Support for SHA-256 Single Sign-on Authentication

  • 4
  • Announcement
  • Updated 4 years ago
  • (Edited)
In SAML based authentication, hashing functions are used in Digital Signatures and Certificates to validate the authenticity and the authority of the information that is exchanged between Service Provider and the Identity Provider. 

SHA-1 is a very popular cryptographic hash function. It is deprecated now and is on its way out. Microsoft and Google announced that they will stop accepting SHA-1 certificates. The next proactive measure would be to migrate to SHA-2.


SHA-2 is a set of cryptographic hash functions which includes SHA-224, SHA-256, and SHA-512. Replicon will be implementing the support for SHA-256 hashing function for both signing and Certificate validation. We will support both SHA-1 (for those who would like to continue using SHA-1 hashing function) and SHA-256 to meet the latest security standards.

How will this transition effect?
  • Replicon will continue to support SHA-1 until the End Of Life for the same and hence our customers can choose to be on SHA-1 until such time
  • Customers who would like to set up new SAML configuration can now use SHA-256 hashing and Digital Certificates. 
  • Customers who are still using SHA-1, can now migrate their existing setup to use SHA-256.
How to migrate existing Single Sign-on configuration to use SHA 256?
STEP 1: Update the SAML IDP to SHA-256
  • Customer using the SAML IDP provided by Replicon, should contact our support team to avail the new IDP build and setup instruction
  • Customer using ADFS, should update the Secure hash algorithm to SHA-256
  • Customer using Cloud based IDP (i.e Onelogin, Azure) should contact the Identity provider vendor to update this change
  • Customer using the other self hosted IDP, should contact their IT administrators

STEP 2: Re-upload the IDP certificate or metadata file into your Replicon. For more information on SAML setup check the below links.

For further assistance, please contact our Support team 

Raghu K
Photo of Raghu K

Raghu K, Community Moderator

  • 163 Posts
  • 9 Reply Likes
  • Excited

Posted 4 years ago

  • 4

Be the first to post a reply!