[
https://issues.jboss.org/browse/JBWS-3831?page=com.atlassian.jira.plugin....
]
R Searls commented on JBWS-3831:
--------------------------------
A server stacktrace of the failure.
15:13:20,723 INFO [org.jboss.as.server] (management-handler-thread - 1) WFLYSRV0010:
Deployed "jaxws-samples-wsse-policy-oasis-23x.war" (runtime-name :
"jaxws-samples-wsse-policy-oasis-23x.war")
15:13:27,455 WARNING [org.apache.cxf.phase.PhaseInterceptorChain] (default task-4)
Interceptor for
{http://www.jboss.org/jbossws/ws-extensions/wssecuritypolicy/oasis-samples}SecurityService
has thrown exception, unwinding now: org.apache.cxf.interceptor.Fault: SAML token security
failure
at
org.apache.cxf.ws.security.wss4j.SamlTokenInterceptor.processToken(SamlTokenInterceptor.java:158)
at
org.apache.cxf.ws.security.wss4j.AbstractTokenInterceptor.handleMessage(AbstractTokenInterceptor.java:111)
at
org.apache.cxf.ws.security.wss4j.AbstractTokenInterceptor.handleMessage(AbstractTokenInterceptor.java:64)
at org.apache.cxf.phase.PhaseInterceptorChain.doIntercept(PhaseInterceptorChain.java:307)
[cxf-core.jar:3.0.2.SNAPSHOT]
at
org.apache.cxf.transport.ChainInitiationObserver.onMessage(ChainInitiationObserver.java:121)
[cxf-core.jar:3.0.2.SNAPSHOT]
at
org.apache.cxf.transport.http.AbstractHTTPDestination.invoke(AbstractHTTPDestination.java:243)
at
org.jboss.wsf.stack.cxf.RequestHandlerImpl.handleHttpRequest(RequestHandlerImpl.java:110)
at
org.jboss.wsf.stack.cxf.transport.ServletHelper.callRequestHandler(ServletHelper.java:131)
at org.jboss.wsf.stack.cxf.CXFServletExt.invoke(CXFServletExt.java:88)
at
org.apache.cxf.transport.servlet.AbstractHTTPServlet.handleRequest(AbstractHTTPServlet.java:290)
at
org.apache.cxf.transport.servlet.AbstractHTTPServlet.doPost(AbstractHTTPServlet.java:209)
at javax.servlet.http.HttpServlet.service(HttpServlet.java:707)
[jboss-servlet-api_3.1_spec-1.0.0.Final.jar:1.0.0.Final]
at org.jboss.wsf.stack.cxf.CXFServletExt.service(CXFServletExt.java:136)
at org.jboss.wsf.spi.deployment.WSFServlet.service(WSFServlet.java:140)
[jbossws-spi.jar:3.0.0-SNAPSHOT]
at javax.servlet.http.HttpServlet.service(HttpServlet.java:790)
[jboss-servlet-api_3.1_spec-1.0.0.Final.jar:1.0.0.Final]
at io.undertow.servlet.handlers.ServletHandler.handleRequest(ServletHandler.java:85)
[undertow-servlet-1.1.0.Beta7.jar:1.1.0.Beta7]
at
io.undertow.servlet.handlers.security.ServletSecurityRoleHandler.handleRequest(ServletSecurityRoleHandler.java:61)
[undertow-servlet-1.1.0.Beta7.jar:1.1.0.Beta7]
at
io.undertow.servlet.handlers.ServletDispatchingHandler.handleRequest(ServletDispatchingHandler.java:36)
[undertow-servlet-1.1.0.Beta7.jar:1.1.0.Beta7]
at
org.wildfly.extension.undertow.security.SecurityContextAssociationHandler.handleRequest(SecurityContextAssociationHandler.java:78)
at io.undertow.server.handlers.PredicateHandler.handleRequest(PredicateHandler.java:43)
[undertow-core-1.1.0.Beta7.jar:1.1.0.Beta7]
at
io.undertow.servlet.handlers.security.SSLInformationAssociationHandler.handleRequest(SSLInformationAssociationHandler.java:131)
[undertow-servlet-1.1.0.Beta7.jar:1.1.0.Beta7]
at
io.undertow.servlet.handlers.security.ServletAuthenticationCallHandler.handleRequest(ServletAuthenticationCallHandler.java:56)
[undertow-servlet-1.1.0.Beta7.jar:1.1.0.Beta7]
at io.undertow.server.handlers.PredicateHandler.handleRequest(PredicateHandler.java:43)
[undertow-core-1.1.0.Beta7.jar:1.1.0.Beta7]
at
io.undertow.security.handlers.AuthenticationConstraintHandler.handleRequest(AuthenticationConstraintHandler.java:51)
[undertow-core-1.1.0.Beta7.jar:1.1.0.Beta7]
at
io.undertow.security.handlers.AbstractConfidentialityHandler.handleRequest(AbstractConfidentialityHandler.java:45)
[undertow-core-1.1.0.Beta7.jar:1.1.0.Beta7]
at
io.undertow.servlet.handlers.security.ServletConfidentialityConstraintHandler.handleRequest(ServletConfidentialityConstraintHandler.java:61)
[undertow-servlet-1.1.0.Beta7.jar:1.1.0.Beta7]
at
io.undertow.servlet.handlers.security.ServletSecurityConstraintHandler.handleRequest(ServletSecurityConstraintHandler.java:56)
[undertow-servlet-1.1.0.Beta7.jar:1.1.0.Beta7]
at
io.undertow.security.handlers.AuthenticationMechanismsHandler.handleRequest(AuthenticationMechanismsHandler.java:58)
[undertow-core-1.1.0.Beta7.jar:1.1.0.Beta7]
at
io.undertow.servlet.handlers.security.CachedAuthenticatedSessionHandler.handleRequest(CachedAuthenticatedSessionHandler.java:70)
[undertow-servlet-1.1.0.Beta7.jar:1.1.0.Beta7]
at
io.undertow.security.handlers.SecurityInitialHandler.handleRequest(SecurityInitialHandler.java:76)
[undertow-core-1.1.0.Beta7.jar:1.1.0.Beta7]
at io.undertow.server.handlers.PredicateHandler.handleRequest(PredicateHandler.java:43)
[undertow-core-1.1.0.Beta7.jar:1.1.0.Beta7]
at
org.wildfly.extension.undertow.security.jacc.JACCContextIdHandler.handleRequest(JACCContextIdHandler.java:61)
at io.undertow.server.handlers.PredicateHandler.handleRequest(PredicateHandler.java:43)
[undertow-core-1.1.0.Beta7.jar:1.1.0.Beta7]
at io.undertow.server.handlers.PredicateHandler.handleRequest(PredicateHandler.java:43)
[undertow-core-1.1.0.Beta7.jar:1.1.0.Beta7]
at
io.undertow.servlet.handlers.ServletInitialHandler.handleFirstRequest(ServletInitialHandler.java:259)
[undertow-servlet-1.1.0.Beta7.jar:1.1.0.Beta7]
at
io.undertow.servlet.handlers.ServletInitialHandler.dispatchRequest(ServletInitialHandler.java:246)
[undertow-servlet-1.1.0.Beta7.jar:1.1.0.Beta7]
at
io.undertow.servlet.handlers.ServletInitialHandler.access$000(ServletInitialHandler.java:75)
[undertow-servlet-1.1.0.Beta7.jar:1.1.0.Beta7]
at
io.undertow.servlet.handlers.ServletInitialHandler$1.handleRequest(ServletInitialHandler.java:165)
[undertow-servlet-1.1.0.Beta7.jar:1.1.0.Beta7]
at io.undertow.server.Connectors.executeRootHandler(Connectors.java:197)
[undertow-core-1.1.0.Beta7.jar:1.1.0.Beta7]
at io.undertow.server.HttpServerExchange$1.run(HttpServerExchange.java:737)
[undertow-core-1.1.0.Beta7.jar:1.1.0.Beta7]
at java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1145)
[rt.jar:1.7.0_25]
at java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:615)
[rt.jar:1.7.0_25]
at java.lang.Thread.run(Thread.java:724) [rt.jar:1.7.0_25]
Caused by: org.apache.wss4j.common.ext.WSSecurityException: SAML token security failure
at
org.apache.wss4j.dom.validate.SamlAssertionValidator.verifySubjectConfirmationMethod(SamlAssertionValidator.java:165)
[wss4j-ws-security-dom.jar:2.0.2-SNAPSHOT]
at
org.apache.wss4j.dom.validate.SamlAssertionValidator.validate(SamlAssertionValidator.java:100)
[wss4j-ws-security-dom.jar:2.0.2-SNAPSHOT]
at
org.apache.wss4j.dom.processor.SAMLTokenProcessor.handleSAMLToken(SAMLTokenProcessor.java:162)
[wss4j-ws-security-dom.jar:2.0.2-SNAPSHOT]
at
org.apache.wss4j.dom.processor.SAMLTokenProcessor.handleToken(SAMLTokenProcessor.java:89)
[wss4j-ws-security-dom.jar:2.0.2-SNAPSHOT]
at
org.apache.cxf.ws.security.wss4j.SamlTokenInterceptor.processToken(SamlTokenInterceptor.java:206)
at
org.apache.cxf.ws.security.wss4j.SamlTokenInterceptor.processToken(SamlTokenInterceptor.java:97)
... 42 more
Failure of test
org.jboss.test.ws.jaxws.samples.wsse.policy.oasis.WSSecurityPolicyExamples23xTestCase
-----------------------------------------------------------------------------------------------------
Key: JBWS-3831
URL:
https://issues.jboss.org/browse/JBWS-3831
Project: JBoss Web Services
Issue Type: Bug
Components: jbossws-cxf
Reporter: R Searls
Assignee: R Searls
This test failure started with the switch to jbossws-cxf (5.0.0-SNAPSHOT).
Only tests test2311 and test2321 in
org.jboss.test.ws.jaxws.samples.wsse.policy.oasis.WSSecurityPolicyExamples23xTestCase are
failing.
---
test2321(org.jboss.test.ws.jaxws.samples.wsse.policy.oasis.WSSecurityPolicyExamples23xTestCase):
An error was discovered processing the <wsse:Security> header.
test2311(org.jboss.test.ws.jaxws.samples.wsse.policy.oasis.WSSecurityPolicyExamples23xTestCase):
SAML token security failure
--
This message was sent by Atlassian JIRA
(v6.3.1#6329)