Hello, I'm trying to configure Alfresco with AD FS SAML 2.0. In our organization, one of the requirements is that the signed AuthnRequest is with a SHA256 signature. Is there a way to have Alfresco support this? It appears that it's defaulting to SHA1.
Solved! Go to Solution.
It is a bug. The request sent by Alfresco to the IdP is using the SHA-1 default algorithm. We will also fix the documentation here: Configuring AD FS with SAML SSO | Alfresco Documentation :
Click the Advanced tab, and select SHA-1 in Secure hash algorithm. Click OK.
Hi Scott,
Can I assume you are using the Enterprise SAML module ?
If so, please also contact Alfresco Support so that they can help raise & track this issue.
Regards,
Jan
In addition to Jan's good advice, I want to confirm that it should be using SHA-256. We will investigate if this is a bug in the product, and if it is we will fix it in a service pack. A support case will help us to track our efforts.
It is a bug. The request sent by Alfresco to the IdP is using the SHA-1 default algorithm. We will also fix the documentation here: Configuring AD FS with SAML SSO | Alfresco Documentation :
Click the Advanced tab, and select SHA-1 in Secure hash algorithm. Click OK.
Ask for and offer help to other Alfresco Content Services Users and members of the Alfresco team.
Related links:
By using this site, you are agreeing to allow us to collect and use cookies as outlined in Alfresco’s Cookie Statement and Terms of Use (and you have a legitimate interest in Alfresco and our products, authorizing us to contact you in such methods). If you are not ok with these terms, please do not use this website.