Colm O hEigeartaigh created CXF-5098:
----------------------------------------

             Summary: References to Kerberos Tokens are not created correctly 
in responses
                 Key: CXF-5098
                 URL: https://issues.apache.org/jira/browse/CXF-5098
             Project: CXF
          Issue Type: Bug
            Reporter: Colm O hEigeartaigh
            Assignee: Colm O hEigeartaigh
             Fix For: 2.6.9, 2.7.6



When a service secured with a KerberosToken policy assertion responds to the 
client, it is incorrectly using a wsse:Reference to the original 
BinarySecurityToken in some cases. Instead it should be using a KeyIdentifier 
with the SHA-1 of the AP-REQ bytes.

--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators
For more information on JIRA, see: http://www.atlassian.com/software/jira

Reply via email to