[prev in list] [next in list] [prev in thread] [next in thread] 

List:       sandesha-dev
Subject:    [jira] [Commented] (RAMPART-448) NullPointerException in RampartUtil.setKeyIdentifierType() when sig
From:       "Maksim Gazimzyanov (Jira)" <jira () apache ! org>
Date:       2020-11-03 13:59:00
Message-ID: JIRA.13338364.1604305808000.129305.1604411940437 () Atlassian ! JIRA
[Download RAW message or body]


    [ https://issues.apache.org/jira/browse/RAMPART-448?page=com.atlassian.jira.plugin \
.system.issuetabpanels:comment-tabpanel&focusedCommentId=17225412#comment-17225412 ] 

Maksim Gazimzyanov commented on RAMPART-448:
--------------------------------------------

Okay, the issue seems to be resolved by adding <sp:RequireThumbprintReference/> for \
<sp:InitiatorToken> as well. But I'm not 100% sure whether that's a correct \
approach... The clarification why there's a NullPointerException thrown in case when \
sp:RequireThumbprintReference is not presented inside sp:InitiatorToken is really \
appreciated! :)

Thanks in advance!


> NullPointerException in RampartUtil.setKeyIdentifierType() when signing response
> --------------------------------------------------------------------------------
> 
> Key: RAMPART-448
> URL: https://issues.apache.org/jira/browse/RAMPART-448
> Project: Rampart
> Issue Type: Bug
> Components: rampart-integration
> Affects Versions: 1.7.1
> Reporter: Maksim Gazimzyanov
> Priority: Critical
> Attachments: axis2-client.log, axis2-server.log, policy.xml, services.xml
> 
> 
> There's a NullPointerException happens when using Rampart for signing + encrypting \
> SOAP messages. Causing "Axis2 Internal Error" being thrown to the client as HTML \
> response (that actually causes "javax.xml.stream.XMLStreamException: DOCTYPE is not \
> allowed" being thrown on client side when parsing response from server). Here're \
> the stacktraces of Error happening on server side {noformat}
> 2020-10-31 13:29:47,752 [https-jsse-nio-8443-exec-8] ERROR \
> org.apache.axis2.transport.http.AxisServlet  -  java.lang.NullPointerException
> 	at org.apache.rampart.util.RampartUtil.setKeyIdentifierType(RampartUtil.java:1389)
> 	at org.apache.rampart.builder.AsymmetricBindingBuilder.doSignBeforeEncrypt(AsymmetricBindingBuilder.java:531)
>   at org.apache.rampart.builder.AsymmetricBindingBuilder.build(AsymmetricBindingBuilder.java:88)
>   at org.apache.rampart.MessageBuilder.build(MessageBuilder.java:147)
> 	at org.apache.rampart.handler.RampartSender.invoke(RampartSender.java:65)
> 	at org.apache.axis2.engine.Phase.invokeHandler(Phase.java:335)
> 	at org.apache.axis2.engine.Phase.invoke(Phase.java:308)
> 	at org.apache.axis2.engine.AxisEngine.invoke(AxisEngine.java:250)
> 	at org.apache.axis2.engine.AxisEngine.send(AxisEngine.java:415)
> 	at org.apache.axis2.receivers.AbstractInOutMessageReceiver.invokeBusinessLogic(AbstractInOutMessageReceiver.java:43)
>   at org.apache.axis2.receivers.AbstractMessageReceiver.receive(AbstractMessageReceiver.java:106)
>   at org.apache.axis2.engine.AxisEngine.receive(AxisEngine.java:169)
> 	at org.apache.axis2.transport.http.HTTPTransportUtils.processHTTPPostRequest(HTTPTransportUtils.java:178)
>   at org.apache.axis2.transport.http.AxisServlet.doPost(AxisServlet.java:164)
> 	at javax.servlet.http.HttpServlet.service(HttpServlet.java:660)
> 	at javax.servlet.http.HttpServlet.service(HttpServlet.java:741)
> 	at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:231)
>   at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:166)
>   at org.apache.tomcat.websocket.server.WsFilter.doFilter(WsFilter.java:53)
> 	at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:193)
>   at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:166)
>   at org.apache.catalina.core.StandardWrapperValve.invoke(StandardWrapperValve.java:200)
>   at org.apache.catalina.core.StandardContextValve.invoke(StandardContextValve.java:96)
>   at org.apache.catalina.authenticator.AuthenticatorBase.invoke(AuthenticatorBase.java:490)
>   at org.apache.catalina.core.StandardHostValve.invoke(StandardHostValve.java:139)
> 	at org.apache.catalina.valves.ErrorReportValve.invoke(ErrorReportValve.java:92)
> 	at org.apache.catalina.valves.AbstractAccessLogValve.invoke(AbstractAccessLogValve.java:678)
>   at org.apache.catalina.core.StandardEngineValve.invoke(StandardEngineValve.java:74)
>   at org.apache.catalina.connector.CoyoteAdapter.service(CoyoteAdapter.java:343)
> 	at org.apache.coyote.http11.Http11Processor.service(Http11Processor.java:408)
> 	at org.apache.coyote.AbstractProcessorLight.process(AbstractProcessorLight.java:66)
>   at org.apache.coyote.AbstractProtocol$ConnectionHandler.process(AbstractProtocol.java:836)
>   at org.apache.tomcat.util.net.NioEndpoint$SocketProcessor.doRun(NioEndpoint.java:1747)
>   at org.apache.tomcat.util.net.SocketProcessorBase.run(SocketProcessorBase.java:49)
>   at java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1149)
>   at java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:624)
>   at org.apache.tomcat.util.threads.TaskThread$WrappingRunnable.run(TaskThread.java:61)
>   at java.lang.Thread.run(Thread.java:748)
> {noformat}



--
This message was sent by Atlassian Jira
(v8.3.4#803005)

---------------------------------------------------------------------
To unsubscribe, e-mail: java-dev-unsubscribe@axis.apache.org
For additional commands, e-mail: java-dev-help@axis.apache.org


[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic