Skip to content

Commit 589425d

Browse files
committed
Add sha256 instead sha1 algorithm for sign/digest as recommended value on documentation and settings
1 parent 6f8ca9c commit 589425d

File tree

5 files changed

+10
-10
lines changed

5 files changed

+10
-10
lines changed

README.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -431,14 +431,14 @@ In addition to the required settings data (idp, sp), extra settings can be defin
431431
// 'http://www.w3.org/2001/04/xmldsig-more#rsa-sha256'
432432
// 'http://www.w3.org/2001/04/xmldsig-more#rsa-sha384'
433433
// 'http://www.w3.org/2001/04/xmldsig-more#rsa-sha512'
434-
"signatureAlgorithm": "http://www.w3.org/2000/09/xmldsig#rsa-sha1",
434+
"signatureAlgorithm": "http://www.w3.org/2001/04/xmldsig-more#rsa-sha256",
435435

436436
// Algorithm that the toolkit will use on digest process. Options:
437437
// 'http://www.w3.org/2000/09/xmldsig#sha1'
438438
// 'http://www.w3.org/2001/04/xmlenc#sha256'
439439
// 'http://www.w3.org/2001/04/xmldsig-more#sha384'
440440
// 'http://www.w3.org/2001/04/xmlenc#sha512'
441-
'digestAlgorithm': "http://www.w3.org/2000/09/xmldsig#sha1"
441+
'digestAlgorithm': "http://www.w3.org/2001/04/xmlenc#sha256"
442442
},
443443

444444
// Contact information template, it is recommended to suply a

demo-django/saml/advanced_settings.json

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -10,8 +10,8 @@
1010
"wantNameId" : true,
1111
"wantNameIdEncrypted": false,
1212
"wantAssertionsEncrypted": false,
13-
"signatureAlgorithm": "http://www.w3.org/2000/09/xmldsig#rsa-sha1",
14-
"digestAlgorithm": "http://www.w3.org/2000/09/xmldsig#sha1"
13+
"signatureAlgorithm": "http://www.w3.org/2001/04/xmldsig-more#rsa-sha256",
14+
"digestAlgorithm": "http://www.w3.org/2001/04/xmlenc#sha256"
1515
},
1616
"contactPerson": {
1717
"technical": {

demo-flask/saml/advanced_settings.json

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -10,8 +10,8 @@
1010
"wantNameId" : true,
1111
"wantNameIdEncrypted": false,
1212
"wantAssertionsEncrypted": false,
13-
"signatureAlgorithm": "http://www.w3.org/2000/09/xmldsig#rsa-sha1",
14-
"digestAlgorithm": "http://www.w3.org/2000/09/xmldsig#sha1"
13+
"signatureAlgorithm": "http://www.w3.org/2001/04/xmldsig-more#rsa-sha256",
14+
"digestAlgorithm": "http://www.w3.org/2001/04/xmlenc#sha256"
1515
},
1616
"contactPerson": {
1717
"technical": {

demo-tornado/saml/advanced_settings.json

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -10,8 +10,8 @@
1010
"wantNameId" : true,
1111
"wantNameIdEncrypted": false,
1212
"wantAssertionsEncrypted": false,
13-
"signatureAlgorithm": "http://www.w3.org/2000/09/xmldsig#rsa-sha1",
14-
"digestAlgorithm": "http://www.w3.org/2000/09/xmldsig#sha1"
13+
"signatureAlgorithm": "http://www.w3.org/2001/04/xmldsig-more#rsa-sha256",
14+
"digestAlgorithm": "http://www.w3.org/2001/04/xmlenc#sha256"
1515
},
1616
"contactPerson": {
1717
"technical": {

demo_pyramid/demo_pyramid/saml/advanced_settings.json

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -10,8 +10,8 @@
1010
"wantNameId" : true,
1111
"wantNameIdEncrypted": false,
1212
"wantAssertionsEncrypted": false,
13-
"signatureAlgorithm": "http://www.w3.org/2000/09/xmldsig#rsa-sha1",
14-
"digestAlgorithm": "http://www.w3.org/2000/09/xmldsig#sha1"
13+
"signatureAlgorithm": "http://www.w3.org/2001/04/xmldsig-more#rsa-sha256",
14+
"digestAlgorithm": "http://www.w3.org/2001/04/xmlenc#sha256"
1515
},
1616
"contactPerson": {
1717
"technical": {

0 commit comments

Comments
 (0)