Security > Single Sign-on Authentication > Configure ThingWorx for Single Sign-On > Import Certificates to Keystore File
  
Import Certificates to Keystore File
A keystore file contains the certificates required by the CAS to establish a trust relationship between ThingWorx and the CAS. Refer to the documentation from the CAS vendor for details on retrieving the required certificates to place in your Java keystore file. You will need to supply the path of this file in the KeyManagerSettings section of the sso-settings.json file, which will be configured in a later step. For PingFederate instructions, refer to the topic titled “Manage digital signing certificates and decryption keys” in the PingFederate help documentation at https://docs.pingidentity.com/bundle/pf_sm_certificateManagement_pf83/page/concept/digitalSigningAndDecryptionKeysAndCertificates.html.