Symptom
SAP is updating the signing certificates for all SAML SSOs from SAP Employee Central to SAP partners. This update provides a more secure signature algorithm and adopts best practice security for the SAML SSO. However, to ensure that this change occurs seamlessly, action is needed within WorkForce Software.
Environment
Not required for WorkForce Suite with the WorkForce Hub.
Eligible for all other Workforce software solutions.
Cause
Removal of older SHA-1 certificate for more Security
Resolution
Following steps need to be followed in order to update the certificate:-
=============================================
- Open ticket with SAP via SAP Launchpad with component 'XX-PART-WFR-SRV'
- Ticket will be forwarded to Workforce
- Date & Time for the upgrade will be decided
- New metadata file will be provided by customer to workforce
- Workforce will apply the file
- Testing will be done
- SHA-256 is running on the system.
For more information, please follow the below link:-
See Also
3072974 - UI Integration: Manual configuration for migration from SHA-1 to SHA-256
https://launchpad.support.sap.com/#/notes/3072974
Keywords
SHA-1, SHA-256, security certificate, patch, SSO Connection, single sign on , KBA , XX-PART-WFR , Workforce Software , How To