And, in case more details would help, below the packet stream from
Wireshark.  I've also attached the policy.xml and server.xml files in
case that helps. The stub that is creating the envelope was
autogenerated using WSDL2Java with Axis2 1.2.  The only modification I
made is in the constructor:

   public
CoolComplianceAdminServicesStub(org.apache.axis2.context.ConfigurationCo
ntext configurationContext,
        java.lang.String targetEndpoint)
        throws org.apache.axis2.AxisFault {
         //To populate AxisService
         populateAxisService();
         populateFaults();

        _serviceClient = new org.apache.axis2.client.ServiceClient( 
                        //configurationContext,
 
ConfigurationContextFactory.createConfigurationContextFromFileSystem("C:
\\", "C:\\axis2-1.2\\conf\\axis2.xml"),
                        _service);
        
        _serviceClient.engageModule("addressing");
        _serviceClient.engageModule("rampart");
        
        //Creating the object
        Policy clientPolicy=null;
        try {
                StAXOMBuilder builder = new
StAXOMBuilder("C:\\policy.xml");
                clientPolicy =
PolicyEngine.getPolicy(builder.getDocumentElement());
        } catch (Exception e) {
                System.out.println("Couldn't load policy file");
        }
        
        //setting the object
 
_serviceClient.getServiceContext().setProperty(RampartMessageData.KEY_RA
MPART_POLICY, clientPolicy);
        configurationContext =
_serviceClient.getServiceContext().getConfigurationContext();
        
        _serviceClient.getOptions().setTo(new
org.apache.axis2.addressing.EndpointReference(
                targetEndpoint));
    }



POST /axis2/services/CoolComplianceAdminServices HTTP/1.1 
Content-Type: text/xml; 
charset=UTF-8 
SOAPAction: "urn:PerformUserTrueUp" 
User-Agent: Axis2 
Host: jmfws:8080 
Content-Length: 5560  
<?xml version='1.0' encoding='UTF-8'?><soapenv:Envelope
xmlns:wsa="http://www.w3.org/2005/08/addressing";
xmlns:soapenv="http://schemas.xmlsoap.org/soap/envelope/";><soapenv:Heade
r>
<wsse:Security
xmlns:wsse="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wsse
curity-secext-1.0.xsd" soapenv:mustUnderstand="1"><wsu:Timestamp
xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssec
urity-utility-1.0.xsd"
wsu:Id="Timestamp-6588728"><wsu:Created>2007-08-07T23:12:43.867Z</wsu:Cr
eated><wsu:Expires>2007-08-07T23:17:43.867Z</wsu:Expires></wsu:Timestamp
><wsse:BinarySecurityToken
xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssec
urity-utility-1.0.xsd"
EncodingType="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-so
ap-message-security-1.0#Base64Binary"
ValueType="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-x509-
token-profile-1.0#X509v3"
wsu:Id="CertId-59515089">MIIHEDCCBfigAwIBAgIKGg7WNAAAAAAADjANBgkqhkiG9w0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</wsse:
BinarySecurityToken><ds:Signature
xmlns:ds="http://www.w3.org/2000/09/xmldsig#"; Id="Signature-33333128">
<ds:SignedInfo>

<ds:CanonicalizationMethod
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"; />
<ds:SignatureMethod
Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"; />
<ds:Reference URI="#Id-7126735">
<ds:Transforms>
<ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"; />
</ds:Transforms>
<ds:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"; />
<ds:DigestValue>ZZhHvgkq99OD5xDzk2H/767+vjI=</ds:DigestValue>
</ds:Reference>
<ds:Reference URI="#Timestamp-6588728">
<ds:Transforms>
<ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"; />
</ds:Transforms>
<ds:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"; />
<ds:DigestValue>zkhtM1E3XnL8TTZCJK+bF5qatKI=</ds:DigestValue>
</ds:Reference>
</ds:SignedInfo>
<ds:SignatureValue>
dWeoIqZBdB5nog28sr8SGa0No9FuweBBwXu4G0oKMYwXiv7rcs9wWJmqAsJiyWH2jKrHSEf4
abGb
8zHN63n5Cnyx4Quve/gztqeW9CFvTk06eb5IEa7bmpnFCI6VOFeT1k+q+tfidwEhseTPhrlW
mFM7
LXbeLycX/LSAtBMoYXkEPDv3QzH5cbMZlTFtDDhY1juN7/SHL6Xn3tuM/eUWD9FVmvzy7xdN
/08g
iqgvagIP0WTyW+aqflvVp3vAJ1a16x/XiymwZMZosoIY0Ct39C4t+nl2HmRvBv5UkIs2u9RK
GNOY
gxeRT+H0w00yFJkTgJAQCGtBY1dYKLkW4PCBCg==
</ds:SignatureValue>
<ds:KeyInfo Id="KeyId-5099540">
<wsse:SecurityTokenReference
xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssec
urity-utility-1.0.xsd" wsu:Id="STRId-9958945"><wsse:Reference
URI="#CertId-59515089"
ValueType="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-x509-
token-profile-1.0#X509v3" /></wsse:SecurityTokenReference>
</ds:KeyInfo>
</ds:Signature></wsse:Security><wsa:To>http://jmfws:8080/axis2/services/
CoolComplianceAdminServices</wsa:To><wsa:MessageID>urn:uuid:92C360C37723
F21FD41186528363966</wsa:MessageID><wsa:Action>urn:PerformUserTrueUp</ws
a:Action></soapenv:Header><soapenv:Body
xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssec
urity-utility-1.0.xsd" wsu:Id="Id-7126735"><ns1:PerformUserTrueUp
xmlns:ns1="http://CoolComply-ws.southerncompany.com/";><entityName
xmlns="http://CoolComply-ws.southerncompany.com/";>TBS</entityName></ns1:
PerformUserTrueUp></soapenv:Body></soapenv:Envelope>

HTTP/1.1 500 Internal Server Error Server: Apache-Coyote/1.1
Content-Type: text/xml;charset=UTF-8 Transfer-Encoding: chunked Date:
Tue, 07 Aug 2007 23:12:44 GMT Connection: close  278 <?xml version='1.0'
encoding='UTF-8'?><soapenv:Envelope
xmlns:wsa="http://www.w3.org/2005/08/addressing";
xmlns:soapenv="http://schemas.xmlsoap.org/soap/envelope/";><soapenv:Heade
r><wsa:Action>http://www.w3.org/2005/08/addressing/soap/fault</wsa:Actio
n><wsa:RelatesTo>urn:uuid:92C360C37723F21FD41186528363966</wsa:RelatesTo
></soapenv:Header><soapenv:Body><soapenv:Fault><faultcode>soapenv:MustUn
derstand</faultcode><faultstring>Must Understand check failed for header
http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secex
t-1.0.xsd : Security</faultstring><detail
/></soapenv:Fault></soapenv:Body></soapenv:Envelope> 0  
 

-----Original Message-----
From: Ford, Jennifer M. 
Sent: Tuesday, August 07, 2007 5:17 PM
To: [email protected]
Subject: Rampart error with MustUnderstand

I have spent the last couple days trying to add Rampart to an existing
web service with Policy/Sample02 as a model.  I feel like I'm close, but
I can't seem to get past the most recent error:

2007-08-07 16:43:12,066 DEBUG
org.apache.axis2.transport.http.AxisServlet -
org.apache.axis2.AxisFault: Must Understand check failed for header
http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secex
t-1.0.xsd : Security

Perhaps a stupid question, but what does the Must Understand check do
exactly?  And, more importantly, what might cause this problem?

Thanks,
Jennifer



---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

<?xml version="1.0" encoding="UTF-8"?>
<!--
 !
 ! Copyright 2006 The Apache Software Foundation.
 !
 ! Licensed under the Apache License, Version 2.0 (the "License");
 ! you may not use this file except in compliance with the License.
 ! You may obtain a copy of the License at
 !
 !      http://www.apache.org/licenses/LICENSE-2.0
 !
 ! Unless required by applicable law or agreed to in writing, software
 ! distributed under the License is distributed on an "AS IS" BASIS,
 ! WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
 ! See the License for the specific language governing permissions and
 ! limitations under the License.
 !-->
<wsp:Policy wsu:Id="SigOnly" xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd"; xmlns:wsp="http://schemas.xmlsoap.org/ws/2004/09/policy";>
	<wsp:ExactlyOne>
		<wsp:All>
			<sp:AsymmetricBinding xmlns:sp="http://schemas.xmlsoap.org/ws/2005/07/securitypolicy";>
				<wsp:Policy>
					<sp:InitiatorToken>
						<wsp:Policy>
							<sp:X509Token sp:IncludeToken="http://schemas.xmlsoap.org/ws/2005/07/securitypolicy/IncludeToken/AlwaysToRecipient";>
								<wsp:Policy>
									<sp:WssX509V3Token10/>
								</wsp:Policy>
							</sp:X509Token>
						</wsp:Policy>
					</sp:InitiatorToken>
					<sp:RecipientToken>
						<wsp:Policy>
							<sp:X509Token sp:IncludeToken="http://schemas.xmlsoap.org/ws/2005/07/securitypolicy/IncludeToken/Never";>
								<wsp:Policy>
									<sp:WssX509V3Token10/>
								</wsp:Policy>
							</sp:X509Token>
						</wsp:Policy>
					</sp:RecipientToken>
					<sp:AlgorithmSuite>
						<wsp:Policy>
							<sp:TripleDesRsa15/>
						</wsp:Policy>
					</sp:AlgorithmSuite>
					<sp:Layout>
						<wsp:Policy>
							<sp:Strict/>
						</wsp:Policy>
					</sp:Layout>
					<sp:IncludeTimestamp/>
					<sp:OnlySignEntireHeadersAndBody/>
				</wsp:Policy>
			</sp:AsymmetricBinding>
			<sp:Wss10 xmlns:sp="http://schemas.xmlsoap.org/ws/2005/07/securitypolicy";>
				<wsp:Policy>
					<sp:MustSupportRefKeyIdentifier/>
					<sp:MustSupportRefIssuerSerial/>
				</wsp:Policy>
			</sp:Wss10>
			<sp:SignedParts xmlns:sp="http://schemas.xmlsoap.org/ws/2005/07/securitypolicy";>
				<sp:Body/>
			</sp:SignedParts>

			<ramp:RampartConfig xmlns:ramp="http://ws.apache.org/rampart/policy";> 
				 <ramp:user>jennford</ramp:user>
				<ramp:encryptionUser>service</ramp:encryptionUser>
				<ramp:passwordCallbackClass>com.ems.tada.security.PWCBHandler</ramp:passwordCallbackClass> 
				<ramp:signatureCrypto>
					<ramp:crypto provider="org.apache.ws.security.components.crypto.Merlin">
						<ramp:property name="org.apache.ws.security.crypto.merlin.keystore.type">pkcs12</ramp:property>
						<ramp:property name="org.apache.ws.security.crypto.merlin.file">C:/jennford.p12</ramp:property>
						<ramp:property name="org.apache.ws.security.crypto.merlin.keystore.password">dbb000</ramp:property>
					</ramp:crypto>
				</ramp:signatureCrypto>
			</ramp:RampartConfig>

		</wsp:All>
	</wsp:ExactlyOne>
</wsp:Policy>
<serviceGroup>
<service name="CoolComplianceAdminServices">
<messageReceivers>
  <messageReceiver mep="http://www.w3.org/2004/08/wsdl/in-out"; class="com.southerncompany.coolcomply_ws.CoolComplianceAdminServicesMessageReceiverInOut" /> 
</messageReceivers>
<parameter name="ServiceClass" locked="false">com.southerncompany.coolcomply_ws.CoolComplianceAdminServicesSkeleton</parameter> 
<operation name="QueryAll" mep="http://www.w3.org/2004/08/wsdl/in-out";>
  <actionMapping>http://CoolComply-ws.southerncompany.com/QueryAll</actionMapping> 
  <outputActionMapping>//CoolComply-ws.southerncompany.com/CoolComplianceAdminServicesSoap/QueryAllResponse</outputActionMapping> 
</operation>
<operation name="ExecuteUserChangeRequest" mep="http://www.w3.org/2004/08/wsdl/in-out";>
  <actionMapping>http://CoolComply-ws.southerncompany.com/ExecuteUserChangeRequest</actionMapping> 
  <outputActionMapping>//CoolComply-ws.southerncompany.com/CoolComplianceAdminServicesSoap/ExecuteUserChangeResponse</outputActionMapping> 
</operation>
<operation name="Alive" mep="http://www.w3.org/2004/08/wsdl/in-out";>
  <actionMapping>http://CoolComply-ws.southerncompany.com/Alive</actionMapping> 
  <outputActionMapping>//CoolComply-ws.southerncompany.com/CoolComplianceAdminServicesSoap/AliveResponse</outputActionMapping> 
</operation>
<operation name="Add" mep="http://www.w3.org/2004/08/wsdl/in-out";>
  <actionMapping>http://CoolComply-ws.southerncompany.com/Add</actionMapping> 
  <outputActionMapping>//CoolComply-ws.southerncompany.com/CoolComplianceAdminServicesSoap/AddResponse</outputActionMapping> 
</operation>
<operation name="UserCount" mep="http://www.w3.org/2004/08/wsdl/in-out";>
  <actionMapping>http://CoolComply-ws.southerncompany.com/UserCount</actionMapping> 
  <outputActionMapping>//CoolComply-ws.southerncompany.com/CoolComplianceAdminServicesSoap/UserCountResponse</outputActionMapping> 
</operation>
<operation name="RejectUserChangeRequest" mep="http://www.w3.org/2004/08/wsdl/in-out";>
  <actionMapping>http://CoolComply-ws.southerncompany.com/RejectUserChangeRequest</actionMapping> 
  <outputActionMapping>//CoolComply-ws.southerncompany.com/CoolComplianceAdminServicesSoap/RejectUserChangeResponse</outputActionMapping> 
</operation>
<operation name="Validate" mep="http://www.w3.org/2004/08/wsdl/in-out";>
  <actionMapping>http://CoolComply-ws.southerncompany.com/Validate</actionMapping> 
  <outputActionMapping>//CoolComply-ws.southerncompany.com/CoolComplianceAdminServicesSoap/ValidateResponse</outputActionMapping> 
</operation>
<operation name="Disable" mep="http://www.w3.org/2004/08/wsdl/in-out";>
  <actionMapping>http://CoolComply-ws.southerncompany.com/Disable</actionMapping> 
  <outputActionMapping>//CoolComply-ws.southerncompany.com/CoolComplianceAdminServicesSoap/DisableResponse</outputActionMapping> 
</operation>
<operation name="PerformUserTrueUp" mep="http://www.w3.org/2004/08/wsdl/in-out";>
  <actionMapping>http://CoolComply-ws.southerncompany.com/PerformUserTrueUp</actionMapping> 
  <outputActionMapping>//CoolComply-ws.southerncompany.com/CoolComplianceAdminServicesSoap/PerformUserTrueUpResponse</outputActionMapping> 
</operation>
<operation name="AddDiscrepancyComment" mep="http://www.w3.org/2004/08/wsdl/in-out";>
  <actionMapping>http://CoolComply-ws.southerncompany.com/AddDiscrepancyComment</actionMapping> 
  <outputActionMapping>//CoolComply-ws.southerncompany.com/CoolComplianceAdminServicesSoap/AddDiscrepancyCommentResponse</outputActionMapping> 
</operation>
<operation name="ApprovalToolInformation" mep="http://www.w3.org/2004/08/wsdl/in-out";>
  <actionMapping>http://CoolComply-ws.southerncompany.com/ApprovalToolInformation</actionMapping> 
  <outputActionMapping>//CoolComply-ws.southerncompany.com/CoolComplianceAdminServicesSoap/ApprovalToolInformationResponse</outputActionMapping> 
</operation>

<module ref="rampart" />
<module ref="addressing" />

<wsp:Policy wsu:Id="SigOnly" xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd"; xmlns:wsp="http://schemas.xmlsoap.org/ws/2004/09/policy";>
		<wsp:ExactlyOne>
			<wsp:All>
				<sp:AsymmetricBinding xmlns:sp="http://schemas.xmlsoap.org/ws/2005/07/securitypolicy";>
					<wsp:Policy>
						<sp:InitiatorToken>
							<wsp:Policy>
								<sp:X509Token sp:IncludeToken="http://schemas.xmlsoap.org/ws/2005/07/securitypolicy/IncludeToken/AlwaysToRecipient";>
									<wsp:Policy>
										<sp:WssX509V3Token10/>
									</wsp:Policy>
								</sp:X509Token>
							</wsp:Policy>
						</sp:InitiatorToken>
						<sp:RecipientToken>
							<wsp:Policy>
								<sp:X509Token sp:IncludeToken="http://schemas.xmlsoap.org/ws/2005/07/securitypolicy/IncludeToken/Never";>
									<wsp:Policy>
										<sp:WssX509V3Token10/>
									</wsp:Policy>
								</sp:X509Token>
							</wsp:Policy>
						</sp:RecipientToken>
						<sp:AlgorithmSuite>
							<wsp:Policy>
								<sp:TripleDesRsa15/>
							</wsp:Policy>
						</sp:AlgorithmSuite>
						<sp:Layout>
							<wsp:Policy>
								<sp:Strict/>
							</wsp:Policy>
						</sp:Layout>
						<sp:IncludeTimestamp/>
						<sp:OnlySignEntireHeadersAndBody/>
					</wsp:Policy>
				</sp:AsymmetricBinding>
				<sp:Wss10 xmlns:sp="http://schemas.xmlsoap.org/ws/2005/07/securitypolicy";>
					<wsp:Policy>
						<sp:MustSupportRefKeyIdentifier/>
						<sp:MustSupportRefIssuerSerial/>
					</wsp:Policy>
				</sp:Wss10>
				<sp:SignedParts xmlns:sp="http://schemas.xmlsoap.org/ws/2005/07/securitypolicy";>
					<sp:Body/>
				</sp:SignedParts>
	
				<ramp:RampartConfig xmlns:ramp="http://ws.apache.org/rampart/policy";> 
					<ramp:user>service</ramp:user>
					<ramp:encryptionUser>client</ramp:encryptionUser>
					<ramp:passwordCallbackClass>com.emss.databackbone.cci.services.PWCBHandler</ramp:passwordCallbackClass>
					
					<ramp:signatureCrypto>
						<ramp:crypto provider="org.apache.ws.security.components.crypto.Merlin">
							<ramp:property name="org.apache.ws.security.crypto.merlin.keystore.type">jks</ramp:property>
							<ramp:property name="org.apache.ws.security.crypto.merlin.file">client.keystore</ramp:property>
							<ramp:property name="org.apache.ws.security.crypto.merlin.keystore.password">dbb000</ramp:property>
						</ramp:crypto>
					</ramp:signatureCrypto>
				</ramp:RampartConfig>
	
			</wsp:All>
		</wsp:ExactlyOne>
	</wsp:Policy>


</service>
</serviceGroup>
---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to