Answer the question
In order to leave comments, you need to log in
SHA-1 in root CA certificate, critical?
Good afternoon!
1. In connection with the massive departure from the sha-1 encryption algorithm in ssl certificates, is the encryption algorithm of the certificate of the root certificate authority important?
In my case: end ssl certificate is encrypted with sha256, certificate of intermediate CA - sha256, root - sha1.
2. As far as I understand from the forums, browsers do not check the encryption algorithm of the root CA certificate, they only check it in the list of trusted ones, is that right?
Answer the question
In order to leave comments, you need to log in
The root signing algorithm is not important because OS and browsers do not check the signature of root certificates. Instead, they verify the certificate against what they already have in the store.
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question