Select Certificate Signature Algorithm (using QuickStart)

Select the certificate signature algorithm after setting the key pool size within the QuickStart wizard.

A Root CA certificate is generated when the cluster is first initialized. This Root CA certificate is used to generate certificates for KMA, user, and agent entities. The Root CA certificate and the entity certificates can be X.509v3 certificates signed using the SHA-256 hashing algorithm, or they can be X.509v1 certificates signed using the SHA-1 hashing algorithm.
  1. When prompted, enter 1 for SHA256 (default) or 2 for SHA1.
    Always select SHA256, unless you are deploying encryption endpoints that do not support SHA2.
  2. Proceed to Synchronize the KMA Time (using QuickStart).