megachangelog
Feature1.39.0

Self-serve SSO certificate management with IdP key rotation support

The OrganizationProfile SSO configuration now displays all SAML signing certificates with expiry dates, allowing admins to add or remove certificates from files without requiring IdP synchronization. Up to five certificates are supported per connection.

Minor Changes

  • The self-serve SSO configuration (<OrganizationProfile /> enterprise connection page and the ConfigureSSO SAML steps) now shows every IdP signing certificate a SAML connection trusts, with its expiry, and lets an admin add certificates from a file (a PEM bundle adds several) or remove one, so an IdP key rotation no longer needs a replacement timed with the IdP. Saving sends the whole list and only when it changed. The list holds at most five certificates. New configureSSOCertificateList* and configureSSOCertificatePrimaryBadge appearance element descriptors cover the list, and new configureSSO.signingCertificates.* localization keys hold its strings. (#10012) by @mauricioabreu

Patch Changes

  • Fixed <SignIn /> in the combined sign-in-or-up flow sending users back to the start after an OAuth or SAML redirect when the sign-in still needed a step, such as a Clerk Protect check, a second factor, or a password reset. Sign-ups created from an OAuth sign-in, including after a Protect check, now continue to their remaining steps inside the component. (#10014) by @mwickett

  • Fix the "Set as default" action for SMS second factors in <UserProfile />. It now prompts for reverification when required instead of showing a raw error, and it's no longer offered while an authenticator app is enrolled, since the authenticator app is always the default in that case. (#10042) by @alexcarpenter

  • Updated dependencies [2654caa, a989859]:

    • @clerk/shared@4.39.0
    • @clerk/localizations@4.22.0
ssosamlsecurityadminui

Source: original entry ↗

More from Clerk

Follow Clerk to get its new changes in your feed and email digest.

Improvement3.1.11

@clerk/nuxt@3.1.11

Patch release updating internal dependencies for @clerk/shared, @clerk/backend, and @clerk/vue to their latest versions.

nuxtdependenciespatch
Improvement1.39.1

@clerk/ui dependency updates

Updated @clerk/shared and @clerk/localizations dependencies to their latest patch versions.

dependenciesuilocalization
Improvement7.9.12

@clerk/nextjs 7.9.12

Patch release updating internal dependencies including @clerk/react, @clerk/shared, and @clerk/backend to their latest versions.

nextjsdependenciespatch
See all Clerk changes →