> Do you want me to change anything in Axis? WSS4J? xml-security? to > support this switch?
I don't think there's anything you can change. Most of the operations in xmlsec operate on a DOM, at which point it's already been parsed. The parsing step is where you have to step in and prevent the corruption. If there's someplace in the code where you do an actual parse operation, I doubt you're schema validating anyway. It's probably worth documenting this better somewhere, though. People stumble over this one a lot if they sign base64 data. But I'm not really familiar enough with either Axis or WSS4J to know if there's some kind of obvious change you could make to them. -- Scott
