The ADFS Server 2012 R2 configuration looks like this:
Please note that the first certificate is active whereas the second one is expired.
The Federation metadata lists both certificates under fed:SecurityTokenServiceType
.
Following code loads all certificates including the expired one.
django-auth-adfs/django_auth_adfs/config.py
Lines 295 to 304 in 378f141
This causes the callback to fail with "Signature verification failed" error.
Pay now to fund the work behind this issue.
Get updates on progress being made.
Maintainer is rewarded once the issue is completed.
You're funding impactful open source efforts
You want to contribute to this effort
You want to get funding like this too