Microsoft Defender for Cloud Apps
Architecture and deployment

Deploy conditional access app control for any web app using PingOne

In brief

The page now states that the Defender for Cloud Apps SAML certificate is valid for one year and requires a new certificate after expiration.

What Defender admins need to know

Plan to generate a replacement certificate when the current certificate expires.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

Deploy conditional access app control for any web app using PingOne as the identity provider (IdP)

  1. Recommended: Create a backup of your current settings.
  2. Replace the Identity Provider Login URL field value with the Defender for Cloud Apps SAML single sign-on URL you noted earlier.
  3. Upload the Defender for Cloud Apps SAML certificate you downloaded earlier.
  4. Replace the Entity ID field value with the PingOne custom app Entity ID you noted earlier.
  5. Select Save.
  1. Upload the Defender for Cloud Apps SAML certificate you downloaded earlier.
  2. Replace the Entity ID field value with the PingOne custom app Entity ID you noted earlier.
  3. Select Save.