[Issue 1283] New - functional test sc44 fails with client side message :Service accepts messages signed and encrypted with Derived Keys of SCT although its policy descriptor says the Derived Keys of SCT MUST NOT be used.

View: New views
3 Messages — Rating Filter:   Alert me  

[Issue 1283] New - functional test sc44 fails with client side message :Service accepts messages signed and encrypted with Derived Keys of SCT although its policy descriptor says the Derived Keys of SCT MUST NOT be used.

by anand_mishra :: Rate this Message:

Reply to Author | View Threaded | Show Only this Message

https://wsit.dev.java.net/issues/show_bug.cgi?id=1283
                 Issue #|1283
                 Summary|functional test sc44 fails with client side message :S
                        |ervice accepts messages signed and encrypted with Deri
                        |ved Keys of SCT although its policy descriptor says th
                        |e Derived Keys of SCT MUST NOT be used.
               Component|wsit
                 Version|2.0
                Platform|All
              OS/Version|All
                     URL|
                  Status|NEW
       Status whiteboard|
                Keywords|
              Resolution|
              Issue type|DEFECT
                Priority|P3
            Subcomponent|secure-conversation
             Assigned to|jdg6688
             Reported by|anand_mishra






------- Additional comments from anand_mishra@... Wed Oct 14 11:01:27 +0000 2009 -------
functional scenario : sc51

Client side failure message : Service accepts messages signed and encrypted with
Derived Keys of SCT although its policy descriptor says the Derived Keys of SCT
MUST NOT be used.

tested this on glassfish v2 9.1.1 with latest nightly build of metro.


Do not see any issue in soap log and server log is also clean, i can also see
the  ping message in the server log, this more look like client side error
message after getting the response from server, also observed there is no fault
message in the soap log.

Soap Log
========
Oct 14, 2009 3:20:01 PM [com.sun.xml.ws.policy.jaxws.PolicyConfigParser]  parse
INFO: WSP5018: Loaded WSIT configuration from file:
file:/space/b67/tango/qe-tests/wssecconv/functional/data/configfromwsdl/wsit-client.xml.
Service URL=http://localhost:8080/jaxws-sc51/simple
Testing WSSecureConversation!
-------------../functional/run_log/sc51-output.txt---------------
---[HTTP request - http://localhost:8080/jaxws-sc51/simple]---
Content-type: text/xml;charset=utf-8
Soapaction: "http://schemas.xmlsoap.org/ws/2005/02/trust/RST/SCT"
Accept: text/xml, multipart/related, text/html, image/gif, image/jpeg, *; q=.2,
*/*; q=.2
<?xml version='1.0' encoding='UTF-8'?><S:Envelope
xmlns:S="http://schemas.xmlsoap.org/soap/envelope/"
xmlns:wsse11="http://docs.oasis-open.org/wss/oasis-wss-wssecurity-secext-1.1.xsd"
xmlns:wsse="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1.0.xsd"
xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd"
xmlns:xs="http://www.w3.org/2001/XMLSchema"
xmlns:ds="http://www.w3.org/2000/09/xmldsig#"
xmlns:wsc="http://schemas.xmlsoap.org/ws/2005/02/sc"
xmlns:xenc="http://www.w3.org/2001/04/xmlenc#"
xmlns:exc14n="http://www.w3.org/2001/10/xml-exc-c14n#"><S:Header><To
xmlns="http://schemas.xmlsoap.org/ws/2004/08/addressing"
wsu:Id="_5007">http://localhost:8080/jaxws-sc51/simple</To><Action
xmlns="http://schemas.xmlsoap.org/ws/2004/08/addressing"
wsu:Id="_5006">http://schemas.xmlsoap.org/ws/2005/02/trust/RST/SCT</Action><ReplyTo
xmlns="http://schemas.xmlsoap.org/ws/2004/08/addressing" wsu:Id="_5005">
   
<Address>http://schemas.xmlsoap.org/ws/2004/08/addressing/role/anonymous</Address>
</ReplyTo><MessageID xmlns="http://schemas.xmlsoap.org/ws/2004/08/addressing"
wsu:Id="_5004">uuid:7d93524d-9a69-4050-83db-cb8e93168f95</MessageID><wsse:Security
S:mustUnderstand="1"><wsu:Timestamp
xmlns:ns20="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns19="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns18="http://www.w3.org/2003/05/soap-envelope"
wsu:Id="_5"><wsu:Created>2009-10-14T09:50:03Z</wsu:Created><wsu:Expires>2009-10-14T09:55:03Z</wsu:Expires></wsu:Timestamp><wsse:BinarySecurityToken
xmlns:ns20="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns19="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns18="http://www.w3.org/2003/05/soap-envelope"
ValueType="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-x509-token-profile-1.0#X509v3"
EncodingType="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-soap-message-security-1.0#Base64Binary"
wsu:Id="uuid_7925cc3d-d2ae-4321-af94-653a13cd76bd">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</wsse:BinarySecurityToken><xenc:EncryptedKey
xmlns:ns20="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns19="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns18="http://www.w3.org/2003/05/soap-envelope"
Id="_5002"><xenc:EncryptionMethod
Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p" /><ds:KeyInfo
xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
xsi:type="KeyInfoType"><wsse:SecurityTokenReference><wsse:KeyIdentifier
ValueType="http://docs.oasis-open.org/wss/oasis-wss-soap-message-security-1.1#ThumbprintSHA1"
EncodingType="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-soap-message-security-1.0#Base64Binary">NQM0IBvuplAtETQvk+6gn8C13wE=</wsse:KeyIdentifier></wsse:SecurityTokenReference></ds:KeyInfo><xenc:CipherData><xenc:CipherValue>jnMVUdywtZlHpjPC7T4M+zfR7F18wA+XMyMCVoiNRhH3tHSbJW4YLeqWpIjabNFR8HbzB8U0z2sIIKSr/WIfiXe7/Vj+YJEUlMVe6s2qFJym6Npt4fTlcGTUXxuSTW7ftL2/ifA5D3Uu5MrzEHI7iDdcsyHGy849fNY41BTB3fA=</xenc:CipherValue></xenc:CipherData></xenc:EncryptedKey><wsc:DerivedKeyToken
xmlns:ns20="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns19="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns18="http://www.w3.org/2003/05/soap-envelope"
wsu:Id="_3"><wsse:SecurityTokenReference
wsu:Id="uuid_0c92a588-004b-4989-9400-4c913077f6de"><wsse:Reference URI="#_5002"
ValueType="http://docs.oasis-open.org/wss/oasis-wss-soap-message-security-1.1#EncryptedKey"
/></wsse:SecurityTokenReference><wsc:Offset>0</wsc:Offset><wsc:Length>24</wsc:Length><wsc:Nonce>j9vGiMhiA55aOEBugQr7HGdU</wsc:Nonce></wsc:DerivedKeyToken><wsc:DerivedKeyToken
xmlns:ns20="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns19="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns18="http://www.w3.org/2003/05/soap-envelope"
wsu:Id="_4"><wsse:SecurityTokenReference><wsse:Reference URI="#_5002"
ValueType="http://docs.oasis-open.org/wss/oasis-wss-soap-message-security-1.1#EncryptedKey"
/></wsse:SecurityTokenReference><wsc:Offset>0</wsc:Offset><wsc:Length>32</wsc:Length><wsc:Nonce>pSlY5ST2iYgpT52Yqy3Ieo3V</wsc:Nonce></wsc:DerivedKeyToken><xenc:ReferenceList
xmlns:ns20="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns19="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns18="http://www.w3.org/2003/05/soap-envelope"><xenc:DataReference
URI="#_5010" /></xenc:ReferenceList><ds:Signature
xmlns:ns20="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns19="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns18="http://www.w3.org/2003/05/soap-envelope"
Id="_1"><ds:SignedInfo><ds:CanonicalizationMethod
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="wsse S" /></ds:CanonicalizationMethod><ds:SignatureMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#hmac-sha1" /><ds:Reference
URI="#_5004"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>JS+HJIQFFSnjwUyMGm8vhXYW/iQ=</ds:DigestValue></ds:Reference><ds:Reference
URI="#_5005"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>zGNljVxTNZuDUEUEhBP39e5zcYE=</ds:DigestValue></ds:Reference><ds:Reference
URI="#_5006"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>KNaBSOW9TXKr987xSBLuMqfgdwY=</ds:DigestValue></ds:Reference><ds:Reference
URI="#_5007"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>krJtqkLUzVTtn5o1lZMP2uA275g=</ds:DigestValue></ds:Reference><ds:Reference
URI="#_5008"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>u33eeWdwtwLefKze2C0pEffm1I4=</ds:DigestValue></ds:Reference><ds:Reference
URI="#_5"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="wsu wsse S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>TTe3F2p1j4kKrtFbngem2PgUKZw=</ds:DigestValue></ds:Reference></ds:SignedInfo><ds:SignatureValue>XKAf9Ym98gVe4zc3Np7eSSDEx1I=</ds:SignatureValue><ds:KeyInfo><wsse:SecurityTokenReference
wsu:Id="_5003"><wsse:Reference URI="#_3"
/></wsse:SecurityTokenReference></ds:KeyInfo></ds:Signature><ds:Signature
xmlns:ns20="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns19="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns18="http://www.w3.org/2003/05/soap-envelope"
Id="_6"><ds:SignedInfo><ds:CanonicalizationMethod
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="wsse S" /></ds:CanonicalizationMethod><ds:SignatureMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1" /><ds:Reference
URI="#_1"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="wsu wsse S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>QDgoGTYZpGJ+LwQ3ogwR44Z7GhU=</ds:DigestValue></ds:Reference></ds:SignedInfo><ds:SignatureValue>kg7Ar91Ebs5bfAy9Fx2HK8gUABnjQldPie+CJg54i4w5GlClHCPH6lzXVw+a4ii08CH9SLn7cWkqTPIUH/xHM5a2TDvryER5KlsP3ZfRxewFGAa1yENmabAPsu8+wCCtV9NS7YUsJ1BXM4u+njXV4wb6Oze3dEtB8DrrlnaY9IE=</ds:SignatureValue><ds:KeyInfo><wsse:SecurityTokenReference><wsse:Reference
URI="#uuid_7925cc3d-d2ae-4321-af94-653a13cd76bd"
ValueType="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-x509-token-profile-1.0#X509v3"
/></wsse:SecurityTokenReference></ds:KeyInfo></ds:Signature></wsse:Security></S:Header><S:Body
wsu:Id="_5008"><xenc:EncryptedData
xmlns:ns20="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns19="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns18="http://www.w3.org/2003/05/soap-envelope" Id="_5010"
Type="http://www.w3.org/2001/04/xmlenc#Content"><xenc:EncryptionMethod
Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc" /><ds:KeyInfo
xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
xsi:type="KeyInfoType"><wsse:SecurityTokenReference><wsse:Reference URI="#_4"
/></wsse:SecurityTokenReference></ds:KeyInfo><xenc:CipherData><xenc:CipherValue>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</xenc:CipherValue></xenc:CipherData></xenc:EncryptedData></S:Body></S:Envelope>--------------------
---[HTTP response - http://localhost:8080/jaxws-sc51/simple - 200]---
Transfer-encoding: chunked
null: HTTP/1.1 200 OK
Content-type: text/xml;charset=utf-8
Server: Sun GlassFish Enterprise Server v2.1
X-powered-by: Servlet/2.5
Date: Wed, 14 Oct 2009 09:50:05 GMT
<?xml version='1.0' encoding='UTF-8'?><S:Envelope
xmlns:S="http://schemas.xmlsoap.org/soap/envelope/"
xmlns:wsse11="http://docs.oasis-open.org/wss/oasis-wss-wssecurity-secext-1.1.xsd"
xmlns:wsse="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1.0.xsd"
xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd"
xmlns:xs="http://www.w3.org/2001/XMLSchema"
xmlns:ds="http://www.w3.org/2000/09/xmldsig#"
xmlns:wsc="http://schemas.xmlsoap.org/ws/2005/02/sc"
xmlns:xenc="http://www.w3.org/2001/04/xmlenc#"
xmlns:exc14n="http://www.w3.org/2001/10/xml-exc-c14n#"><S:Header><To
xmlns="http://schemas.xmlsoap.org/ws/2004/08/addressing"
wsu:Id="_5006">http://schemas.xmlsoap.org/ws/2004/08/addressing/role/anonymous</To><Action
xmlns="http://schemas.xmlsoap.org/ws/2004/08/addressing"
wsu:Id="_5005">http://schemas.xmlsoap.org/ws/2005/02/trust/RSTR/SCT</Action><MessageID
xmlns="http://schemas.xmlsoap.org/ws/2004/08/addressing"
wsu:Id="_5004">uuid:a6af0eb2-2499-4239-9c42-2d8a31003cf6</MessageID><RelatesTo
xmlns="http://schemas.xmlsoap.org/ws/2004/08/addressing"
wsu:Id="_5003">uuid:7d93524d-9a69-4050-83db-cb8e93168f95</RelatesTo><wsse:Security
S:mustUnderstand="1"><wsu:Timestamp
xmlns:ns20="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns19="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns18="http://www.w3.org/2003/05/soap-envelope"
wsu:Id="_5"><wsu:Created>2009-10-14T09:50:05Z</wsu:Created><wsu:Expires>2009-10-14T09:55:05Z</wsu:Expires></wsu:Timestamp><wsc:DerivedKeyToken
xmlns:ns20="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns19="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns18="http://www.w3.org/2003/05/soap-envelope"
wsu:Id="_3"><wsse:SecurityTokenReference><wsse:KeyIdentifier
ValueType="http://docs.oasis-open.org/wss/oasis-wss-soap-message-security-1.1#EncryptedKeySHA1"
EncodingType="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-soap-message-security-1.0#Base64Binary">OcSciFD7ThopRxaCCjGiwUQfLGo=</wsse:KeyIdentifier></wsse:SecurityTokenReference><wsc:Offset>0</wsc:Offset><wsc:Length>24</wsc:Length><wsc:Nonce>WXBF70vvWBcfQKwlNoIUOBT9</wsc:Nonce></wsc:DerivedKeyToken><wsc:DerivedKeyToken
xmlns:ns20="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns19="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns18="http://www.w3.org/2003/05/soap-envelope"
wsu:Id="_4"><wsse:SecurityTokenReference><wsse:KeyIdentifier
ValueType="http://docs.oasis-open.org/wss/oasis-wss-soap-message-security-1.1#EncryptedKeySHA1"
EncodingType="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-soap-message-security-1.0#Base64Binary">OcSciFD7ThopRxaCCjGiwUQfLGo=</wsse:KeyIdentifier></wsse:SecurityTokenReference><wsc:Offset>0</wsc:Offset><wsc:Length>32</wsc:Length><wsc:Nonce>IUI+KRJcGHBJLU7+kfSATpc6</wsc:Nonce></wsc:DerivedKeyToken><xenc:ReferenceList
xmlns:ns20="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns19="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns18="http://www.w3.org/2003/05/soap-envelope"><xenc:DataReference
URI="#_5009" /></xenc:ReferenceList><ds:Signature
xmlns:ns20="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns19="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns18="http://www.w3.org/2003/05/soap-envelope"
Id="_1"><ds:SignedInfo><ds:CanonicalizationMethod
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="wsse S" /></ds:CanonicalizationMethod><ds:SignatureMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#hmac-sha1" /><ds:Reference
URI="#_5003"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>AnHu74kDf4nmorkpgblAaCoRn68=</ds:DigestValue></ds:Reference><ds:Reference
URI="#_5004"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>Y4Un9SxE3BxBNa/JFgzyZaVoNc8=</ds:DigestValue></ds:Reference><ds:Reference
URI="#_5005"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>Y3HjQyUhIC/cAbFmTMhoQfg29hs=</ds:DigestValue></ds:Reference><ds:Reference
URI="#_5006"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>sR3aEbFHfvb2w/THt2ebKGNH4kk=</ds:DigestValue></ds:Reference><ds:Reference
URI="#_5007"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>2r5aqhXMT4avSyfREdlNljwV474=</ds:DigestValue></ds:Reference><ds:Reference
URI="#_5"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="wsu wsse S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>UDR8RmUXInZksA5NA3s66rDZlyM=</ds:DigestValue></ds:Reference></ds:SignedInfo><ds:SignatureValue>OlmvE2QsA3HeAjxd1b4YbiDW6JQ=</ds:SignatureValue><ds:KeyInfo><wsse:SecurityTokenReference
wsu:Id="_5002"><wsse:Reference URI="#_3"
/></wsse:SecurityTokenReference></ds:KeyInfo></ds:Signature></wsse:Security></S:Header><S:Body
wsu:Id="_5007"><xenc:EncryptedData
xmlns:ns20="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns19="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns18="http://www.w3.org/2003/05/soap-envelope" Id="_5009"
Type="http://www.w3.org/2001/04/xmlenc#Content"><xenc:EncryptionMethod
Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc" /><ds:KeyInfo
xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
xsi:type="KeyInfoType"><wsse:SecurityTokenReference><wsse:Reference URI="#_4"
/></wsse:SecurityTokenReference></ds:KeyInfo><xenc:CipherData><xenc:CipherValue>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</xenc:CipherValue></xenc:CipherData></xenc:EncryptedData></S:Body></S:Envelope>--------------------
---[HTTP request - http://localhost:8080/jaxws-sc51/simple]---
Content-type: text/xml;charset=utf-8
Soapaction: "http://xmlsoap.org/Ping"
Accept: text/xml, multipart/related, text/html, image/gif, image/jpeg, *; q=.2,
*/*; q=.2
<?xml version='1.0' encoding='UTF-8'?><S:Envelope
xmlns:S="http://schemas.xmlsoap.org/soap/envelope/"
xmlns:wsse="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1.0.xsd"
xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd"
xmlns:xs="http://www.w3.org/2001/XMLSchema"
xmlns:ds="http://www.w3.org/2000/09/xmldsig#"
xmlns:wsc="http://schemas.xmlsoap.org/ws/2005/02/sc"
xmlns:exc14n="http://www.w3.org/2001/10/xml-exc-c14n#"
xmlns:xenc="http://www.w3.org/2001/04/xmlenc#"><S:Header><To
xmlns="http://schemas.xmlsoap.org/ws/2004/08/addressing"
wsu:Id="_5007">http://localhost:8080/jaxws-sc51/simple</To><Action
xmlns="http://schemas.xmlsoap.org/ws/2004/08/addressing"
wsu:Id="_5006">http://xmlsoap.org/Ping</Action><ReplyTo
xmlns="http://schemas.xmlsoap.org/ws/2004/08/addressing" wsu:Id="_5005">
   
<Address>http://schemas.xmlsoap.org/ws/2004/08/addressing/role/anonymous</Address>
</ReplyTo><MessageID xmlns="http://schemas.xmlsoap.org/ws/2004/08/addressing"
wsu:Id="_5004">uuid:fcf2ad3d-05a9-4793-a172-3582c64f46df</MessageID><wsse:Security
S:mustUnderstand="1"><wsu:Timestamp
xmlns:ns19="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns18="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns17="http://www.w3.org/2003/05/soap-envelope"
wsu:Id="_5"><wsu:Created>2009-10-14T09:50:05Z</wsu:Created><wsu:Expires>2009-10-14T09:55:05Z</wsu:Expires></wsu:Timestamp><wsc:SecurityContextToken
xmlns:ns19="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns18="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns17="http://www.w3.org/2003/05/soap-envelope"
wsu:Id="uuid-bd73d74a-0059-4a4a-9916-afaafa8bb3cf"><wsc:Identifier>urn:uuid:f262f5d5-43b1-49e5-ae95-48af6bab4445</wsc:Identifier></wsc:SecurityContextToken><wsc:DerivedKeyToken
xmlns:ns19="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns18="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns17="http://www.w3.org/2003/05/soap-envelope"
wsu:Id="_3"><wsse:SecurityTokenReference wsu:Id="_5002"><wsse:Reference
URI="#uuid-bd73d74a-0059-4a4a-9916-afaafa8bb3cf"
ValueType="http://schemas.xmlsoap.org/ws/2005/02/sc/sct"
/></wsse:SecurityTokenReference><wsc:Offset>0</wsc:Offset><wsc:Length>24</wsc:Length><wsc:Nonce>t2dVcPLu2GtzG3BOPWIUgslM</wsc:Nonce></wsc:DerivedKeyToken><wsc:DerivedKeyToken
xmlns:ns19="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns18="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns17="http://www.w3.org/2003/05/soap-envelope"
wsu:Id="_4"><wsse:SecurityTokenReference><wsse:Reference
URI="#uuid-bd73d74a-0059-4a4a-9916-afaafa8bb3cf"
ValueType="http://schemas.xmlsoap.org/ws/2005/02/sc/sct"
/></wsse:SecurityTokenReference><wsc:Offset>0</wsc:Offset><wsc:Length>32</wsc:Length><wsc:Nonce>lFSwz8gXrPOv9opDsfrI00mq</wsc:Nonce></wsc:DerivedKeyToken><xenc:ReferenceList
xmlns:ns19="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns18="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns17="http://www.w3.org/2003/05/soap-envelope"><xenc:DataReference
URI="#_5011" /></xenc:ReferenceList><ds:Signature
xmlns:ns19="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns18="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns17="http://www.w3.org/2003/05/soap-envelope"
Id="_1"><ds:SignedInfo><ds:CanonicalizationMethod
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="wsse S" /></ds:CanonicalizationMethod><ds:SignatureMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#hmac-sha1" /><ds:Reference
URI="#_5004"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>MGWvrrSNaKUkFg8S9EpU+x28ZVw=</ds:DigestValue></ds:Reference><ds:Reference
URI="#_5005"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>zGNljVxTNZuDUEUEhBP39e5zcYE=</ds:DigestValue></ds:Reference><ds:Reference
URI="#_5006"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>cmwMM98jbORQN7nItuJdjbVlu+A=</ds:DigestValue></ds:Reference><ds:Reference
URI="#_5007"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>krJtqkLUzVTtn5o1lZMP2uA275g=</ds:DigestValue></ds:Reference><ds:Reference
URI="#_5008"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>4sevyJhrBa8GnpEJUr2p3/FZ4KU=</ds:DigestValue></ds:Reference><ds:Reference
URI="#_5"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="wsu wsse S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>UDR8RmUXInZksA5NA3s66rDZlyM=</ds:DigestValue></ds:Reference></ds:SignedInfo><ds:SignatureValue>CEym+1F6EVTjwTL9/LM2y2h33No=</ds:SignatureValue><ds:KeyInfo><wsse:SecurityTokenReference
wsu:Id="_5003"><wsse:Reference URI="#_3"
/></wsse:SecurityTokenReference></ds:KeyInfo></ds:Signature></wsse:Security></S:Header><S:Body
wsu:Id="_5008"><xenc:EncryptedData
xmlns:ns19="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns18="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns17="http://www.w3.org/2003/05/soap-envelope" Id="_5011"
Type="http://www.w3.org/2001/04/xmlenc#Content"><xenc:EncryptionMethod
Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc" /><ds:KeyInfo
xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
xsi:type="KeyInfoType"><wsse:SecurityTokenReference><wsse:Reference URI="#_4"
/></wsse:SecurityTokenReference></ds:KeyInfo><xenc:CipherData><xenc:CipherValue>0GUwHCUoil8S8c3jMw6Uy2jeB/ijycrOmI7qjQQlyJ8Vx86gojM7CbvL6dHX/KzYQmdMNWSGOaXFinFeohXQcp0AAz9GXDnIaBXEwQ1YKMw=</xenc:CipherValue></xenc:CipherData></xenc:EncryptedData></S:Body></S:Envelope>--------------------
---[HTTP response - http://localhost:8080/jaxws-sc51/simple - 200]---
Transfer-encoding: chunked
null: HTTP/1.1 200 OK
Content-type: text/xml;charset=utf-8
Server: Sun GlassFish Enterprise Server v2.1
X-powered-by: Servlet/2.5
Date: Wed, 14 Oct 2009 09:50:05 GMT
<?xml version='1.0' encoding='UTF-8'?><S:Envelope
xmlns:S="http://schemas.xmlsoap.org/soap/envelope/"
xmlns:wsse="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1.0.xsd"
xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd"
xmlns:xs="http://www.w3.org/2001/XMLSchema"
xmlns:ds="http://www.w3.org/2000/09/xmldsig#"
xmlns:wsc="http://schemas.xmlsoap.org/ws/2005/02/sc"
xmlns:exc14n="http://www.w3.org/2001/10/xml-exc-c14n#"
xmlns:xenc="http://www.w3.org/2001/04/xmlenc#"><S:Header><To
xmlns="http://schemas.xmlsoap.org/ws/2004/08/addressing"
wsu:Id="_5007">http://schemas.xmlsoap.org/ws/2004/08/addressing/role/anonymous</To><Action
xmlns="http://schemas.xmlsoap.org/ws/2004/08/addressing"
wsu:Id="_5006">http://xmlsoap.org/PingResponse</Action><MessageID
xmlns="http://schemas.xmlsoap.org/ws/2004/08/addressing"
wsu:Id="_5005">uuid:942ca992-016d-493a-ab02-52282cf7b40b</MessageID><RelatesTo
xmlns="http://schemas.xmlsoap.org/ws/2004/08/addressing"
wsu:Id="_5004">uuid:fcf2ad3d-05a9-4793-a172-3582c64f46df</RelatesTo><wsse:Security
S:mustUnderstand="1"><wsu:Timestamp
xmlns:ns19="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns18="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns17="http://www.w3.org/2003/05/soap-envelope"
wsu:Id="_5"><wsu:Created>2009-10-14T09:50:05Z</wsu:Created><wsu:Expires>2009-10-14T09:55:05Z</wsu:Expires></wsu:Timestamp><wsc:SecurityContextToken
xmlns:ns19="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns18="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns17="http://www.w3.org/2003/05/soap-envelope"
wsu:Id="uuid-bd73d74a-0059-4a4a-9916-afaafa8bb3cf"><wsc:Identifier>urn:uuid:f262f5d5-43b1-49e5-ae95-48af6bab4445</wsc:Identifier></wsc:SecurityContextToken><wsc:DerivedKeyToken
xmlns:ns19="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns18="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns17="http://www.w3.org/2003/05/soap-envelope"
wsu:Id="_3"><wsse:SecurityTokenReference wsu:Id="_5002"><wsse:Reference
URI="#uuid-bd73d74a-0059-4a4a-9916-afaafa8bb3cf"
ValueType="http://schemas.xmlsoap.org/ws/2005/02/sc/sct"
/></wsse:SecurityTokenReference><wsc:Offset>0</wsc:Offset><wsc:Length>24</wsc:Length><wsc:Nonce>ttZvrFN+6S5m1BfECg8hxNK9</wsc:Nonce></wsc:DerivedKeyToken><wsc:DerivedKeyToken
xmlns:ns19="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns18="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns17="http://www.w3.org/2003/05/soap-envelope"
wsu:Id="_4"><wsse:SecurityTokenReference><wsse:Reference
URI="#uuid-bd73d74a-0059-4a4a-9916-afaafa8bb3cf"
ValueType="http://schemas.xmlsoap.org/ws/2005/02/sc/sct"
/></wsse:SecurityTokenReference><wsc:Offset>0</wsc:Offset><wsc:Length>32</wsc:Length><wsc:Nonce>hMHCsQTSRD+Hfq8lGe9ybczL</wsc:Nonce></wsc:DerivedKeyToken><xenc:ReferenceList
xmlns:ns19="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns18="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns17="http://www.w3.org/2003/05/soap-envelope"><xenc:DataReference
URI="#_5011" /></xenc:ReferenceList><ds:Signature
xmlns:ns19="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns18="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns17="http://www.w3.org/2003/05/soap-envelope"
Id="_1"><ds:SignedInfo><ds:CanonicalizationMethod
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="wsse S" /></ds:CanonicalizationMethod><ds:SignatureMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#hmac-sha1" /><ds:Reference
URI="#_5004"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>PE3uA4CYqPjN7q8k4KWDxTRhyI4=</ds:DigestValue></ds:Reference><ds:Reference
URI="#_5005"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>vVYvwQpaiKQ3hi9vTqQdWBfyhD8=</ds:DigestValue></ds:Reference><ds:Reference
URI="#_5006"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>H3ySbLWQf+OfmmH5W0TOj6y++WI=</ds:DigestValue></ds:Reference><ds:Reference
URI="#_5007"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>4zBrK2TkeDY/T9gfb3uRTwMnUXo=</ds:DigestValue></ds:Reference><ds:Reference
URI="#_5008"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>Nb+AV1KxJl4ykOyE/12i5lNrVwo=</ds:DigestValue></ds:Reference><ds:Reference
URI="#_5"><ds:Transforms><ds:Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"><exc14n:InclusiveNamespaces
PrefixList="wsu wsse S" /></ds:Transform></ds:Transforms><ds:DigestMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"
/><ds:DigestValue>UDR8RmUXInZksA5NA3s66rDZlyM=</ds:DigestValue></ds:Reference></ds:SignedInfo><ds:SignatureValue>lMtkGSw6EokmECnL4o4aYH7T+84=</ds:SignatureValue><ds:KeyInfo><wsse:SecurityTokenReference
wsu:Id="_5003"><wsse:Reference URI="#_3"
/></wsse:SecurityTokenReference></ds:KeyInfo></ds:Signature></wsse:Security></S:Header><S:Body
wsu:Id="_5008"><xenc:EncryptedData
xmlns:ns19="http://schemas.xmlsoap.org/ws/2006/02/addressingidentity"
xmlns:ns18="http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512"
xmlns:ns17="http://www.w3.org/2003/05/soap-envelope" Id="_5011"
Type="http://www.w3.org/2001/04/xmlenc#Content"><xenc:EncryptionMethod
Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc" /><ds:KeyInfo
xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
xsi:type="KeyInfoType"><wsse:SecurityTokenReference><wsse:Reference URI="#_4"
/></wsse:SecurityTokenReference></ds:KeyInfo><xenc:CipherData><xenc:CipherValue>epfEyJdHb5GlyZD+CsnHQfjpddf2p2qzpm7oyCWQzsPTXn2sIwosMeB2QB0q+w7VG6rygD5fj4d3V+DFVXWMasl3G+nbqzCyGw2eqD9/vvG4Bh7mHzE0XJQRCSsdVd05</xenc:CipherValue></xenc:CipherData></xenc:EncryptedData></S:Body></S:Envelope>--------------------

---------------------------------------------------------------------
To unsubscribe, e-mail: issues-unsubscribe@...
For additional commands, e-mail: issues-help@...


[Issue 1283] functional test sc44 fails with client side message :Service accepts messages signed and encrypted with Derived Keys of SCT although its policy descriptor says the Derived Keys of SCT MUST NOT be used.

by jdg6688 :: Rate this Message:

Reply to Author | View Threaded | Show Only this Message

https://wsit.dev.java.net/issues/show_bug.cgi?id=1283



User jdg6688 changed the following:

                What    |Old value                 |New value
================================================================================
                  Status|NEW                       |RESOLVED
--------------------------------------------------------------------------------
              Resolution|                          |DUPLICATE
--------------------------------------------------------------------------------




------- Additional comments from jdg6688@... Wed Oct 14 17:32:46 +0000 2009 -------
In any case, it is a security policy verification issue for DerivedKeyToken.

*** This issue has been marked as a duplicate of 1282 ***

---------------------------------------------------------------------
To unsubscribe, e-mail: issues-unsubscribe@...
For additional commands, e-mail: issues-help@...


[Issue 1283] functional test sc44 fails with client side message :Service accepts messages signed and encrypted with Derived Keys of SCT although its policy descriptor says the Derived Keys of SCT MUST NOT be used.

by anand_mishra :: Rate this Message:

Reply to Author | View Threaded | Show Only this Message

https://wsit.dev.java.net/issues/show_bug.cgi?id=1283



User anand_mishra changed the following:

                What    |Old value                 |New value
================================================================================
                  Status|RESOLVED                  |CLOSED
--------------------------------------------------------------------------------




------- Additional comments from anand_mishra@... Wed Oct 28 07:11:22 +0000 2009 -------
duplicate issue
https://wsit.dev.java.net/issues/show_bug.cgi?id=1282

closing this now.

---------------------------------------------------------------------
To unsubscribe, e-mail: issues-unsubscribe@...
For additional commands, e-mail: issues-help@...