Forcing SHA1 signing via metadata

Andrew Morgan morgan at orst.edu
Tue Mar 15 13:34:08 EDT 2016


The SecurityConfiguration wiki page[1] mentions that we can use relying 
party metadata to specify the signing algorithm to use, instead of 
modifying the relying-party.xml file.

I'm reading the profile document[2] for that, but it isn't exactly clear 
what I need to put in my manual metadata I'm writing.  Is there an example 
that sets SHA1 signing?  :)  If so, could an example be added to the wiki?

Thanks,
 	Andy

[1] https://wiki.shibboleth.net/confluence/display/IDP30/SecurityConfiguration
[2] http://docs.oasis-open.org/security/saml/Post2.0/sstc-saml-metadata-algsupport-v1.0-cs01.html


More information about the users mailing list