Question
![](https://accounts.pega.com/sites/default/files/styles/user_image/public/1689955000/0dfac0bb-77d8-4b85-8237-35a03d309bb4.jpg?itok=8SC97g2y)
Common Wealth Bank of Australia
AU
Last activity: 29 May 2018 16:37 EDT
SSO IDP Verification certificate for verifying signature of SAML Assertion
In the Authentication Service Imported the IDP metadata containing the Root , Intermediate & Leaf certificates which in turn generated the IDP keystore containing jks. When the generated jks is listed using keytool it only had the leaf certificate & does not have the root & intermediate. So just wondering
1. Does pega uses only the leaf certificate to verify the signature of SAML assertion ? Or
2. Does pega stores the Root & Intermediate certificate in a different way & refers it along with the leaf certificate (in the generated jks) for validating the signature of SAML Assertion
***Edited by Moderator to update SR Details***