Signing key for CLARIN SPF metadata feeds changed

Dear members of the CLARIN Service Provider Federation,

Due to a technical error [1], we have replaced the signing certificate used for the metadata feeds we distribute.

This affects all metadata feeds available at:

If your SP or IdP relies on any of these feeds and signature verification is performed using a manually configured certificate, please update your configuration to use the new certificate.

You can download the new X.509 certificate for signature verification here:
SPF_signing_pub-2026-2031.crt

Our FAQ entry How is the SAML metadata about SPs distributed to the identity federations? has been updated accordingly

[1] - The previous key was missing the CA extension, which is required by some components of our infrastructure.