprint 97 draft plan. We can also use part of Sprint Planning if we need to finalize estimate for this ticket then. Thanks @olivereri cc: @ndouglas@EWashb
User Story or Problem Statement
As a DevOps engineer I need to update the Public Certificate stored on CMS Prod Servers that secures logon.iam.va.gov, because doing this will keep CMS Prod PIV logon working correctly.
Description or Additional Context
VA IAM Prod environment's certificate that protects logon.iam.va.gov is expiring soon. They are replacing their certificate with their newer one. This requires us to also put a copy of the public certificate on the CMS server as it is used to validate signatures from authentication responses.
Steps for Implementation
Technical References
CMS SSO SAML IAM LOGIN HOW-TO
Acceptance Criteria
The text was updated successfully, but these errors were encountered: