Introduction In one of my previous Blog item about Cordys BOP4, I described how Apache WebServer and Cordys BOP must be configured for using secure two-way-SSL. I discovered some behavior of this set-up which i want to share in this blog. Behavior When you configure two-way-SSL in Apache Webserver, the client certificate is used by the Apache WebServer to check whether this client may access the WebServer. However this certificate is also used by Cordys BOP4 for the identification of the User within BOP4. For this you have to configure a User that has the client certificate attached to it. * Goto User Manager > Users Roles * Select a User, Right click Edit * Select as Authentication Type: Certificate * Click Use Certificate and import the public certificate of the client (X.501 compliant) When you sent a soap message to the platform you must NOT use wsse:Security tags in the soap header anymore Roger Password ...
Persoonlijk blog over mijn (werk)ervaringen. Ik ben nieuwsgierig en vind veel dingen interessant en leuk. Daarom ook verschillende hobbies zoals lezen, psychologie, filosofie, cryptos, fotografie, meditatie, tennis, PSV, wandelen, bier, wijn, gezin. Zie ook https://linktr.ee/rvdkimmenade Veel plezier met lezen!