xspa-interop-tech — archive
[Date Prev]
| [Thread Prev]
| [Thread Next]
| [Date Next]
— [Date Index]
| [Thread Index]
| [Month Index]
| [List Home]
Re: IBM's WS-Trust endpoint
Craig Forster wrote:
> Hi Duane,
>
> I'm in the process of configuring a local version of IBM's WS-Trust
> endpoint before I push out the configuration to our publically available
> server. I've made the assumption that the client will send the user's
> details as a password-carrying UsernameToken in the WS-Security header of
> the RequestSecurityToken message.
Yes, UsernameToken. You mentioned you don't want encryption, digital
signature or ssl enabled, right?
Do you have MEX endpoint available for your STS?
Thanks!
Jiandong
> Please let me know if that's not the
> case.
>
> Also, in order for the public version to work I'm going to need the
> "AppliesTo" value that will be in the RST. According to Jiandong,
> "AppliesTo will point to the url of the server side STS. We should have it
> once Duane deploy that STS." I've been testing with a dummy URL, but when
> you have the "real" version could you let me know?
>
> Regards,
> Craig
>
> ---
> craig forster | staff software engineer | ibm australia development labs
> http://blogs.tap.ibm.com/weblogs/craigforster/
>
>
[Date Prev]
| [Thread Prev]
| [Thread Next]
| [Date Next]
— [Date Index]
| [Thread Index]
| [Month Index]
| [List Home]