OASIS Open Mailing List Archives  ·  All Lists  ·  xspa-interop-tech  ·  2010-02

xspa-interop-tech — archive

[Date Prev]  |  [Thread Prev]  |  [Thread Next]  |  [Date Next]   —  [Date Index]  |  [Thread Index]  |  [Month Index]  |  [List Home]

Re: IBM's WS-Trust endpoint




  


Craig,

Should be fine. We will adjust the client a bit for this.

Thanks!

Jiandong

Craig Forster wrote:
OFF04FE87A.73EAF455-ON4A2576CE.007E7665-4A2576CE.007EAC1C@au1.ibm.com" type="cite">
Hi Jiandong,

  
Yes, UsernameToken. You mentioned you don't want encryption, digital
      
signature  or ssl enabled, right?

Correct.  WS-Security at the message layer should work fine, but I think it
adds unecessary complexity for the interop.

  
Do you have MEX endpoint available for your STS?
      

No.

Regards,
Craig

---
craig forster | staff software engineer | ibm australia development labs
http://blogs.tap.ibm.com/weblogs/craigforster/


                                                                                                                             
  From:       Jiandong Guo <[email protected]>                                                                            
                                                                                                                             
  To:         Craig Forster/Australia/IBM@IBMAU                                                                              
                                                                                                                             
  Cc:         [email protected], [email protected]                                               
                                                                                                                             
  Date:       19/02/2010 05:42 AM                                                                                            
                                                                                                                             
  Subject:    Re: IBM's WS-Trust endpoint                                                                                    
                                                                                                                             
  Sent by:    [email protected]                                                                                           
                                                                                                                             





Craig Forster wrote:
  
Hi Duane,

I'm in the process of configuring a local version of IBM's WS-Trust
endpoint before I push out the configuration to our publically available
server.  I've made the assumption that the client will send the user's
details as a password-carrying UsernameToken in the WS-Security header of
the RequestSecurityToken message.
    
Yes, UsernameToken. You mentioned you don't want encryption, digital
signature  or ssl enabled, right?

Do you have MEX endpoint available for your STS?

Thanks!

Jiandong
  
Please let me know if that's not the
case.

Also, in order for the public version to work I'm going to need the
"AppliesTo" value that will be in the RST.  According to Jiandong,
"AppliesTo will point to the url of the server side STS. We should have
    
it
  
once Duane deploy that STS."  I've been testing with a dummy URL, but
    
when
  
you have the "real" version could you let me know?

Regards,
Craig

---
craig forster | staff software engineer | ibm australia development labs
http://blogs.tap.ibm.com/weblogs/craigforster/


    



  


[Date Prev]  |  [Thread Prev]  |  [Thread Next]  |  [Date Next]   —  [Date Index]  |  [Thread Index]  |  [Month Index]  |  [List Home]