Sorry, I meant to say:
STR/KeyIdentifier/@ValueType must be #EncryptedKeySHA1 and
STR/Reference/@ValueType must be #EncryptedKey
(got it the other way round previously).
Corinna
Corinna Witt wrote:
> Hello,
>
> I think there's a problem with the order of sentences in the last
> paragraph in "7.7 Encrypted Key reference". This is referring to the
> WS-Security 1.1 spec version from June 28th.
>
> Could it be that the sentence starting line 1083:
>
> "...The ValueType attribute MUST be set to
> http://docs.oasis-open.org/wss/2005/xx/oasis-2005xx-wss-soap-message-security-1.1#EncryptedKey"
>
>
> should be right after the first sentence of the paragraph, line 1076:
>
> "The URI attribute value of the <wsse:Reference> element MUST be set to
> the value of the ID 1076
> attribute of the referenced <xenc:EncryptedKey> element that contains
> the EncryptedKey."
>
> Right now it sounds as if there must be two ValueType attributes with
> different values for STR/KeyIdentifier and none for STR/Reference, where
> it probably means to say STR/KeyIdentifier/@ValueType must be
> #EncryptedKey and STR/Reference/@ValueType must be #EncryptedKeySHA1.
>
> Corinna
>
>
> ---------------------------------------------------------------------
> To unsubscribe from this mail list, you must leave the OASIS TC that
> generates this mail. You may a link to this group and all your TCs in
> OASIS
> at:
> https://www.oasis-open.org/apps/org/workgroup/portal/my_workgroups.php
>