Syed Abdul Wadood created CXF-5046:
--------------------------------------

             Summary: EncryptedSupportingTokens used with EncryptBeforeSigning 
does not encrypt Username token
                 Key: CXF-5046
                 URL: https://issues.apache.org/jira/browse/CXF-5046
             Project: CXF
          Issue Type: Bug
          Components: WS-* Components
    Affects Versions: 2.7.5, 2.6.2
         Environment: All platforms
            Reporter: Syed Abdul Wadood
             Fix For: 2.6.9, 2.6.8


In some cases, the <EncryptedSupportingTokens> policy assertion does not 
encrypt the supporting token.  When the policy contains the 
<EncryptBeforeSigning> assertion, <SignedParts> and <EncryptedParts> assertions 
along with the <EncryptedSupportingTokens> assertion for a username token,  the 
username token is not encrypted in the outbound SOAP message.  

--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators
For more information on JIRA, see: http://www.atlassian.com/software/jira

Reply via email to