|
Consensus Item Name: Only Support DSAwithSHA1 Certificate Signing Algorithm
Test Event: SAML Interoperability Test Event 4Q07
Consensus Decision: DSAwithSHA1 signature algorithm will not be used in digital certificates.
Background: Section 4.1 of SAML 2.0 Conformance specification states that the DSAwithSHA1 signature algorithm, while recommended, is not required by SAML 2.0. As it was not required, one participant was not able to support DSAwithSHA1 algorithm in a partner's certificate. The group agreed to only use digital certificates with the required RSAwithSHA1 signature algorithm.
|