In order to fix this in the component, The below assignment needs to be changed to pick all the certificates from the path IDPSSODescriptor/KeyDescriptor[use=”signing”]/KeyInfo/X509Data and use the one which has the longer expiry date for Signature validation.

