Forum Discussion

larrybev's avatar
larrybev
Occasional Visitor
9 years ago

Incoming message decryption, are only headers decrypted ?

We've applied the decryption and signature config, the signature apears to pass. But I still see only the encrypted soap body.

 

 

<soapenv:Body wsu:Id="Body-46ea166a-fc21-493d-9a0b-e809a43ccea4" xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd">
      <xenc:EncryptedData Type="http://www.w3.org/2001/04/xmlenc#Element" xmlns:xenc="http://www.w3.org/2001/04/xmlenc#">
         <xenc:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
         <dsig:KeyInfo xmlns:dsig="http://www.w3.org/2000/09/xmldsig#">
            <xenc:EncryptedKey Recipient="pkipath:MIIEIzCCBB8wggMHoAMCAQICCQCI6vEZX+ayxDANBgkqhkiG9w0BAQsFADCBpTELMAkGA1UEBhMCQ0ExDzANBgNVBAgMBlF1ZWJlYzERMA8GA1UEBwwITW9udHJlYWwxFDASBgNVBAoMC1BSRCBTUyBURVNUMRQwEgYDVQQLDAtQUkQgU1MgVEVmVhbDEUMBIGA1UECgwLUFJEIFNTIFRFU1QxFDASBgNVBAsMC1BSRCBTUyBURVNUMRIwEAYDVQQDDAlQUkRTU1RFU1QxMjAwBgkqhkiG9w0BCQEWI2RhdmlkLmd1bmFwYWxhbkBhZXJvLmJvbWJhcmRpZXIuY29tMIIBIjANBgkqhkiG9w0BAQEF/9chyJyk8O183taoVzRURHvR9IjS5X2CJXTDy2pjxG/UocvzTFuvUhZ6ZapzyCLPjjilw/kMKV9Lxu0bXKzjGnhMoLSpqwQfEOUyqR+mcy27W1jYLb+6e+Rhpp/yjj2xFZBwnOxGl7viaoIZQdIL7f4m5dZqyShBbNI/B7DVbR8uJdqHHrkzxDrmHRicJoL044XQxGiWgLqEVPwZXfK+kUc7ZXqIgb+8PWbzuW0K9S+gECzkUsNhU9JtXhtaocsWB9voTCZA/iQ==">
               <xenc:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-1_5"/>
               <dsig:KeyInfo>
                  <dsig:KeyName>pkipath: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</dsig:KeyName>
               </dsig:KeyInfo>
               <xenc:CipherData>
                  <xenc:CipherValue>Agps74BC67PCFcTc+q29dwc+uPqR9eImXXVOtCi7koFlOcxB/STQnevwpnRoKX9DBvdahzpCDHM9Zzy1IEbKAkN8B/fMFWtXowjIEhBKk+j/qmGwI082V0rdgEocAJb5d34k+uxwNjZuSzcdLoS2APwH1sfnCte0E1KpR7DDMoIT4esFSuMxUwrFuHmjxiYkyvYaNLNQLY8XFQtzDYlLaFtuwsPGXIc9aNRhBMgEQkldUpWVnNphY4Yqu9lAJlCjjpK7QV/S5XdknKMkzHiLjmAknfmqeZmxyWVq3HDAGkYPt8MCqOmL6t3dSRVjHhl8JSftEwf8B6vdc5qZMVOxyQ==</xenc:CipherValue>
               </xenc:CipherData>
            </xenc:EncryptedKey>
         </dsig:KeyInfo>
         <xenc:CipherData>
            <xenc:CipherValue>L+l3wMsCL3h8fD4h3OgQbr4z2Ocj9Ar/QOv6xZSbtEEle8Zo452HPTnSaSyRWxFh7PY7pSTBwzhvjd/Cta9+A284dokVbnZwcvMtTxUP/mV2A2I1A9ysfmiHSKFY4RCcA5X5YHgwkVEw8J/bu/OBX0HFDXO80gVyXq/VA9Q9UwOYepXdwkL20Riw9l2+m9dfHe1icuDtZ301Qr1ZqOcMkjNzNr1iQ6uEZmkv0M2BkIhN/7Cz/ImZ79BHAh9/xwpNbqYG/p4VO3F0W+1J2OmMfcnsvwpma/dDR6IL9PnDunqnO7XqtdM4asR8jGFxnjiMizKItMweNZ1qaUwcBwREuPXNKYrgdYJiDoCScsm1hlk=</xenc:CipherValue>
         </xenc:CipherData>
      </xenc:EncryptedData>
   </soapenv:Body>
</soapenv:Envelope>

 

I am able to decrypted it using xmlsec1 from the linux command line however.

No RepliesBe the first to reply