[Users] security header with petals-bc-soap component

bg_ghassen [via Petals Forums] ml-node+s974793n4025190h64 at n3.nabble.com
Mon Jul 23 15:12:38 CEST 2012



Thinks Cristphone

Now I can call my web service with wss (your solution resolve the problem).
For information, it not work with petals-esb 3.1

I have a last question. Normally when I call the web service directly from
“axis” address I have a reply only the first call. The second call reply
with this error (normal IMO)
<soapenv:Envelope xmlns:soapenv="http://schemas.xmlsoap.org/soap/envelope/">
   <soapenv:Body>
      <soapenv:Fault
xmlns:wsse="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1.0.xsd">
         <faultcode>wsse:InvalidSecurity</faultcode>
         <faultstring>Nonce value : A9XZlJwMulQyGrZpOfNGDg==, already seen
before for user name : gtp. Possibly this could be a replay
attack.</faultstring>
         <detail/>
      </soapenv:Fault>
   </soapenv:Body>
</soapenv:Envelope> 

The problem is that when I send many successive calls from “petals” address
to the web service I don’t have this message (Also I can indefinitely the
web service with the same nonce). How I can limit the use of my nonce to one
call.




_______________________________________________
If you reply to this email, your message will be added to the discussion below:
http://forum.petalslink.com/security-header-with-petals-bc-soap-component-tp4025177p4025190.html
To start a new topic under Users (get help, provide help), email ml-node+s974793n2681628h42 at n3.nabble.com
To unsubscribe from Users (get help, provide help), visit http://forum.petalslink.com/template/NamlServlet.jtp?macro=unsubscribe_by_code&node=2681628&code=dXNlcnNAZm9ydW0ucGV0YWxzbGluay5vcmd8MjY4MTYyOHwtOTE3MDU0NjU4
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://forum-list.petalslink.org/pipermail/users/attachments/20120723/6ee23663/attachment.html>


More information about the Users mailing list