Generating a -signing certificate

Last published : Apr 17, 2026
The second step to configure your AD FS environment is to generate a -signing certificate for upload on the Authentication Management page in Arctera Insight Management Console.
Note: We recommend that you use the default key size for the certificate, which is 2048 bits. The largest certificate key size that we currently support is 4096 bits.
To generate a signing certificate
  1. Do one of the following to access the AD FS Management console:
    • For AD FS 2.0 click Start, selectAdministrative Tools, and then clickAD FS 2.0 Management.
    • For AD FS 2.1, click Start, enter**AD FS Managementin theSearchfield, and then pressEnter**.
    • For AD FS 3.0, click ToolsinServer Manager, and then selectAD FS Management.1. In the left pane of the AD FS Management console, expandService, and then selectCertificates.
  2. In the Certificates pane, select the certificate that is listed under the -signing section.
  3. In the Actionspane, clickView Certificate.
  4. In the Certificatewindow, select theDetailstab, and then clickCopy to File.
  5. In the Welcomepanel of the Certificate Export Wizard, clickNext.
  6. In the Export File Formatpanel, selectBase-64 encoded X.509 (.CER), and then clickNext.
  7. In the File to Exportpanel, enter a file path in theFile Namefield, and then clickNext.
  8. In the Completionpanel, review the specified information, and then clickFinish.
  9. Click OK to close the export confirmation dialog box. You can find the exported certificate in the file location you previously designated.
Related information