Uploaded image for project: 'PicketLink Federated Identity'
  1. PicketLink Federated Identity
  2. PLFED-74

Security token signature validation failure on JBossWS Metro integration

    Details

    • Steps to Reproduce:
      Hide

      Install JBoss AS 5.1 (or 6.0.0.Mx), then install JBossWS-Metro 3.2.2 (3.3.0.CR2). Deploy the PicketLink STS and run the test client code to issue and validate a security token.

      Show
      Install JBoss AS 5.1 (or 6.0.0.Mx), then install JBossWS-Metro 3.2.2 (3.3.0.CR2). Deploy the PicketLink STS and run the test client code to issue and validate a security token.

      Description

      When JBossWS Metro stack is used, the security tokens issued by the STS are considered invalid due to a XML digital signature validation failure. It seems that the XML document is getting tempered after the token has been issued.

        Gliffy Diagrams

          Attachments

            Activity

              People

              • Assignee:
                sguilhen Stefan Guilhen
                Reporter:
                sguilhen Stefan Guilhen
              • Votes:
                0 Vote for this issue
                Watchers:
                0 Start watching this issue

                Dates

                • Created:
                  Updated:
                  Resolved: