Hi Chris,
Do you mean that you encounter the following message when accessing Portal:
To verify whether an update is required by checking the current certificate information in Windows Azure AD, you can run "Get-MsolFederationProperty -DomainName xxx@domain.com" after connecting to Windows Azure AD, and then check the value of the TokenSigningCertificate attribute. Please let me know the result of the PoweShell cmdlet.
Additionally, if you are using ADFS 2.0, the self-signed token-signing and token-decrypting certificates can be maintained by the AD FS 2.0 service automatically after the AutoCertificateRollover is set to true. For more detailed information about how to enable AutoCertificateRollover, please refer to this article: http://social.technet.microsoft.com/wiki/contents/articles/1424.ad-fs-2-0-how-to-enable-and-immediately-use-autocertificaterollover.aspx
Best Regards,
Bruce