As part of XML encryption, you must identify a certificate and key for PingFederate to use to decrypt incoming assertions or assertion elements.
For more information on XML encryption, see Specifying XML encryption policy (for SAML 2.0).
Select the primary XML decryption key from the list.
If you have not created or imported your certificate into PingFederate, click Manage Certificates. For more information, see Manage digital signing certificates and decryption keys.
- Optional: Select the secondary XML decryption key from the list.