Add support for enforcing a text or digest password type when processing a
UsernameToken
----------------------------------------------------------------------------------------
Key: WSS-255
URL: https://issues.apache.org/jira/browse/WSS-255
Project: WSS4J
Issue Type: New Feature
Affects Versions: 1.5.9
Reporter: Colm O hEigeartaigh
Assignee: Colm O hEigeartaigh
Fix For: 1.6
The UsernameTokenProcessor does not currently enforce the "passwordType"
property on the inbound side. This task is to add a configuration switch
(default to false for backwards compatibility) which enforces the
"passwordType" property on an inbound Username Token. This functionality gives
the receiver the ability to make sure that the received token is e.g. password
digest, and not plaintext.
--
This message is automatically generated by JIRA.
-
You can reply to this email to add a comment to the issue online.
---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]