axis-java-user mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Roxanne Yee" <>
Subject FW: Newbie Basics: Security Policy
Date Tue, 15 Jul 2008 21:40:48 GMT

-----Original Message-----
From: Roxanne Yee []
Sent: Tue 7/15/2008 8:11 AM
Subject: RE: Newbie Basics: Security Policy
Just to verify how this policy would work...
So if I use this policy, I can just tell soapUI to add a User Name Token with username "alice"
and password "bobPW", and I should receive an echo back (using the service in the samples)
in the response? However, when I do this, for some reason I receive and error. The RAW messages
are reprinted below:

Content-Length: 803
User-Agent: Jakarta Commons-HttpClient/3.0.1
Content-Type: application/soap+xml;charset=UTF-8;action="urn:echo"
<soap:Envelope xmlns:sam="" xmlns:soap="">
    <wsse:Security soap:mustUnderstand="true" xmlns:wsse="">
      <wsse:UsernameToken wsu:Id="UsernameToken-10518016" xmlns:wsu="">
        <wsse:Password Type="">bobPW</wsse:Password>

HTTP/1.1 500 Internal Server Error
Date: Tue, 15 Jul 2008 18:05:24 GMT
Transfer-Encoding: chunked
Connection: close
Content-Type: application/soap+xml; action="";charset=UTF-8
Server: Apache-Coyote/1.1

<?xml version='1.0' encoding='UTF-8'?>
   <soapenv:Envelope xmlns:soapenv="">
             <soapenv:Text xml:lang="en-US">java.lang.NoSuchMethodError:;)Z</soapenv:Text>
          <soapenv:Detail />



-----Original Message-----
From: Nandana Mihindukulasooriya []
Sent: Mon 7/14/2008 8:01 AM
Subject: Re: Newbie Basics: Security Policy
Hi Roxane,

This is the policy to be used. Hope you know how to attach this policy to
services.xml and to a client. Please go through the Rampart policy samples
and you will be able to see how that is done. If you have further questions,
please feel free to throw them in.


<wsp:Policy wsu:Id="UT" xmlns:wsu=""
               <sp:SupportingTokens xmlns:sp="">
                <sp:UsernameToken sp:IncludeToken=""

        <ramp:RampartConfig xmlns:ramp="">




On Mon, Jul 14, 2008 at 11:53 PM, Roxanne Yee <> wrote:

> If I simply wanted to implement a web service that used a User Name Token
> authentication system with a Username and Password in Plaintext (no SSL for
> now, cause I'm a little sketchy on how to actually set that up), what would
> I need to do if using the Policy handler configuration?
> Thanks.
> => RY

To unsubscribe, e-mail:
For additional commands, e-mail:

View raw message