Re: IBM's WS-Trust endpoint

From
Jiandong Guo
Date
2010-02-18T19:42:00+00:00
ID
Thread
Re: IBM's WS-Trust endpoint
Craig Forster wrote:
> Hi Duane,
>
> I'm in the process of configuring a local version of IBM's WS-Trust
> endpoint before I push out the configuration to our publically available
> server.  I've made the assumption that the client will send the user's
> details as a password-carrying UsernameToken in the WS-Security header of
> the RequestSecurityToken message.
Yes, UsernameToken. You mentioned you don't want encryption, digital
signature  or ssl enabled, right?

Do you have MEX endpoint available for your STS?

Thanks!

Jiandong
> Please let me know if that's not the
> case.
>
> Also, in order for the public version to work I'm going to need the
> "AppliesTo" value that will be in the RST.  According to Jiandong,
> "AppliesTo will point to the url of the server side STS. We should have it
> once Duane deploy that STS."  I've been testing with a dummy URL, but when
> you have the "real" version could you let me know?
>
> Regards,
> Craig
>
> ---
> craig forster | staff software engineer | ibm australia development labs
> http://blogs.tap.ibm.com/weblogs/craigforster/
>
>