[jira] [Updated] (RAMPART-402) PolicyBasedResultsValidator does not correctly check signed parts
"Robert Lazarski (Jira)" <[email protected]> Wed, 10 Jun 2026 01:12:00 +0000 (UTC)
| Newsgroups | gmane.text.xml.axis.devel |
|---|---|
| Message-ID | <[email protected]> |
[ https://issues.apache.org/jira/browse/RAMPART-402?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
Robert Lazarski updated RAMPART-402:
------------------------------------
Fix Version/s: 2.0.1
(was: 2.0.0)
> PolicyBasedResultsValidator does not correctly check signed parts
> -----------------------------------------------------------------
>
> Key: RAMPART-402
> URL: https://issues.apache.org/jira/browse/RAMPART-402
> Project: Rampart
> Issue Type: Bug
> Affects Versions: 1.6.2
> Reporter: Nathan Clement
> Assignee: Robert Lazarski
> Priority: Major
> Labels: Patch
> Fix For: 2.0.1
>
> Attachments: check_signed_parts.patch
>
>
> PolicyBasedResultsValidator does not correctly check the signed parts from the policy because it is checking that the element name is "Header". Obviously this won't match the signed part element name in the policy. I'm not sure of the historical reason for this, but I've removed this check in my attached patch.
--
This message was sent by Atlassian Jira
(v8.20.10#820010)