santuario-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From tobias <>
Subject Re: [VOTE] - Release Apache Santuario - XML Security for Java 2.0.3
Date Mon, 09 Feb 2015 16:28:47 GMT
With this version I`ve two issues. 

Stax signer 
- When I set XMLSecurityProperties.setSignaturePosition(1); no signature is
being written, with "0" the signature is written on the top of the file. 

Dom Verify 
- With this new version 2.0.3 I`m getting an exception, it was working with
2.0.2, but I need the RSA-PSS algorithm support, therefore I want to upgrade 
Caused by: Invalid
digest of reference #ID_097f0764-9f73-4fb2-b2e0-7de370930288

Another question is, why does that code:

				String id = "ID_" + UUID.randomUUID().toString();
				elementToSign.setAttributeNS(null, "Id", id);
				elementToSign.setIdAttributeNS(null, "Id", true);

				transforms = new Transforms(document);
				xmlSignature.addDocument("#" + id, transforms,

set the id on the top of the xml document and also to the reference field?

<TrustServiceStatusList xmlns=""
<ds:Reference URI="#ID_90de3bdd-f5dd-4b66-af7f-39ad07dc2eed">

Is that a correct behaviour?

View this message in context:
Sent from the Apache XML - Security - Dev mailing list archive at

View raw message