SAML Authentication in Sonarqube 2025.1 LTA Version

We are planning to upgrade sonarqube developer edition from 10.0 to 2025.1 LTA version.

From the release upgrade notes, it seems that SAML configuration has to be updated if we have enabled Assertion Encryption.

  • In the existing SAML configuration which we are using in 10.0 server, we have not enabled Assertion Encryption.
  • As per release notes, it seems that SAML config need to be updated only when Assertion Encryption is enabled in it.
  • So, we would like to know if SAML authentication will work even with existing config (Assertion Encryption not enabled) or if enabling it is mandatory for 2025.1 LTA version to facilitate authentication via SAML.
1 Like

Hey there.

If you are not using Assertion Encryption, there’s nothing you need to change related to what’s in the Upgrade Notes.

One thing to keep in mind – make sure you’ve configured the Server Base URL before upgrading. It might already bet set, but this appears to be required now.

Of course, you never know what you might run into, so make sure you have a backup and a rollback plan!