Question about xml-signature algorithm used by Shibboleth IdP

WULMS Alexander Alexander.WULMS at swift.com
Fri Aug 12 16:46:09 BST 2011


Hi,

I have noticed that by default, Shibboleth 2.3 uses SHA1 algorithm to calculate the hash-value for the xml-signature (to build the SAML response) and then encrypts the hash with RSA-2048.

Are the algorithms used to calculate the signature configurable? I have not been able to find information about this in the documentation. I assume that the encryption algorithm is determined by the certificate used but I don't know about the hash algorithm.

Thanks and brs,
Alex


Alex Wulms
Lead Developer, Swift.com development
Tel: + 32 2 655 3931
S.W.I.F.T. SCRL

This e-mail and any attachments thereto may contain information which is confidential and/or proprietary and intended for the sole use of the recipient(s) named above. If you have received this e-mail in error, please immediately notify the sender and delete the mail.  Thank you for your co-operation.  SWIFT reserves the right to retain e-mail messages on its systems and, under circumstances permitted by applicable law, to monitor and intercept e-mail messages to and from its systems.

Please visit http://www.swift.com<http://www.swift.com/> for more information about SWIFT.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20110812/7528cec6/attachment-0001.html 


More information about the users mailing list