Hi, AFAIU, the Rampart [1] supports only WS-Security Policy 1.1 and 1.2.
There is a requirement to specify the Nonce as a mandatory value in the UsernameToken and the support for that seems to be added only in WS-Security Policy 1.3 [2]? When will Apache Rampart support WS-Security Policy 1.3? Are there any plans? Thanks! Best Regards, [1] http://axis.apache.org/axis2/java/rampart/ [2] http://docs.oasis-open.org/ws-sx/ws-securitypolicy/v1.3/errata01/os/ws-securitypolicy-1.3-errata01-os-complete.html -- Isuru Perera about.me/chrishantha