Fredrick,
(Dumb?) Question: Can we still use wsse:BinarySecurityToken and
wsse:KeyIdentifier (sections 3.3.1 and 3.3.2 in X509 Token Profile) with
ds:KeyInfo/wsse:SecurityTokenReference to point to the certs? For
example to be able to have one wsse:BinarySecurityToken that's used to
sign/encrypt parts of the soap message and some of the attachments.
Thanks,
dims
-----Original Message-----
From: [mailto:]
Sent: Friday, May 28, 2004 2:01 PM
To:
Cc: ; ;
Subject: [wss] SOAP with Attachments Proposal
Enclosed is a draft profile for securing SOAP with Attachments (SwA)
using WSS SOAP Message Security.
I am sending this to close the action item recorded on the 5/18/04 call
to submit a proposal, related to issues 285, 268, and 129, taken by
Mike McIntosh, Jerry Schwarz and myself.
We intend this as a starting point for members of the WSS TC to discuss
and improve.
Thanks
regards, Frederick
Frederick Hirsch
Nokia
<<wss-swa-profile-1.0-draft-03.pdf>>