By default, the WS-Security authentication scheme imposes a 60-minute restriction on the age of Username and Password Digest Tokens to protect against replay attacks.
To configure a different value for the token age restriction for a SOA Agent for Application Servers, set the WS_UT_CREATION_EXPIRATION_MINUTES parameter in the XmlToolkit.properties file for that agent.
To configure a SOA Agent to use a nondefault age restriction for Username and Password Digest token authentication
WS_UT_CREATION_EXPIRATION_MINUTES=token_age_limit
Specifies the token age limit restriction in minutes.
| Copyright © 2011 CA. All rights reserved. | Email CA Technologies about this topic |