Update expired certificate and metadata.xml for Google SAML

After attempting to log into SweetProcess via SAML you see an error like this. It mentions that your metadata file has expired (and likely your certificate too). Here is how to update both for Google SAML.

  1. 1

    Log into your google admin

  2. 2

    Find the SweetProcess SAML app

  3. 3

    Manage the certificates for the app and add a new certificate

  4. 4

    Select the new certificate from the certificate dropdown

    After ​creating a new certificate you must also select it from the dropdown. This isn't done automatically by Google.
  5. 5

    Save your changes

    You must save your changes. ​Otherwise ​Google will not apply them.
  6. 6

    Send SweetProcess support a copy of your new metadata.xml file

    We will apply it to your account.
  7. 7

    Common problem - malformed_certificate

    a malformed_certificate error is caused by a mismatch between the metadata.xml you provided to us and the certificate (or lack of one) Google has on file for you. Ensure that you have:
    1. generated a new valid certificate;
    2. removed any old expired ones;
    3. Assigned the new certificate to your SweetProcess SAML app
    4. Clicked Save (Google doesn't do this for you)
    5. Exported a fresh metadata.xml file and sent that to SweetProcess support
If you still have a question, we’re here to help. Contact us