cxf-users mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Oliver Wulff <owu...@talend.com>
Subject RE: CXF supporting scope
Date Fri, 18 May 2012 10:01:48 GMT
Hi Gina

I was wrong with respect to the namespace. I've fixed this now.
https://issues.apache.org/jira/browse/FEDIZ-11

Please checkout the sources of fediz-core again.

Keep in mind that you must slightly change the fediz configuration for the truststore as described
here:
http://cxf.apache.org/fediz-configuration.html
....
        <certificateStore>
            <trustManager>
                <keyStore file="/projects/fediz/tomcat-rp2/conf/stsstore.jks" password="stsspass"
type="JKS" />
            </trustManager>
        </certificateStore>
        <trustedIssuers>
            <issuer name="issuer 1" certificateValidation="ChainTrust" subject=".*CN=www.sts.com.*"
/>
        </trustedIssuers>
....



------

Oliver Wulff

Blog: http://owulff.blogspot.com
Solution Architect
http://coders.talend.com

Talend Application Integration Division http://www.talend.com

________________________________________
From: Oliver Wulff [owulff@talend.com]
Sent: 18 May 2012 11:00
To: Gina Choi
Cc: users@cxf.apache.org
Subject: RE: CXF supporting scope

Hi Gina

Looks fine from a browser point of view. Were you able to increase the log level in tomcat
thus you can see more information there?

The namespace shouldn't matter.

And the server still returns the following exception:
The server encountered an internal error () that prevented it from fulfilling this request.</u></p><p><b>exception</b>
<pre>java.lang.NullPointerException
    org.apache.ws.security.saml.ext.OpenSAMLUtil.fromDom(OpenSAMLUtil.java:84)
    org.apache.ws.security.saml.ext.AssertionWrapper.parseElement(AssertionWrapper.java:678)
    org.apache.ws.security.saml.ext.AssertionWrapper.&lt;init&gt;(AssertionWrapper.java:152)
    org.apache.cxf.fediz.core.saml.SAMLTokenValidator.validateAndProcessToken(SAMLTokenValidator.java:98)
    org.apache.cxf.fediz.core.FederationProcessorImpl.processSignInRequest(FederationProcessorImpl.java:161)
    org.apache.cxf.fediz.core.FederationProcessorImpl.processRequest(FederationProcessorImpl.java:79)
    org.apache.cxf.fediz.tomcat.FederationAuthenticator.authenticate(FederationAuthenticator.java:291)
    org.apache.catalina.authenticator.AuthenticatorBase.invoke(AuthenticatorBase.java:544)
    org.apache.cxf.fediz.tomcat.FederationAuthenticator.invoke(FederationAuthenticator.java:116)
    org.apache.catalina.valves.ErrorReportValve.invoke(ErrorReportValve.java:98)
    org.apache.catalina.valves.AccessLogValve.invoke(AccessLogValve.java:927)
    org.apache.catalina.connector.CoyoteAdapter.service(CoyoteAdapter.java:407)
    org.apache.coyote.http11.AbstractHttp11Processor.process(AbstractHttp11Processor.java:999)
    org.apache.coyote.AbstractProtocol$AbstractConnectionHandler.process(AbstractProtocol.java:565)
    org.apache.tomcat.util.net.JIoEndpoint$SocketProcessor.run(JIoEndpoint.java:309)
    java.util.concurrent.ThreadPoolExecutor$Worker.runTask(ThreadPoolExecutor.java:886)
    java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:908)
    java.lang.Thread.run(Thread.java:662)


Thanks
Oli






------

Oliver Wulff

Blog: http://owulff.blogspot.com<http://owulff.blogspot.com/>
Solution Architect
http://coders.talend.com

<http://coders.talend.com>Talend Application Integration Division http://www.talend.com

________________________________
From: Gina Choi [ginachoi88@gmail.com]
Sent: 16 May 2012 23:07
To: Oliver Wulff
Cc: users@cxf.apache.org
Subject: Re: CXF supporting scope


Hi Oliver,

I saved traffic capture from fiddler and attached. If you have fiddler installed, you should
be see what is going on by clicking the file.

Thanks.

Gina

Mime
View raw message