Skip to main content
Participant
October 15, 2024
Answered

SAML Signature (change SHA1 to SHA256)

  • October 15, 2024
  • 2 replies
  • 657 views

I'm trying to setup SAML with ColdFusion 2021 by doing the SP and IDP configurations inside the ColdFusion Administrator. All settings appear to be complete and correct but when an InitSAMLAuthRequest gets itiniated I receive the following error.

 

Error details: MSIS7093:
The message is not signed with expected signature algorithm.
Message is signed with signature algorithm http://www.w3.org/2000/09/xmldsig#rsa-sha1.
Expected signature algorithm http://www.w3.org/2001/04/xmldsig-more#rsa-sha256.

 

Is the signature algorithm (in this case SHA1) defined by CF? If so, how do I switch from SHA1 to SHA256?

    This topic has been closed for replies.
    Correct answer Vikram_Kumar_M

    @flashmap, please get in touch with the support team at cf.install@adobe.com.

     

    Thanks,

    Vikram

    2 replies

    flashmapAuthor
    Participant
    October 22, 2024

    Status Update:  Vikram provided an update.  SHA-256 was available as an option after the update was installed.

    Thank you, Vikram.  Great support!

    flashmapAuthor
    Participant
    October 15, 2024

    The above post contains the following text, which I did not intend to include.  Can't figure out how to edit it out.  Sorry for any confusion.


    http://www.w3.org/2000/09/xmldsig#rsa-sha1.
    w3.org/2000/09/xmldsig#rsa-sha1.
    xmldsig-more namespace
    w3.org/2001/04/xmldsig-more#rsa-sha256.

    Vikram_Kumar_M
    Adobe Employee
    Vikram_Kumar_MCorrect answer
    Adobe Employee
    October 15, 2024

    @flashmap, please get in touch with the support team at cf.install@adobe.com.

     

    Thanks,

    Vikram

    flashmapAuthor
    Participant
    October 15, 2024

    Will do.  Thanks, Vikram.