You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@cxf.apache.org by "Colm O hEigeartaigh (JIRA)" <ji...@apache.org> on 2018/01/24 17:54:00 UTC
[jira] [Updated] (CXF-5051) ProtectTokens assertion is not
respected for SAML tokens
[ https://issues.apache.org/jira/browse/CXF-5051?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
Colm O hEigeartaigh updated CXF-5051:
-------------------------------------
Fix Version/s: 3.2.2
3.1.15
> ProtectTokens assertion is not respected for SAML tokens
> --------------------------------------------------------
>
> Key: CXF-5051
> URL: https://issues.apache.org/jira/browse/CXF-5051
> Project: CXF
> Issue Type: Bug
> Components: WS-* Components
> Reporter: Alessio Soldano
> Priority: Major
> Fix For: 3.1.15, 3.2.2
>
>
> I've a ws-security policy wsdl, with an asymmetric binding, SAML holder-of-key assertion and ProtectTokens assertion.
> Looks like that the SAML token is not signed as part of the main signature in the exchanged messages.
--
This message was sent by Atlassian JIRA
(v7.6.3#76005)