You are viewing a plain text version of this content. The canonical link for it is here.
Posted to soap-user@ws.apache.org by Wouter Cloetens <wc...@raleigh.ibm.com> on 2001/01/05 22:14:59 UTC

get your SOAP jar with SSL support here!

On Fri, 5 Jan 2001 08:10:32 -0800, Keen, Andy wrote:

>Perhaps a working soap.jar with SSL support could be posted somewhere?

Well ok, on popular demand, I'm throwing what I've got here at the
moment into the ring.

http://workspot.net/~zombie/soap/soap.jar

This jar file has SSL support compiled. Of the optional features, the
only thing it doesn't include is XMI support.
It does have a couple of fixes that haven't even made it into CVS yet,
so use at your own risk...

(note: this is not the same file as the one posted on the page in my
signature below)
bfn, Wouter
--
http://www.workspot.net/~zombie/soap/
My opinions are irrelevant. They will be assimilated by my employer.


Re: get your SOAP jar with SSL support here!

Posted by "John E. Conlon" <jc...@verticon.com>.
Thank you George.  Your integrity is much appreciated.  

regards, 
John

At 09:27 PM 1/9/01 -0600, you wrote:
>Yes. Some of us are very worried and DOING something about it. There is
going to
>be a much improved and updated repost of the 5 months old SecureSoap sometime
>after the Soap2.1 release. Security is much, much more then just SSL. We
had an
>SSL solution almost 6 months ago but it never made it into the base because I
>would NOT release an incomplete, partial 'just an SSL HACK' for Soap's bigger
>Security Problem. Sorry but for me this an ethical and NOT a technical
problem
>(-:
>Regards - George
>
>Gus Delgado wrote:
>
>> is there any documentation on what the changes have been on this soap.jar
>> that supports SSL, what's been added or anything?  The reason I'm asking is
>> cause I just read this article on planetit and I got a bit confuse on
>> wheather the developers of SOAP are even worrying about security...
>>
>>
http://www.planetit.com/techcenters/docs/security-hostile_content/technology
>> _feature/PIT20001221S0012/1?spsubcat=bugs_flaws
>>
>> any feedback will be appreciated.
>>
>> gus
>>
>> ---------------------------------------------------------------------
>> To unsubscribe, e-mail: soap-user-unsubscribe@xml.apache.org
>> For additional commands, email: soap-user-help@xml.apache.org
>
>
>---------------------------------------------------------------------
>To unsubscribe, e-mail: soap-user-unsubscribe@xml.apache.org
>For additional commands, email: soap-user-help@xml.apache.org
> 
************************************************************************
John E. Conlon
jconlon@verticon.com
tel: (770) 886-5470
fax: (770) 888-6894
<http://www.verticon.com/>www.verticon.com
************************************************************************


Re: get your SOAP jar with SSL support here!

Posted by "John E. Conlon" <jc...@verticon.com>.
Thank you George.  Your integrity is much appreciated.  

regards, 
John

At 09:27 PM 1/9/01 -0600, you wrote:
>Yes. Some of us are very worried and DOING something about it. There is
going to
>be a much improved and updated repost of the 5 months old SecureSoap sometime
>after the Soap2.1 release. Security is much, much more then just SSL. We
had an
>SSL solution almost 6 months ago but it never made it into the base because I
>would NOT release an incomplete, partial 'just an SSL HACK' for Soap's bigger
>Security Problem. Sorry but for me this an ethical and NOT a technical
problem
>(-:
>Regards - George
>
>Gus Delgado wrote:
>
>> is there any documentation on what the changes have been on this soap.jar
>> that supports SSL, what's been added or anything?  The reason I'm asking is
>> cause I just read this article on planetit and I got a bit confuse on
>> wheather the developers of SOAP are even worrying about security...
>>
>>
http://www.planetit.com/techcenters/docs/security-hostile_content/technology
>> _feature/PIT20001221S0012/1?spsubcat=bugs_flaws
>>
>> any feedback will be appreciated.
>>
>> gus
>>
>> ---------------------------------------------------------------------
>> To unsubscribe, e-mail: soap-user-unsubscribe@xml.apache.org
>> For additional commands, email: soap-user-help@xml.apache.org
>
>
>---------------------------------------------------------------------
>To unsubscribe, e-mail: soap-user-unsubscribe@xml.apache.org
>For additional commands, email: soap-user-help@xml.apache.org
> 
************************************************************************
John E. Conlon
jconlon@verticon.com
tel: (770) 886-5470
fax: (770) 888-6894
<http://www.verticon.com/>www.verticon.com
************************************************************************


Re: get your SOAP jar with SSL support here!

Posted by George I Matkovits <ma...@uswest.net>.
Yes. Some of us are very worried and DOING something about it. There is going to
be a much improved and updated repost of the 5 months old SecureSoap sometime
after the Soap2.1 release. Security is much, much more then just SSL. We had an
SSL solution almost 6 months ago but it never made it into the base because I
would NOT release an incomplete, partial 'just an SSL HACK' for Soap's bigger
Security Problem. Sorry but for me this an ethical and NOT a technical problem
(-:
Regards - George

Gus Delgado wrote:

> is there any documentation on what the changes have been on this soap.jar
> that supports SSL, what's been added or anything?  The reason I'm asking is
> cause I just read this article on planetit and I got a bit confuse on
> wheather the developers of SOAP are even worrying about security...
>
> http://www.planetit.com/techcenters/docs/security-hostile_content/technology
> _feature/PIT20001221S0012/1?spsubcat=bugs_flaws
>
> any feedback will be appreciated.
>
> gus
>
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: soap-user-unsubscribe@xml.apache.org
> For additional commands, email: soap-user-help@xml.apache.org


Re: get your SOAP jar with SSL support here!

Posted by George I Matkovits <ma...@uswest.net>.
Yes. Some of us are very worried and DOING something about it. There is going to
be a much improved and updated repost of the 5 months old SecureSoap sometime
after the Soap2.1 release. Security is much, much more then just SSL. We had an
SSL solution almost 6 months ago but it never made it into the base because I
would NOT release an incomplete, partial 'just an SSL HACK' for Soap's bigger
Security Problem. Sorry but for me this an ethical and NOT a technical problem
(-:
Regards - George

Gus Delgado wrote:

> is there any documentation on what the changes have been on this soap.jar
> that supports SSL, what's been added or anything?  The reason I'm asking is
> cause I just read this article on planetit and I got a bit confuse on
> wheather the developers of SOAP are even worrying about security...
>
> http://www.planetit.com/techcenters/docs/security-hostile_content/technology
> _feature/PIT20001221S0012/1?spsubcat=bugs_flaws
>
> any feedback will be appreciated.
>
> gus
>
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: soap-user-unsubscribe@xml.apache.org
> For additional commands, email: soap-user-help@xml.apache.org


RE: get your SOAP jar with SSL support here!

Posted by Gus Delgado <gu...@netquotient.com>.
is there any documentation on what the changes have been on this soap.jar
that supports SSL, what's been added or anything?  The reason I'm asking is
cause I just read this article on planetit and I got a bit confuse on
wheather the developers of SOAP are even worrying about security...

http://www.planetit.com/techcenters/docs/security-hostile_content/technology
_feature/PIT20001221S0012/1?spsubcat=bugs_flaws

any feedback will be appreciated.

gus


RE: get your SOAP jar with SSL support here!

Posted by Gus Delgado <gu...@netquotient.com>.
is there any documentation on what the changes have been on this soap.jar
that supports SSL, what's been added or anything?  The reason I'm asking is
cause I just read this article on planetit and I got a bit confuse on
wheather the developers of SOAP are even worrying about security...

http://www.planetit.com/techcenters/docs/security-hostile_content/technology
_feature/PIT20001221S0012/1?spsubcat=bugs_flaws

any feedback will be appreciated.

gus