RE: [wss] Web Services Security Username Token Profile
> I guess I'd prefer to see RSA with SHA-1 required and RSA with MD5 > allowed. I don't think making DSA a requirement is particularly realistic, > just some politics. Strongly agree; XML-DSIG got it exactly backwards. /r$