IBM Security Access Manager for Enterprise Single Sign-On, Version 8.2

rstr.xml file

The rstr.xml file contains the response from the STS test to get a user credential from an authentication service.

The message response has the following characteristics:
  • The response from the STS is in the form of a Request Security Token Response Collection (RSTRC). The collection consists of multiple independent Request Security Token Response (RSTR) elements.
    Example of a Request Security Token Response Collection:
    <wst:RequestSecurityTokenResponseCollection...> 
     <wst:RequestSecurityTokenResponse...>...</wst:RequestSecurityTokenResponse> 
    </wst:RequestSecurityTokenResponseCollection> 
  • Each RSTR contains a UsernameToken for 1 authentication service.
  • The authentication service is mentioned in the second AppliesTo element of each RSTR.
  • The status is in the wst:status element of the RST.

Example

<soapenv:Envelope 
xmlns:soapenv="http://schemas.xmlsoap.org/soap/envelope/" 
xmlns:soapenc="http://schemas.xmlsoap.org/soap/encoding/" 
xmlns:xsd="http://www.w3.org/2001/XMLSchema" 
xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance">
  <soapenv:Header/>
  <soapenv:Body>
    <wst:RequestSecurityTokenResponseCollection 
xmlns:wst="http://schemas.xmlsoap.org/ws/2005/02/trust">
      <wst:RequestSecurityTokenResponse wsu:Id="uuidd058f7b8-012a-110c-afe2-b007b664caa0" 
xmlns:wst="http://schemas.xmlsoap.org/ws/2005/02/trust" 
xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd">
        <wsp:AppliesTo 
xmlns:wsa="http://schemas.xmlsoap.org/ws/2004/08/addressing" 
xmlns:wsp="http://schemas.xmlsoap.org/ws/2004/09/policy">
          <wsa:EndpointReference>
            <wsa:Address>esso/get/mail</wsa:Address>
          </wsa:EndpointReference>
        </wsp:AppliesTo>
    <wst:Status>
       <wst:Code>0x00000000</wst:Code>
       <wst:Reason>Credentials Successfully Fetched</wst:Reason>
    </wst:Status>      </wst:RequestSecurityTokenResponse>
      <wst:RequestSecurityTokenResponse wsu:Id="uuidd058fad6-012a-1ae4-9fe0-b007b664caa0" 
xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd">
        <wsp:AppliesTo 
xmlns:wsa="http://schemas.xmlsoap.org/ws/2004/08/addressing" 
xmlns:wsp="http://schemas.xmlsoap.org/ws/2004/09/policy">
          <wsa:EndpointReference>
            <wsa:Address>esso/get/mail</wsa:Address>
          </wsa:EndpointReference>
        </wsp:AppliesTo>
        <wst:RequestedSecurityToken>
<wss:UsernameToken wsu:Id="usernamed058fad5-012a-1e1d-b48c-b007b664caa0" 
 xmlns:wss="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1.0.xsd" 
 xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd">
 <wss:Username>app_user0</wss:Username>
  <wss:Nonce 
EncodingType="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-soap-message-security-1.0#Base64Binary">
0+Nx140dzSSQHPqFfa8xxlAUdN8=
   </wss:Nonce> <wss:Password Type="PBEwithSHA-256andAES-128">dmISqch7uCsCw7xr/URYjw==
 </wss:Password>
</wss:UsernameToken>   </wst:RequestedSecurityToken>
   <wsp:AppliesTo 
xmlns:wsa="http://schemas.xmlsoap.org/ws/2004/08/addressing" 
xmlns:wsp="http://schemas.xmlsoap.org/ws/2004/09/policy">
          <wsa:EndpointReference>
            <wsa:Address>mail</wsa:Address>
          </wsa:EndpointReference>
        </wsp:AppliesTo>
      </wst:RequestSecurityTokenResponse>
    </wst:RequestSecurityTokenResponseCollection>
  </soapenv:Body>
</soapenv:Envelope>


Feedback