Published on WSO2 Oxygen Tank (http://wso2.org)

[rampart c] key info verification

By Lukas Josefik
Created 2008-01-18 06:32

Hi,

I think you are doing a good job :-). I study some of your source codes. But i don't find any checking that key info, which is processed, is linked with settings in config.

- [0] <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">

- [0] <wsse:SecurityTokenReference xmlns:wsse="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1.0.xsd">

- [0] <ds:X509Data>

- [0] <ds:X509IssuerSerial>

  <ds:X509IssuerName>O=OASIS, CN=OASIS Interop Test CA</ds:X509IssuerName>

  <ds:X509SerialNumber>2147483647</ds:X509SerialNumber>

  </ds:X509IssuerSerial>

  </ds:X509Data>

  </wsse:SecurityTokenReference>

  </ds:KeyInfo>

X

 <rampc:RampartConfig xmlns:rampc="http://ws.apache.org/rampart/c/policy">
                    <rampc:User>Bob</rampc:User>
                    <rampc:TimeToLive>360</rampc:TimeToLive>
                    <rampc:EncryptionUser>b</rampc:EncryptionUser>
                    <rampc:PasswordType>Digest</rampc:PasswordType>
                    <rampc:PasswordCallbackClass>WSFC_HOME/bin/samples/rampart/callback/libpwcb.so</rampc:PasswordCallbackClass>
                    <rampc:ReceiverCertificate>WSFC_HOME/bin/samples/rampart/keys/bhome/alice_cert.cert</rampc:ReceiverCertificate>
                    <rampc:Certificate>WSFC_HOME/bin/samples/rampart/keys/bhome/bob_cert.cert</rampc:Certificate>
                    <rampc:PrivateKey>WSFC_HOME/bin/samples/rampart/keys/bhome/bob_key.pem</rampc:PrivateKey>
                </rampc:RampartConfig>

Am i wrong? It's processed in function rampart_shp_process_encrypted_key. Thank for replay.

Lukas


Source URL:
http://wso2.org/forum/thread/3080