spring-projects / spring-projects/spring-ws

WS runtime to enforce security policy from the WSDL [SWS-755]

Open
#842 0 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

status: waiting-for-triage
Dominant language
Java
Stars
346
Forks
323
Avg merge
3d 2h
Merged PRs (30d)
7

Description

chris snow opened SWS-755 and commented

Currently, to use WS Seucrity with Spring WS, it seems that you have to write the policy in the wsdl, and then code/configure to implement the policy at runtime.

It would be great if the runtime could use the policy statements from the WSDL to enforce the policies and configure the interceptors and such, similar to CXF and Metro.


Issue Links:

  • #843 WS runtime to enforce security policy from the WSDL
    ("is duplicated by")

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

Start by reviewing the linked duplicate issue #843 and the existing Spring WS runtime security configuration. Trace how security policies are read from the WSDL and how interceptors are configured; done means the runtime enforces those policies without requiring separate manual policy configuration.

Written by the indexing model from the issue text.

Assessment

Tech stack
java, spring
Domain
backend, security
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
25/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.