What is metadata and metadata endpoint URL?

2026-05-22 10:22:17 UTC 2026-07-31 10:21:48 UTC

Metadata and metadata endpoint URLs are information required when integrating with a groupware (IdP) to use SSO.
When configuring, you need to register either a metadata file (XML) or a metadata endpoint URL.

Overview of Metadata and Metadata Endpoint URLs

Metadata

This is data that consolidates the configuration information required for SAML authentication (SSO integration) into one place. It primarily contains the following information to securely exchange authentication information between systems.

  • Entity ID: A unique identifier used to identify a service (IdP/SP)

  • Single Sign-On URL: The URL to which authentication requests are sent

  • Public key (certificate): Data used to verify that transmitted data is legitimate

Metadata Endpoint URL

This is a dedicated URL that makes the configuration information (metadata) described above accessible from external systems.

Differences When Performing SSO Integration with Teachme Biz

When settings are configured by uploading a metadata file, the administrator must manually re-upload a new file whenever the certificate is renewed.
If the update is not performed, SSO login will become unavailable once the certificate expires.

 Related: Re-upload Metadata Following SAML Certificate Renewal (Web Browser Version)

On the other hand, when integration is configured using a metadata endpoint URL, Teachme Biz automatically retrieves the latest information from the URL even if the certificate included in the metadata is renewed.
Therefore, no manual update is required.

Frequently Asked Questions

Q. Is a certificate file different from metadata?

A. Yes, they are different.
A certificate file (.cer / .crt) is one component that makes up metadata, and it contains the public key data used for verification.
A common misconfiguration is uploading only the certificate file instead of the metadata, but since this lacks the necessary information for configuration, the integration will not be completed.
Be sure to register either a metadata file (XML) or a metadata endpoint URL.

Q. I am using a metadata endpoint URL. If the certificate on the IdP side is renewed, will it be reflected immediately?

A. No, it will not be reflected immediately.
The timing at which the latest information is automatically retrieved depends on the "cache settings on the IdP side," and if not specified, it may take up to one month.
Therefore, if you delete the old certificate immediately after switching to a new certificate on the IdP side, you will be unable to log in until the information is synchronized.
To prevent login errors, if the IdP allows multiple certificates to be registered, keep both the old and new certificates active, and delete the old certificate only after Teachme Biz's automatic retrieval (up to one month) is complete.
If the old certificate cannot be registered, disable the single sign-on settings in Teachme Biz and then configure single sign-on in Teachme Biz again.

▼Disable Single Sign-On Settings (Web Browser)
https://teachme.jp/8/manuals/42393369

▼Configure single sign-on (SSO) (Web Browser)
https://teachme.jp/8/manuals/11468504


Asking the chatbot a question