Network Deployment (Distributed operating systems), v8.0 > Develop and deploying applications > Develop web services - Security (WS-Security) > Configure Web Services Security during application assembly > Configure XML encryption for v5.x web services with an assembly tool


Configure the client for response decryption: decrypting the message parts

To configure the client for response decryption, specify which response message parts to decrypt when configuring the client. The server response encryption and client response decryption configurations must match.

There is an important distinction between v5.x and v6 and later applications. The information in this article supports v5.x applications only that are used with WAS Version 6.0.x and later. The information does not apply to Version 6.0.x and later applications.

Prior to completing these steps, read either of the following topics to become familiar with the WS Extensions tab and the WS Binding tab in the Client Deployment Descriptor Editor within an assembly tool:

These two tabs are used to configure the Web Services Security extensions and the Web Services Security bindings, respectively.

Complete the following steps to specify which response message parts to decrypt when configuring the client for response decryption. The server response encryption and client response decryption configurations must match.


Procedure

  1. Launch an assembly tool. See the related information on Assembly Tools.
  2. Switch to the Java EE perspective. Click Window > Open Perspective > J2EE.

  3. Click Application Client Projects > application_name > appClientModule > META-INF .
  4. Right-click the application-client.xml file, select Open with > Deployment descriptor editor.

  5. Click the WS Extensions tab, which is located at the bottom of the deployment descriptor editor within the assembly tool.
  6. Expand the Response receiver configuration > Required confidentiality section.

  7. Select the parts of the message that decrypt by clicking Add and selecting either Bodycontent or Usernametoken. The following information describes these message parts:

    Bodycontent

    The user data portion of the message.

    Usernametoken

    The basic authentication information, if selected.

    The information selected in this step is encrypted by the server in the response sender.

    A Username Token is typically not sent in the response. Thus, you usually do not need to select username token.


What to do next

After you specify which message parts to decrypt, specify which method to use when decrypting the response message. See Configure the client for response decryption: choosing a decryption method for more information.
XML encryption
Assembly tools
Response receiver
Configure the client for response decryption: choosing a decryption method
Configure the client security bindings using an assembly tool
Configure the security bindings on a server acting as a client
Configure key locators using an assembly tool
Configure key locators

+

Search Tips   |   Advanced Search