Microsoft Entra ID
General

Tutorial Manage Certificates For Federated Single Sign On

In brief

The instructions now say to verify notification email addresses configured through Microsoft Graph or PowerShell in the Microsoft Entra admin center. Opening the SAML certificate experience can initialize notification registration for custom signing certificates.

What Entra admins need to know

Administrators should verify the notification email address in the app’s SAML settings; otherwise certificate expiration emails might not be sent.

This editorial summary was generated by AI from the documentation changes. Verify important details in the full Microsoft Learn article.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

You receive the notification email from [email protected]. To avoid the email going to your spam location, add this email to your contacts.

and verify that the Notification email address is configured correctly in the SAML Certificates section.

For applications that use a custom SAML signing certificate, opening the SAML certificate experience in the Microsoft Entra admin center should initialize certificate notification registration if it does not already exist. Notification registration and certificate information may take time to refresh. Administrators should verify certificate notification settings well in advance of certificate expiration. If the SAML settings aren’t verified in the admin center, certificate expiration notification emails might not be sent.

Renew a certificate that is set to expire soon

Daily Entra.News

Get daily email updates

Get a concise summary of the latest Microsoft Entra updates delivered straight to your inbox.

Loading the secure signup form…