Signing parameter settings
To configure new signing parameters.
This admin console panel applies only to Java™ API for XML-based RPC (JAX-RPC) applications.
There is an important distinction between V 5.x and V6 and later applications. The information in this article supports V5.x applications only that are used with WAS V6.0.x and later. The information does not apply to V6.0.x and later applications.
The specifications that are listed on this page for the signature method, digest method, and canonicalization method are located in the World Wide Web Consortium (W3C) document entitled, XML Signature Syntax and Specification: W3C Recommendation 12 Feb 2002.
- Click Applications > Application Types > WebSphere enterprise apps > application_name.
- Under Modules, click Manage modules > URI_name.
- Under Additional properties, we can access the signing information for the following bindings:
- For the Request sender binding, click Web services: Client security bindings. Under Request sender binding, click Edit. Under Additional properties, click Signing information.
- For the Response sender binding, click Web services: Server security bindings. Under Response sender binding, click Edit. Under Additional properties, click Signing information.
- In the Request Sender Binding column, click Edit > Signing Information.
If the signing information is not available, select None.
If the signing information is available, select Dedicated Signing Information and specify the configuration in the following fields:
- Signature method
Algorithm Uniform Resource Identifiers (URI) of the signature method.
The following algorithms are supported:
- http://www.w3.org/2000/09/xmldsig#rsa-sha1
- http://www.w3.org/2000/09/xmldsig#dsa-sha1
- http://www.w3.org/2000/09/xmldsig#hmac-sha1
- We can also add custom algorithms.
- Digest method
Algorithm URI of the digest method.
WAS supports the http://www.w3.org/2000/09/xmldsig#sha1 algorithm.
- Canonicalization method
Algorithm URI of the canonicalization method.
The following algorithms are supported:
- http://www.w3.org/2001/10/xml-exc-c14n#
- http://www.w3.org/2001/10/xml-exc-c14n#WithComments
- http://www.w3.org/TR/2001/REC-xml-c14n-20010315
- http://www.w3.org/TR/2001/REC-xml-c14n-20010315#WithComments
- Key name
Name of the key object found in the keystore file.
- Key locator reference
Name used to reference the key locator
Configure these key locator reference options on the cell level, the server level, and the application level. The configurations that are listed in the field are a combination of the configurations on these three levels.
We can specify a key locator configuration for the following bindings on the following levels:
Table 1. Key locator binding settings
Binding name Cell level, server level, or application level Path N/A Cell level N/A Server level
- Click Servers > Server Typ > WebSphere application servers > server_name.
- Under Security, click JAX-WS and JAX-RPC security runtime.
In a mixed node cell with a server using Websphere Application Server version 6.1 or earlier, click Web services: Default bindings for WS-Security
- Under Additional properties, click Key locators.
Request sender Application level
- Click Applications > Application Types > WebSphere enterprise apps > application_name.
- Under Modules, click Manage modules > URI_name.
- Click Web services: Client security bindings.
- Under Request sender binding, click Edit.
- Under Additional properties, click Key locators.
Request receiver Application level
- Click Applications > Application Types > WebSphere enterprise apps > application_name.
- Under Modules, click Manage module > URI_name.
- Click Web services: WAS security bindings.
- Under Request receiver binding, click Edit.
- Under Additional properties, click Key locators.
Response sender Application level
- Click Applications > Application Types > WebSphere enterprise apps > application_name.
- Under Modules, click Manage module > URI_name.
- Click Web services: WAS security bindings.
- Under Response sender binding, click Edit.
- Under Additional properties, click Key locators.
Response receiver Application level
- Click Applications > Application Types > WebSphere enterprise apps > application_name.
- Under Modules, click Manage modules > URI_name.
- Click Web services: Client security bindings.
- Under Response receiver binding, click Edit.
- Under Additional properties, click Key locators.
Related tasks
Secure Web services for V5.x applications based on WS-Security
Related
Request sender binding collection