OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.

 


Help: OASIS Mailing Lists Help | MarkMail Help

wss-comment message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]


Subject: Re: [wss] ValueType of EncryptedKey STR


As Corinna pointed out, the WS-Security 1.1 spec version from June 28th 
is very confusing in the last paragraph of "7.7 Encrypted Key 
Reference". One place it says that ValueType attribute should be 
"#EncryptedKey" and and in another place it says that ValueType should 
be "#EncryptedKeySHA1".

I am guessing that it meant to say that
STR/@TokenType should be "#EncryptedKey"
and
STR/KeyIdentifier/@ValueType should be "#EncryptedKeySHA1"

Does that sound right?

Pratik

>
>NISHIMURA Toshihiro wrote:
>
>  
>
>>Hello,
>>
>>At Tue, 26 Jul 2005 09:29:34 -0700,
>>Corinna Witt wrote:
>> 
>>
>>    
>>
>>>Sorry, I meant to say:
>>>
>>>STR/KeyIdentifier/@ValueType must be #EncryptedKeySHA1 and 
>>>STR/Reference/@ValueType must be #EncryptedKey
>>>   
>>>
>>>      
>>>
>>The use of STR/Reference/@ValueType to identify the type of the
>>referenced security token is deprecated. (line 912)
>>The recommended way is to use STR/@wsse:TokenType.
>>
>>Toshi
>>
>>---
>>NISHIMURA Toshihiro (FAMILY Given)
>>nishimura.toshi@jp.fujitsu.com
>>STRATEGY AND TECHNOLOGY DIV., SOFTWARE GROUP, FUJITSU LIMITED
>>
>>---------------------------------------------------------------------
>>To unsubscribe from this mail list, you must leave the OASIS TC that
>>generates this mail.  You may a link to this group and all your TCs in OASIS
>>at:
>>https://www.oasis-open.org/apps/org/workgroup/portal/my_workgroups.php 
>>
>> 
>>
>>    
>>



[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]