Network Deployment (Distributed operating systems), v8.0 > Develop and deploying applications > Develop web services - Security (WS-Security) > Develop applications that use Web Services Security > Develop message-level security for JAX-WS web services > Secure web services applications using the WSS APIs at the message level > Secure messages at the response consumer using WSS APIs


Verify consumer signing information to protect message integrity using WSS APIs

We can verify the signing information to protect message integrity for the response (client side) consumer binding. Signing information includes the signature and the signed parts for the generator side as well as signature verification and verify parts for the consumer side.

To keep the integrity of the message, digital signatures are typically applied. Ensure that the signature and signed parts information has been configured. The signature verification information must match what was configured on the generator side.

Integrity refers to digital signature while confidentiality refers to encryption. Integrity is provided by applying a digital signature to a SOAP message.

To configure the signing information to protect message integrity, first digitally sign and then verify the signature for the SOAP messages. Integrity decreases the risk of data modification when you transmit data across a network.

Also, message integrity is provided by verifying the digitally signed body, time stamp, and WS-Addressing headers using the signature verification algorithm methods. The WSS APIs specify which algorithm is to be used to verify the certificate. The signature algorithms specify the Uniform Resource Identifiers (URI) of the signature verification method. WAS supports several pre-configured verification algorithm methods.

We can use the following interfaces to configure Web Services Security and to protect SOAP message integrity:

Perform the following verification tasks, using the WSS APIs, to configure the signing information and to protect message integrity for the consumer binding.


Procedure


Results

By completing the steps in these tasks, we have configured the consumer verification information to protect the integrity of messages.


Related


Verify signing information for the consumer binding using the WSS APIs
Verify the signature using the WSSVerification API
Verify signed parts using the WSSVerifyPart API
Configure response signature verification methods for the client
Signature verification methods using the WSSVerification API
Choosing the verify parts methods using the WSSVerifyPart API
Configure generator signing information to protect message integrity using the WSS APIs
Secure messages at the response consumer using WSS APIs

+

Search Tips   |   Advanced Search