  • i dont believe there is. even on other products you don't see standard solutions. if the IdP metadata is online available you could script something together, but there is no regular solution.


    there is something to say for that, automatically trust a new certificate can have implications if the chain is broken somewhere in between.

    Thanks for your response.


    Can we use the self-sign certificate with a long expiry date?



    • if you control the IdP or are allowed to upload the certificate/key that is an option indeed.