Syed Abdul Wadood created CXF-5046:
--------------------------------------
Summary: EncryptedSupportingTokens used with EncryptBeforeSigning
does not encrypt Username token
Key: CXF-5046
URL: https://issues.apache.org/jira/browse/CXF-5046
Project: CXF
Issue Type: Bug
Components: WS-* Components
Affects Versions: 2.7.5, 2.6.2
Environment: All platforms
Reporter: Syed Abdul Wadood
Fix For: 2.6.9, 2.6.8
In some cases, the <EncryptedSupportingTokens> policy assertion does not
encrypt the supporting token. When the policy contains the
<EncryptBeforeSigning> assertion, <SignedParts> and <EncryptedParts> assertions
along with the <EncryptedSupportingTokens> assertion for a username token, the
username token is not encrypted in the outbound SOAP message.
--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators
For more information on JIRA, see: http://www.atlassian.com/software/jira