Not quite. You shift the trust from the key bearer (the most interested party in all of this) to the identity provider.