No, the HMAC-SHA1 signature is the only crypto needed in OAuth 1.
Now if you don't have a SHA1 implementation in your programming language, that's a different problem.
Just decided with my boss we're going to roll with a hybrid approach. Spent too much time reading through all these standards and not enough time thinking and coding.