Reference documentation and code samples for the Certificate Authority v1 API enum CertificateAuthority.Types.SignHashAlgorithm.
The algorithm of a Cloud KMS CryptoKeyVersion of a
[CryptoKey][google.cloud.kms.v1.CryptoKey] with the
[CryptoKeyPurpose][google.cloud.kms.v1.CryptoKey.CryptoKeyPurpose] value
ASYMMETRIC_SIGN. These values correspond to the
[CryptoKeyVersionAlgorithm][google.cloud.kms.v1.CryptoKeyVersion.CryptoKeyVersionAlgorithm]
values. For RSA signing algorithms, the PSS algorithms should be preferred,
use PKCS1 algorithms if required for compatibility. For further
recommendations, see
https://cloud.google.com/kms/docs/algorithms#algorithm_recommendations.
[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Hard to understand","hardToUnderstand","thumb-down"],["Incorrect information or sample code","incorrectInformationOrSampleCode","thumb-down"],["Missing the information/samples I need","missingTheInformationSamplesINeed","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2025-03-21 UTC."],[[["This document provides reference information for the `CertificateAuthority.Types.SignHashAlgorithm` enum within the Google Cloud Security Private CA v1 API."],["The `SignHashAlgorithm` enum specifies the cryptographic algorithm of a Cloud KMS CryptoKeyVersion used for asymmetric signing."],["Version 3.9.0 is the most current version of the API, with previous version references going all the way back to 1.0.0 being present."],["Available algorithms include options for both Elliptic Curve (EC) and RSA signing, such as `EcP256Sha256`, `RsaPkcs12048Sha256`, and `RsaPss4096Sha256`."],["The documentation states that the PSS algorithms are the preferred RSA signing algorithms, with PKCS1 being acceptable if backwards compatibility is needed."]]],[]]