Configure the client for request encryption: choosing the encryption method
Configure the client for request encryption: choosing the encryption method
Important distinction between Version 5.x and Version 6 applications
Note: The information in this article supports version 5.x applications only that are used with WebSphere Application Server Version 6. The information does not apply to version 6 applications.
Prior to completing these steps, read either of the following topics to familiarize yourself with the WS Extensions tab and the WS Binding tab in the Client Deployment Descriptor editor within an assembly tool:
Right-click the application-client.xml file, select Open with > Deployment descriptor editor .
Click the WS binding tab, which is located at the bottom of the Client Deployment Descriptor editor within the assembly tool.
Expand Security request sender binding configuration > Encryption information .
Select an encryption option and click Edit to view the encryption information or click Add to add another option. The following table describes the purpose of this information. Some of these definitions are based on the XML-Encryption specification, which is located at the following Web address: http://www.w3.org/TR/xmlenc-core
Encryption name
Refers to the name of the encryption information entry.
Data encryption method algorithm
Encrypts and decrypts data in fixed size, multiple octet blocks.
Key encryption method algorithm
Represents public key encryption algorithms that are specified for encrypting and decrypting keys.
Encryption key name
Represents a Subject (Owner field of the certificate) from a public key certificate found by the encryption key locator, which is used by the key encryption method algorithm to encrypt the private key. The private key is used to encrypt the data.
The key chosen must be a public key of the target. Encryption must be done using the public key and decryption must be done by the target using the private key (the personal certificate of the target).