Skip to content

SOAP: send WS-Security UsernameToken headers #735

Description

@keysersoft

The WS_SECURITY auth type exists in the schema and in the UI, but the SOAP engine never uses it: buildEnvelope() in packages/backend/src/connectors/engines/soap.engine.ts always writes an empty <soapenv:Header/>. Services that require a UsernameToken reject every call.

Scope: when authType is WS_SECURITY, add a wsse:Security header with a UsernameToken (PasswordText, and PasswordDigest with nonce and created if you have the energy), built from authConfig.username and authConfig.password. Please include unit tests for the envelope. #731 corrects the docs to say it is not implemented yet (docs/connectors/soap.md); flip that back in the same PR.

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    hacktoberfestGood for Hacktoberfest contributorshelp wantedExtra attention is needed

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions