Skip to content

Instantly share code, notes, and snippets.

@pkarneliuk
Created June 5, 2017 07:30
Show Gist options
  • Save pkarneliuk/983ed255b8a3895a28456f90538c60ba to your computer and use it in GitHub Desktop.
Save pkarneliuk/983ed255b8a3895a28456f90538c60ba to your computer and use it in GitHub Desktop.
2017-05-18 12:36:42,447|STS| Pavel_Karneliuk| 10.6.84.29 | | WS-Trust for DMS| WSTrust| EPBYMINW1763T56.cluster.dom| IdP| success| | | 31 |<soap:Envelope xmlns:wsa="http://schemas.xmlsoap.org/ws/2004/08/addressing" xmlns:wsse="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1.0.xsd" xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd" xmlns:soap="http://schemas.xmlsoap.org/soap/envelope/">
<soap:Header>
<wsa:Action>http://schemas.xmlsoap.org/ws/2005/02/trust/RST/Issue</wsa:Action>
<wsa:MessageID>urn:uuid:4f9d1614-0441-4e6b-ad68-b1cb294055af</wsa:MessageID>
<wsa:ReplyTo>
<wsa:Address>http://schemas.xmlsoap.org/ws/2004/08/addressing/role/anonymous</wsa:Address>
</wsa:ReplyTo>
<wsa:To>https://epbyminw1763t56.cluster.dom:9031/idp/sts.wst?TokenProcessorId=Kerberos</wsa:To>
<wsse:Security soap:mustUnderstand="1">
<wsu:Timestamp wsu:Id="Timestamp-61b65ca1-b4e6-47bb-8c18-a19c1d5ed827">
<wsu:Created>2017-05-18T09:35:27Z</wsu:Created>
<wsu:Expires>2017-05-18T09:40:27Z</wsu:Expires>
</wsu:Timestamp>
<wsse:BinarySecurityToken ValueType="http://docs.oasis-open.org/wss/oasis-wss-kerberos-token-profile-1.1#GSS_Kerberosv5_AP_REQ" EncodingType="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-soap-message-security-1.0#Base64Binary" wsu:Id="SecurityToken-eee29ff2-464b-41db-a3ac-8ad500e1c686">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</wsse:BinarySecurityToken>
</wsse:Security>
</soap:Header>
<soap:Body>
<wst:RequestSecurityToken xmlns:wst="http://schemas.xmlsoap.org/ws/2005/02/trust">
<wst:TokenType>http://docs.oasis-open.org/wss/oasis-wss-saml-token-profile-1.1#SAMLV2.0</wst:TokenType>
<wst:RequestType>http://schemas.xmlsoap.org/ws/2005/02/trust/Issue</wst:RequestType>
<wsp:AppliesTo xmlns:wsp="http://schemas.xmlsoap.org/ws/2004/09/policy">
<wsa:EndpointReference>
<wsa:Address>https://epbyminw1035t1/</wsa:Address>
</wsa:EndpointReference>
</wsp:AppliesTo>
<wst:Lifetime>
<wsu:Expires>2017-05-18T13:35:27Z</wsu:Expires>
</wst:Lifetime>
<wst:OnBehalfOf>
<wsse:SecurityTokenReference>
<wsse:Reference URI="#SecurityToken-eee29ff2-464b-41db-a3ac-8ad500e1c686" ValueType="http://docs.oasis-open.org/wss/oasis-wss-kerberos-token-profile-1.1#GSS_Kerberosv5_AP_REQ"/>
</wsse:SecurityTokenReference>
</wst:OnBehalfOf>
</wst:RequestSecurityToken>
</soap:Body>
</soap:Envelope> |<wst:RequestSecurityTokenResponse xmlns:wst="http://schemas.xmlsoap.org/ws/2005/02/trust">
<wst:TokenType>http://docs.oasis-open.org/wss/oasis-wss-saml-token-profile-1.1#SAMLV2.0</wst:TokenType>
<wst:RequestedSecurityToken>
<saml:Assertion ID="JC5zDNNOJsFGEH9pN5IS6hz8p_x" IssueInstant="2017-05-18T09:36:42.432Z" Version="2.0" xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
<saml:Issuer>pfdefaultentityid</saml:Issuer>
<ds:Signature xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:SignedInfo>
<ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
<ds:SignatureMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
<ds:Reference URI="#JC5zDNNOJsFGEH9pN5IS6hz8p_x">
<ds:Transforms>
<ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/>
<ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
</ds:Transforms>
<ds:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
<ds:DigestValue>3qhgGLjSDX+byxKBP3zaKFRrP8is/skAtSVgVG+2Ajw=</ds:DigestValue>
</ds:Reference>
</ds:SignedInfo>
<ds:SignatureValue>cB4EkXPWua/ekw/LhQAwUDxpk4GJJPjHlBGbxSKy/B0lNWQl5+vxN+BITigapkqYA5SsBfnj8uL4
uiwrtwutUh2DI+ZVgXo14zH5O5mm48jwolH9EfHmudtskh4YavN3xgM/ogVmfIcyX3sIlNiQWOWn
Pms0WyGFISUHFuzRoCXMBhrXLpV2bC9aF5TfBMKAUjMNq2h/ET38ptTfjKozGQnMh2KX5VFXMdlz
AHZ7EVb6rw76u3T00O5f/eiTv25MdpJYY8fkWuiRsmpRZ33Ky8H5Vh3LkK27nLdJVy1aw08cr2q5
ZQXoznQvPy8wUwwD6shTCDDD5dqufvxVF3CLsA==</ds:SignatureValue>
<ds:KeyInfo>
<ds:X509Data>
<ds:X509Certificate>MIIDAjCCAeqgAwIBAgIGAVuqj4QtMA0GCSqGSIb3DQEBCwUAMEIxCzAJBgNVBAYTAkJZMQ0wCwYD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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</ds:Signature>
<saml:Subject>
<saml:NameID Format="urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified">Pavel_Karneliuk</saml:NameID>
<saml:SubjectConfirmation Method="urn:oasis:names:tc:SAML:2.0:cm:bearer"/>
</saml:Subject>
<saml:Conditions NotBefore="2017-05-18T09:31:42.432Z" NotOnOrAfter="2017-05-18T10:06:42.432Z">
<saml:AudienceRestriction>
<saml:Audience>WS-Trust for DMS</saml:Audience>
</saml:AudienceRestriction>
</saml:Conditions>
<saml:AuthnStatement AuthnInstant="2017-05-18T09:36:42.432Z" SessionIndex="JC5zDNNOJsFGEH9pN5IS6hz8p_x">
<saml:AuthnContext>
<saml:AuthnContextClassRef>urn:oasis:names:tc:SAML:2.0:ac:classes:unspecified</saml:AuthnContextClassRef>
</saml:AuthnContext>
</saml:AuthnStatement>
<saml:AttributeStatement>
<saml:Attribute Name="http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic">
<saml:AttributeValue xsi:type="xs:string" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance">Pavel_Karneliuk</saml:AttributeValue>
</saml:Attribute>
</saml:AttributeStatement>
</saml:Assertion>
</wst:RequestedSecurityToken>
<wst:Lifetime>
<wsu:Created xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd">2017-05-18T09:36:42.432Z</wsu:Created>
<wsu:Expires xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd">2017-05-18T10:06:42.432Z</wsu:Expires>
</wst:Lifetime>
<wst:RequestedAttachedReference>
<wsse:SecurityTokenReference wsse11:TokenType="http://docs.oasis-open.org/wss/oasis-wss-saml-token-profile-1.1#SAMLV2.0" xmlns:wsse="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1.0.xsd" xmlns:wsse11="http://docs.oasis-open.org/wss/oasis-wss-wssecurity-secext-1.1.xsd">
<wsse:KeyIdentifier ValueType="http://docs.oasis-open.org/wss/oasis-wss-saml-token-profile-1.1#SAMLID">JC5zDNNOJsFGEH9pN5IS6hz8p_x</wsse:KeyIdentifier>
</wsse:SecurityTokenReference>
</wst:RequestedAttachedReference>
<wsp:AppliesTo xmlns:wsp="http://schemas.xmlsoap.org/ws/2004/09/policy">
<wsa:EndpointReference xmlns:wsa="http://schemas.xmlsoap.org/ws/2004/08/addressing">
<wsa:Address>https://epbyminw1035t1/</wsa:Address>
</wsa:EndpointReference>
</wsp:AppliesTo>
</wst:RequestSecurityTokenResponse> |
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment